Loading jobs…
Loading jobs…
Red Ventures — Charlotte, North Carolina
This role is not open to visa sponsorship or transfer of visa sponsorship including those on H1-B, F-1, OPT, STEM-OPT, or TN visa, nor is it available to work corp-to-corp. This role requires a hybrid schedule and will be based in our South Charlotte, NC Headquarters (Tuesday through Thursday) and work fully remotely on Mondays and Fridays each week. Curious how Shared Services fits into Red Ventures?
Click here . As a Security Operations Engineer, you will identify and reduce risk across our cloud and SaaS environments by surfacing vulnerabilities, tuning detections, and driving remediation with the engineering teams who own the systems. You will own the full incident response lifecycle from alert triage through containment, eradication, and post-incident review.
You will hunt for threats before they surface in alerts and partner directly with Infrastructure and Engineering teams across our business units. This is a hands-on, high-ownership role for someone who is energized by complex cloud environments, moves fast under pressure, and takes pride in building repeatable, scalable security operations. If you are a sharp, curious security practitioner who wants real ownership and the chance to shape how security works across a large multi-brand organization, this is that role.
What You’Ll Do
: Identify, assess, and drive reduction of security risk across cloud, SaaS, and enterprise environments Partner with engineering and development teams to remediate vulnerabilities across code, cloud, and endpoint environments Lead end-to-end incident response across cloud and SaaS environments Own proactive threat hunting on a defined cadence Maintain and tune detection rules in the SIEM Contribute to security tooling evaluation and roadmap Produce post-incident reports and present findings to stakeholders Participate in an on-call rotation shared across the team on a rotating basis
What We’Re Looking For
: 4+ years of hands-on experience in one or more of: security monitoring, incident response, vulnerability management, or cloud security Experience in Incident response: end-to-end ownership from triage through containment, eradication, and post-incident review Experience with Cloud security in AWS: applying security controls, monitoring, and response techniques across AWS environments at scale Experience with Security tooling: hands-on experience with SIEM, endpoint protection, and vulnerability scanning platforms in a cloud environment Communication: strong written and verbal skills with the ability to translate technical findings for non-technical stakeholders
Nice To Have
: Threat intelligence and hunting: disciplined habit of staying current on attacker TTPs and applying that knowledge through structured, hypothesis-driven hunts across cloud, SaaS, and enterprise environments Identity and access management: policy review, least-privilege enforcement, and anomalous access detection SaaS security posture management: monitoring and tuning SaaS application security controls including impossible travel, OAuth abuse, and integration risks Container and CI/CD pipeline security: understanding of Kubernetes security, image scanning, and securing software delivery pipelines Compliance frameworks: working knowledge of PCI DSS, SOC 2, and ISO 27001 and how they map to technical security controls Familiarity with security frameworks (NIST CSF, MITRE ATT CK, CIS 18) Experience scripting or automating security workflows, including comfort leveraging AI tools to accelerate detection and response Relevant certifications such as AWS Security Specialty or GIAC equivalents
Compensation
: This range reflects total cash
, which may include base salary only or base salary plus target bonus, depending on the role. Where eligible, equity may also be offered separately and not included below.
varies based on location, experience, and
Range: $100,000 - $150,000 per year Additionally, the follow
Qualifications
. Total Cash