T

Senior Security Operations Engineer

taxwell United State
Remote
This Job is No Longer Active This position is no longer accepting applications
AI Summary

Taxwell is seeking a Senior Security Operations Engineer to lead security projects, implement new tools, and respond to security incidents. The ideal candidate will have hands-on expertise in cloud security, scripting, and threat hunting. This role offers autonomy, challenge, and the chance to make meaningful impact every day.

Key Highlights
Lead security projects end-to-end
Implement and configure new security tools and platforms
Respond to escalated security incidents
Conduct proactive threat hunting and refine detection logic
Collaborate with IT, cloud, and development teams
Technical Skills Required
Microsoft Azure Amazon Web Services CrowdStrike Falcon Python PowerShell Azure Monitor Azure Sentinel Azure Entra ID Azure Container Services EC2 ECS Lambda LightSail VMware Cloud
Benefits & Perks
Remote work from anywhere in the US
On-call rotation for after-hours incidents
Occasional weekend work for critical projects or incident response
Supportive, open, and inclusive work atmosphere
Equal opportunity employment and diversity and inclusion

Job Description


Taxwell is a leading digital tax filing platform formed in 2022 from the combination of Drake Software® and TaxAct®. These two longstanding organizations offer customers professional and do-it-yourself digital and downloadable products that are easy-to-use, best-in-class technology, and provide unparalleled customer support. Taxwell brands are a trusted solution for all users including those with complex tax returns. We strive to attract and retain candidates who exemplify our values: performance, perseverance, progress and partnership. Taxwell is an organization of forward thinkers looking to add industry experts to our growing team.


The IRM SecOps team is seeking a Senior Security Operations Engineer who thrives in a lean, fast-moving environment, takes ownership of outcomes, and combines strong project-based engineering execution with hands-on detection and response expertise.

This position blends multiple areas of security operations, with approximately 60% focused on engineering and driving project work building, implementing, and configuring new security tools and integrations, 20% on SOC operations, including monitoring, detection tuning, and continuous improvement, and 20% on incident response and other security operations tasks, such as hands-on investigation, containment, and recovery when issues arise.


Responsibilities:

  • Lead security projects end-to-end, including the build, and implementation of technical solutions.
  • Implement, configure, and optimize of new tools and platforms.
  • Respond to escalated security incidents, performing advanced analysis, containment, and recovery.
  • Conduct proactive threat hunting and refine detection logic for improved accuracy and context.
  • Collaborate with IT, cloud, and development teams to strengthen security controls and visibility.
  • Create and maintain detailed incident documentation, timelines, and lessons learned.
  • Continuously improve playbooks, automation, and operational efficiency.
  • Mentor analysts and contribute to process and capability development across the team.


Required Qualifications

  • 5+ years of experience in cybersecurity operations, security engineering, or incident response.


Hands-on expertise in:

  • Microsoft Azure (Azure Monitor, Sentinel, Entra ID, container services)
  • Amazon Web Services (AWS) (EC2, ECS, Lambda, LightSail, VMware Cloud)
  • CrowdStrike Falcon (deployment, configuration, and response)


  • Proficiency in Python and/or PowerShell scripting for automation and response.
  • Strong understanding of detection logic, incident handling, and response workflows.
  • Excellent communication and collaboration skills.
  • Highly self-motivated with the ability to manage priorities and operate independently in a fast-paced environment.


Preferred Qualifications

  • Experience in consulting, finance, or technology environments.
  • Familiarity with Defender XDR, Splunk, and osquery.
  • Experience with data visualization tools (e.g., Power BI).
  • Certifications such as GIAC, GCFA or GCFR.


Work Environment

  • On-call rotation is required for after-hours incidents.
  • Occasional weekend work may be needed for critical projects or incident response.
  • Remote (U.S. only) work from anywhere while staying closely connected to a small, collaborative team.
  • Expect a nimble, hands-on, high-ownership culture where your contributions have visible impact.


Why This Role Stands Out

You won’t be sitting in a queue of alerts or waiting for direction you’ll be owning projects, driving change, and building security capabilities that directly strengthen Taxwell’s defenses. If you’re looking for autonomy, challenge, and the chance to make meaningful impact every day, this is the role for you.


At Taxwell, we believe our work benefits from the diverse perspectives of our employees. As such, Taxwell welcomes and celebrates diversity and inclusion and is committed to equal opportunity employment. At Taxwell, you can expect a supportive, open, and inclusive atmosphere and a team that values your contributions.

Taxwell is committed to providing an environment of mutual respect where equal employment opportunities are available to all applicants without regard to race, color, religion, sex, national origin, age, disability, marital status, sexual orientation, gender identity, veteran status, and any other status protected under applicable law. Taxwell considers information gathered in the hiring process, including information on this application, confidential, and only shares it on a need-to-know basis or as required by law.

If you need assistance or accommodation due to a disability, you may contact us at [email protected] or by calling 828-349-5703 extension 6049 to speak with a member of the HR Talent Acquisition team.


Similar Jobs

Explore other opportunities that match your interests

Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Not Applicable

Jobgether

United State

Security Incident Response Engineer

Cyber Security
1d ago
Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Mid-Senior level

Stripe

United State

Senior Compliance Program Manager, Engineering

Cyber Security
3d ago

Premium Job

Sign up is free! Login or Sign up to view full details.

•••••• •••••• ••••••
Job Type ••••••
Experience Level ••••••

Palo Alto Networks

United State

Subscribe our newsletter

New Things Will Always Update Regularly