Varonis Careers - MDR Security Engineer

JobviteMid Level
Active

Job description

Varonis Careers { "@context": "http://schema.org", "@type": "JobPosting", "datePosted": "2026-06-17", "description": "

Summary\u00A0Data has never been more valuable and vulnerable. As cybercriminals become more sophisticated and regulations more strict, organizations struggle to answer one key question: \u201CIs my data safe?\"At Varonis, we see the world of cybersecurity differently. Instead of chasing threats, we believe the most practical approach is protecting data from the inside out. We\u2019ve built the industry\u2019s first fully autonomous Data Security Platform to help our customers dramatically reduce risk with minimal human effort.At Varonis, we move fast. We\u2019re an ultra-collaborative company with brilliant people who care deeply about the details. Together, we\u2019re solving interesting and complex puzzles to keep the world\u2019s data safe.\u00A0We work in a flexible, hybrid model, so you can choose the home-office balance that works best for you\u00A0Position Overview:Varonis MDR delivers 24x7x365 managed detection and response services, protecting customer data through advanced detection, investigation, and response at scale.We are seeking an MDR Security Engineer to own and scale the automation layer that powers our global MDR operations. This role is responsible for building and operating production-grade automation systems that reduce manual workload, improve detection quality, and enable consistent, high-quality incident response.The ideal candidate is a hands-on engineer with strong experience in SOAR platforms, security operations, and automation design, capable of driving measurable improvements in efficiency, reliability, and response outcomes across a high-volume SOC environment.Responsibilities
  • Upkeep the design, development, and lifecycle of SOAR playbooks, workflows, and integrations across the MDR platform
  • Build and operate production-grade automation systems supporting alert triage, enrichment, investigation, and response
  • Define and drive automation strategy by identifying high-impact, high-volume SOC processes and scaling them through automation
  • Develop integrations across SIEM, EDR/XDR, identity, cloud, and ticketing systems using APIs and scripting
  • Partner with MDR analysts, IR, threat hunters, and engineering teams to translate operational workflows into scalable automation
  • Improve detection and response quality through automation of enrichment, investigation, and containment workflows
  • Contribute to incident response and RCAs by delivering tooling that improves investigation speed, accuracy, and consistency
  • Evaluate and implement new automation capabilities, including AI-assisted workflows and data-driven decisioning
\u00A0Monitoring, Metrics & Reliability Ownership
  • Define and own automation KPIs, including:
    • Automation coverage (% of alerts handled or augmented)
    • MTTD / MTTR improvement
    • False positive reduction and signal-to-noise improvement
    • Analyst time saved and throughput increase
  • Build and maintain dashboards and reporting to measure automation impact on SOC performance and SLAs
  • Ensure production reliability and stability of automation systems, including:
    • Monitoring workflow success/failure rates and execution latency
    • Tracking integration and API health, errors, and retry behavior
    • Implementing logging, alerting, and observability across automation pipelines
  • Continuously optimize workflows based on data, feedback, and operational performance to ensure consistent 24/7 MDR operation
Requirements
  • 4+ years of experience in Security Operations, MDR, Incident Response, or Security Engineering
  • 2\u20133+ years of hands-on experience with SOAR platforms and security automation
  • Proven experience owning and operating production-grade automation workflows in a SOC/MDR environment
  • Strong understanding of SOC operations, alert triage, escalation workflows, and incident response
  • Experience with enterprise security technologies (SIEM, SOAR, EDR/XDR, IAM/AD)
  • Strong scripting/development skills (Python, PowerShell, Bash) and experience building APIs and integrations
  • Experience with CI/CD, version control (Git), and deploying automation at scale
  • Strong analytical thinking and problem-solving skills with the ability to translate complex workflows into automation
  • Excellent communication and collaboration skills across engineering and operations teams
Nice to Have
  • Experience with AI-enhanced automation or large-scale workflow orchestration
  • Experience in high-volume MDR/SOC environments
  • Familiarity with threat hunting or detection engineering
\u00A0What Success Looks Like
  • Increased automation coverage across MDR workflows
  • Measurable reduction in analyst workload and response times
  • Improved consistency and quality of incident response
  • Stable, reliable automation systems operating at scale
