Cybersecurity Engineer II | SIEM and EDR (Remote)

The Home DepotGEORGIA - VIRTUAL - GA01, GA
$90,000 - $130,000Remote

About The Position

The Home Depot is seeking a highly motivated Cybersecurity Engineer II with expertise in SIEM and EDR platforms such as Cortex XSIAM, Splunk, CrowdStrike, or similar technologies. In this role, you will be responsible for designing, implementing, and optimizing security monitoring and endpoint detection capabilities to enhance the organization's threat detection and response posture. You will develop and fine-tune detection use cases, create automation and correlation logic, investigate complex security challenges, and collaborate closely with SOC, Cyber Resiliency, and engineering teams to improve visibility, reduce risk, and strengthen cybersecurity operations. The ideal candidate combines strong technical expertise with an analytical mindset and a passion for advancing detection capabilities and operational excellence.

Requirements

  • 2+ years of cyber security work experience
  • 1+ years of SIEM or EDR specific work experience with platforms such as Cortex XSIAM, Splunk, CrowdStrike, etc.
  • Good understanding of networking infrastructure concepts, technologies, and protocols
  • Capable of identifying gaps in logging/monitoring/endpoint protection and recommending solutions
  • Able to bridge the gap between technical and non-technical constituents
  • Solid people, team, and communication skills
  • Must be eighteen years of age or older.
  • Must be legally permitted to work in the United States.

Nice To Haves

  • Security+ and SIEM Vendor Certification (any vendor) and EDR Vendor Certification (any vendor) or equivalent certifications
  • Incident Response / SOC work experience
  • Experience working with cloud-based solutions, such as Azure, GCP
  • Experience with Linux/Unix Administration
  • Experienced with writing formal reports

Responsibilities

  • Maintain day-to-day operational health of EDR and SIEM infrastructure
  • Conduct research to baseline normal activity and tune out noise from alerting
  • Tune security use cases to provide high fidelity alerts
  • Collaborate to develop new, custom security use cases, log correlations, and detection rules
  • Apply event data to existing security use cases and models
  • Develop and configure dashboards for monitoring event trends and alerts
  • Configure reporting to provide key metrics and trends
  • Collaborate with external teams to onboard new data sources to SIEM
  • Validate appropriate extraction, parsing, and formatting in event data
  • Write custom field extractions in RegEx
  • Perform troubleshooting and break/fix efforts during service disruptions
  • Configure AV exceptions and blocks
  • Maintain updated service documentation
  • Perform other related duties as assigned
  • Collaborate with Enterprise Technology to configure and integrate cybersecurity systems that mitigate risk
  • Troubleshoot and quickly resolve escalated incidents
  • Design, build, configure, maintain, monitor cybersecurity threat defense capabilities and user access management
  • Coordinate integration and collaboration with managed security providers
  • Investigate and recommend corrective actions related to incidents
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service