FREE ACCESS
5,000–10,000 jobs/day
See all jobs on JobTailor
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Security Operations Engineer, Cloud & Endpoint Defense
Schoox, Inc.Security Operations Engineer focusing on cloud and endpoint security at Schoox. Collaborating with teams to enhance security operations using tools like CrowdStrike and AWS.
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in security operations, incident response, and cloud security, with hands-on experience in tools like CrowdStrike and AWS GuardDuty. Capable of configuring security policies, conducting investigations, and collaborating with DevOps teams to enhance security visibility and effectiveness.
Highest-signal resume keywords
Security OperationsIncident ResponseCrowdStrike FalconAWS GuardDutyCloudflare WAF
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Security Tool OperationsTool ConfigurationFinding ReviewCloud InvestigationLog Interpretation
Soft Skills
Attention to DetailClear CommunicationStrong Work EthicTechnical CuriosityOwnership Mindset
Tools & Technologies
CrowdStrikeAWS GuardDutyCloudflare WAFSIEMSOAR
Certifications & Qualifications
CrowdStrike CertificationAWS Security SpecialtySecurity+CySA+GIAC
Industry Keywords
Cloud SecurityIncident ResponseEndpoint SecurityInfrastructure SecurityDevOps Collaboration
Tech Stack
Tools & technologiesAWSCloudTerraform
About the role
Key responsibilities & impact- Security Tool Operations: Operate, maintain, and tune key security platforms, including CrowdStrike, AWS GuardDuty, Cloudflare WAF/rules, and related security tooling.
- Tool Configuration & Tuning: Configure rules, alerts, policies, exceptions, thresholds, and workflows under the guidance of the Security Operations Manager.
- Finding Review & Triage: Review security findings that require human judgment, validate severity, investigate context, and determine appropriate next steps.
- Incident Response Support: Support incident response activities, including triage, investigation, containment coordination, remediation tracking, and post-incident documentation.
- Cloud & Infrastructure Investigation: Investigate suspicious activity across AWS, endpoint, network, application, and edge security telemetry.
- DevOps Collaboration: Work closely with DevOps and infrastructure teams to validate findings, gather context, implement remediations, and improve security visibility.
- Security Operations Improvement: Identify gaps in logging, visibility, alert quality, documentation, or process, and help improve the day-to-day effectiveness of security operations.
- Runbooks & Documentation: Help maintain and improve security runbooks, investigation notes, operational procedures, and incident response documentation.
- Tool Health & Coverage: Monitor security tool health, endpoint agent status, cloud detection coverage, WAF effectiveness, and configuration consistency.
- Continuous Learning: Stay current with evolving threats, cloud security practices, endpoint defense, incident response methods, and security tooling capabilities.
Requirements
What you’ll need- 3-5 years of experience in security operations, cloud security, incident response, detection and response, infrastructure security, or a related security engineering role.
- Hands-on experience with endpoint security tools such as CrowdStrike Falcon or similar EDR/XDR platforms.
- Experience with AWS security services, especially GuardDuty. Familiarity with CloudTrail, IAM, VPC networking, CloudWatch, and cloud logging is strongly preferred.
- Experience with WAF, CDN, or edge security controls. Cloudflare experience is highly valuable.
- Strong incident response fundamentals, including triage, investigation, containment, remediation, and documentation.
- Ability to read and interpret logs from endpoint, cloud, web, network, and application sources.
- Comfortable working with DevOps, infrastructure, and engineering teams.
- Strong technical curiosity and desire to understand how systems, alerts, and security controls work.
- High ownership mindset with strong follow-through and attention to detail.
- Strong work ethic and pride in delivering high-quality work.
- Hunger to learn, improve, and grow within the security operations discipline.
- Ability to distinguish real risk from noise and make practical, business-aware decisions.
- Clear written and verbal communication skills, especially when documenting findings, explaining issues, or coordinating response activities.
- Ability to work independently and thrive in a remote work environment.
- ** Nice to Have**
- Experience with SIEM, SOAR, detection engineering, or security automation.
- Experience with scripting, APIs, Terraform, infrastructure as code, or automation workflows.
- Familiarity with AWS Security Hub, AWS Config, IAM Access Analyzer, CloudTrail Lake, or similar services.
- Experience contributing to incident response runbooks or operational security processes.
- Experience in SaaS, cloud-native, or DevOps-heavy environments.
- Relevant certifications such as CrowdStrike, AWS Security Specialty, Security+, CySA+, GIAC, or similar are helpful but not required.
Benefits
Comp & perks- Competitive salary and productivity-based bonus
- Stock options
- Prepaid meal card benefits
- Free physiotherapy sessions
- Free English lessons with an in-house instructor
- Gifts for birthdays, weddings, and baby arrivals
- Additional PTO for each child, plus maternity and paternity leave
- Flexible remote working
- Lego workshops as part of our development process
- Continuous learning and development opportunities
- Employee Assistance Program (EAP)