← all jobs

[Remote] Senior Manager - SIEM SOAR Engineer

Work from home Full-time role Hiring

Note: The job is a remote job and is open to candidates in USA. Kroll is a global leader in risk and financial advisory solutions, and they are seeking a Senior Manager - SIEM SOAR Engineer to oversee a team in delivering CrowdStrike MDR and Next Gen SIEM implementations. The role involves designing delivery models, ensuring operational excellence, and enhancing client detection maturity through managed services.

Responsibilities

  • Lead end-to-end delivery of CrowdStrike MDR and Next Gen SIEM (LogScale) implementations for enterprise and mid-market clients
  • Define standard operating procedures, playbooks, and delivery frameworks for repeatable, scalable service delivery
  • Manage and mentor detection engineers and consultants delivering client projects across CrowdStrike Falcon modules
  • Oversee detection logic development, correlation rules, and SOC process optimization
  • Partner with Kroll’s incident response and advisory teams to integrate post-incident detection enhancements into ongoing MDR operations
  • Develop and maintain CrowdStrike baseline configurations, deployment templates, and automation accelerators (Terraform, Ansible, PowerShell)
  • Interface directly with client executives and technical stakeholders to translate business risk into detection and response strategies
  • Collaborate with technology alliances (CrowdStrike, Microsoft, etc.) on co-developed service offerings and go-to-market enablement
  • Track delivery metrics, SLAs, and client satisfaction to continuously improve program maturity and profitability

Skills

  • 7–10+ years of experience in cybersecurity delivery, operations, or consulting (preferably within MDR, SOC, or detection engineering programs)
  • Proven track record leading teams deploying CrowdStrike Falcon and CrowdStrike LogScale technologies
  • Strong understanding of SIEM/SOAR operations, detection logic, and threat response workflows
  • Experience designing or maturing MDR service models (process, metrics, automation, and reporting)
  • Proficiency in Terraform, PowerShell, or Python for automation and configuration management
  • Deep familiarity with multi-tenant operations, Flight Control, and Azure Lighthouse environments
  • Excellent communication and presentation skills—comfortable interfacing with client CISOs and technical teams alike
  • Experience in security consulting or managed services leadership (Big 4, MSSP, or global cyber provider preferred)
  • CrowdStrike certifications (CCFA, CCFR, CCSA) or equivalent technical credentials
  • Familiarity with Defender Suite integration and hybrid XDR architecture
  • Knowledge of ROI modeling, efficiency metrics, and service-based automation frameworks
  • Strong business acumen and the ability to link detection and response outcomes to client risk reduction and value realization

Benefits

  • Healthcare Coverage: Comprehensive medical, dental, and vision plans.
  • Time Off and Leave Policies: Generous paid time off (PTO), paid company holidays, generous parental and family leave.
  • Protective Insurances: Life insurance, short- and long-term disability coverage, and accident protection.
  • Compensation and Rewards: Competitive salary structures, performance-based incentives, and merit-based compensation reviews.
  • Retirement Plans: 401(k) plans with company matching.

Company Overview

  • Kroll is a provider of risk solutions that helps clients make confident risk management decisions. It is a sub-organization of Vistra Group. It was founded in 1932, and is headquartered in New York, New York, USA, with a workforce of 5001-10000 employees. Its website is http://www.kroll.com/.
  • Company H1B Sponsorship

  • Kroll has a track record of offering H1B sponsorships, with 1 in 2026, 21 in 2025, 14 in 2024, 10 in 2023, 15 in 2022, 7 in 2021. Please note that this does not guarantee sponsorship for this specific role.
  • More open positions

    [Remote] Senior Account Executive - Commercial

    Work from home Full-time role

    [Remote] Client Onboarding Analyst, New Plans

    Work from home Full-time role

    [Remote] Senior BI Developer – Construction Analytics/Data modeling (Remote work)

    Work from home Full-time role

    [Remote] Staff Android Software Engineer, Cash App Consumer Platform

    Work from home Full-time role

    [Remote] Event & Speaker Content Manager (Remote)

    Work from home Full-time role

    Sr. Director, Global Partner Management - Financial Services and Payments

    Work from home Full-time role

    Associate Director, Clinical Operations

    Work from home Full-time role

    Remote Legal Typist – Transcribe Contracts and Legal Documents

    Work from home Full-time role

    [Remote] Student Podcast Editing & Content Creation Internship (Unpaid | Portfolio Experience)

    Work from home Full-time role

    Senior NICE CXOne Engineer

    Work from home Full-time role

    Experienced Data Entry Specialist - Remote Healthcare Data Management Opportunity at careerzynith

    Work from home Full-time role

    Ingeniero/a Eléctrico/a (H/M/X) 2079

    Work from home Full-time role

    [Remote] Senior Data Scientist

    Work from home Full-time role

    VP, Creative Director (Art)

    Work from home Full-time role

    Experienced Full Stack Data Scientist – Data Analysis and Business Insights

    Work from home Full-time role

    Unitedhealthcare Remote Associate Claims Representative

    Work from home Full-time role

    Field Based Clinical Care Coordinator- Morgan/Monroe/Owen County, Indiana

    Work from home Full-time role

    Utilization Management Coordinator (Home-Based) - Prior Authorization

    Work from home Full-time role

    [Remote] Sourcing Recruiter, ADC

    Work from home Full-time role

    [Remote] Operations Associate

    Work from home Full-time role

    Fresher - NLP Engineer

    Work from home Full-time role