Logo for The Home Depot

Cybersecurity Engineer II | SIEM and EDR (Remote)

Role overview

Qualifications

  • 2+ years of cyber security work experience
  • 1+ years of SIEM or EDR specific work experience
  • Good understanding of networking infrastructure concepts, technologies, and protocols
  • Capable of identifying gaps in logging/monitoring/endpoint protection

Responsibilities

  • Maintain day-to-day operational health of EDR and SIEM infrastructure
  • Conduct research to baseline normal activity and tune out noise from alerting
  • Collaborate to develop new, custom security use cases, log correlations, and detection rules
  • Investigate and recommend corrective actions related to incidents

Key facts

Other skills

  • Report Writing
  • Problem Solving
  • Communication
  • Collaboration

About the company

The Home Depot logo

The Home Depot

Retail – Home Improvement & Building Supplies

The Home Depot, the world’s largest home improvement specialty retailer, values and rewards dedicated, knowledgeable, and experienced professionals. We operate more than 2,300 retail stores in all 50 states, the District of Columbia, Puerto Rico, the U.S. Virgin Islands, Guam, Canada, and Mexico. All of our associates have one thing in mind — helping our customers build and improve their homes. Join The Home Depot team today and see for yourself why we are consistently ranked as a top Fortune 500 company.

Company details

Company typeXLarge
IndustryRetail – Home Improvement & Building Supplies
Company size10001

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

With a career at The Home Depot, you can be yourself and also be part of something bigger.

Position Purpose:

The Home Depot is seeking a highly motivated Cybersecurity Engineer II with expertise in SIEM and EDR platforms such as Cortex XSIAM, Splunk, CrowdStrike, or similar technologies. In this role, you will be responsible for designing, implementing, and optimizing security monitoring and endpoint detection capabilities to enhance the organization's threat detection and response posture. You will develop and fine-tune detection use cases, create automation and correlation logic, investigate complex security challenges, and collaborate closely with SOC, Cyber Resiliency, and engineering teams to improve visibility, reduce risk, and strengthen cybersecurity operations. The ideal candidate combines strong technical expertise with an analytical mindset and a passion for advancing detection capabilities and operational excellence.

  • Maintain day-to-day operational health of EDR and SIEM infrastructure
  • Conduct research to baseline normal activity and tune out noise from alerting
  • Tune security use cases to provide high fidelity alerts
  • Collaborate to develop new, custom security use cases, log correlations, and detection rules
  • Apply event data to existing security use cases and models
  • Develop and configure dashboards for monitoring event trends and alerts
  • Configure reporting to provide key metrics and trends
  • Collaborate with external teams to onboard new data sources to SIEM
  • Validate appropriate extraction, parsing, and formatting in event data
  • Write custom field extractions in RegEx
  • Perform troubleshooting and break/fix efforts during service disruptions
  • Configure AV exceptions and blocks
  • Maintain updated service documentation
  • Perform other related duties as assigned

Required Skills:

  • 2+ years of cyber security work experience
  • 1+ years of SIEM or EDR specific work experience with platforms such as Cortex XSIAM, Splunk, CrowdStrike, etc.
  • Good understanding of networking infrastructure concepts, technologies, and protocols
  • Capable of identifying gaps in logging/monitoring/endpoint protection and recommending solutions
  • Able to bridge the gap between technical and non-technical constituents
  • Solid people, team, and communication skills

Preferred Skills:

  • Security+ and SIEM Vendor Certification (any vendor) and EDR Vendor Certification (any vendor) or equivalent certifications
  • Incident Response / SOC work experience
  • Experience working with cloud-based solutions, such as Azure, GCP
  • Experience with Linux/Unix Administration
  • Experienced with writing formal reports


Key Responsibilities:

  • 100% Deliver Execution & Problem Solving - Collaborate with Enterprise Technology to configure and integrate cybersecurity systems that mitigate risk; Troubleshoot and quickly resolve escalated incidents; Design, build, configure, maintain, monitor cybersecurity threat defense capabilities and user access management; Coordinate integration and collaboration with managed security providers; Investigate and recommend corrective actions related to incidents


Direct Manager/Direct Reports:

  • This position typically reports to Manager or Sr. Manager
  • This position has 0 Direct Reports


Travel Requirements:

  • No travel required.


Physical Requirements:

  • Most of the time is spent sitting in a comfortable position and there is frequent opportunity to move about. On rare occasions there may be a need to move or lift light articles.


Working Conditions:

  • Located in a comfortable indoor area. Any unpleasant conditions would be infrequent and not objectionable.


Minimum Qualifications:

  • Must be eighteen years of age or older.
  • Must be legally permitted to work in the United States.


Minimum Education:

  • The knowledge, skills and abilities typically acquired through the completion of a bachelor's degree program or equivalent degree in a field of study related to the job.


Minimum Years of Work Experience:

  • 2+


Competencies:

  • Action Oriented
  • Collaborates
  • Communicates Effectively
  • Customer Focus
  • Drives Results

For California, Colorado, Connecticut, Rhode Island, Nevada, New York City, Ithaca (NY), Westchester County (NY), and Washington residents:
 

The pay range for this position is between $90,000.00 - $130,000.00

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
·

Cybersecurity Engineer Related jobs

Other jobs at The Home Depot

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.