We invite you to check out our Instagram Page to gain further insight into the Varonis culture!@VaronisLife\u00A0\u00A0Varonis is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, national origin, disability, veteran status, and other legally protected characteristics.\u00A0\u00A0#LI-Hybrid", "hiringOrganization": "Varonis", "industry": "MDDR", "identifier": "oQ2mAfwy", "jobLocation": [ { "@type": "Place", "address": { "@type": "PostalAddress", "addressCountry": "Israel" } } ], "title": "MDR Security Engineer", "baseSalary": { "@type": "MonetaryAmount", "currency": "", "value": { "@type": "QuantitativeValue", "minValue": "", "maxValue": "", "unitText": "" } } } MDR Security Engineer MDDR Herzliya, Israel Apply Description Summary Data has never been more valuable and vulnerable. As cybercriminals become more sophisticated and regulations more strict, organizations struggle to answer one key question: “Is my data safe?"At Varonis, we see the world of cybersecurity differently. Instead of chasing threats, we believe the most practical approach is protecting data from the inside out. We’ve built the industry’s first fully autonomous Data Security Platform to help our customers dramatically reduce risk with minimal human effort.At Varonis, we move fast. We’re an ultra-collaborative company with brilliant people who care deeply about the details. Together, we’re solving interesting and complex puzzles to keep the world’s data safe. We work in a flexible, hybrid model, so you can choose the home-office balance that works best for you Position Overview:Varonis MDR delivers 24x7x365 managed detection and response services, protecting customer data through advanced detection, investigation, and response at scale.We are seeking an MDR Security Engineer to own and scale the automation layer that powers our global MDR operations. This role is responsible for building and operating production-grade automation systems that reduce manual workload, improve detection quality, and enable consistent, high-quality incident response.The ideal candidate is a hands-on engineer with strong experience in SOAR platforms, security operations, and automation design, capable of driving measurable improvements in efficiency, reliability, and response outcomes across a high-volume SOC environment.ResponsibilitiesUpkeep the design, development, and lifecycle of SOAR playbooks, workflows, and integrations across the MDR platformBuild and operate production-grade automation systems supporting alert triage, enrichment, investigation, and responseDefine and drive automation strategy by identifying high-impact, high-volume SOC processes and scaling them through automationDevelop integrations across SIEM, EDR/XDR, identity, cloud, and ticketing systems using APIs and scriptingPartner with MDR analysts, IR, threat hunters, and engineering teams to translate operational workflows into scalable automationImprove detection and response quality through automation of enrichment, investigation, and containment workflowsContribute to incident response and RCAs by delivering tooling that improves investigation speed, accuracy, and consistencyEvaluate and implement new automation capabilities, including AI-assisted workflows and data-driven decisioning Monitoring, Metrics & Reliability OwnershipDefine and own automation KPIs, including:Automation coverage (% of alerts handled or augmented)MTTD / MTTR improvementFalse positive reduction and signal-to-noise improvementAnalyst time saved and throughput increaseBuild and maintain dashboards and reporting to measure automation impact on SOC performance and SLAsEnsure production reliability and stability of automation systems, including:Monitoring workflow success/failure rates and execution latencyTracking integration and API health, errors, and retry behaviorImplementing logging, alerting, and observability across automation pipelinesContinuously optimize workflows based on data, feedback, and operational performance to ensure consistent 24/7 MDR operationRequirements4+ years of experience in Security Operations, MDR, Incident Response, or Security Engineering2–3+ years of hands-on experience with SOAR platforms and security automationProven experience owning and operating production-grade automation workflows in a SOC/MDR environmentStrong understanding of SOC operations, alert triage, escalation workflows, and incident responseExperience with enterprise security technologies (SIEM, SOAR, EDR/XDR, IAM/AD)Strong scripting/development skills (Python, PowerShell, Bash) and experience building APIs and integrationsExperience with CI/CD, version control (Git), and deploying automation at scaleStrong analytical thinking and problem-solving skills with the ability to translate complex workflows into automationExcellent communication and collaboration skills across engineering and operations teamsNice to HaveExperience with AI-enhanced automation or large-scale workflow orchestrationExperience in high-volume MDR/SOC environmentsFamiliarity with threat hunting or detection engineering What Success Looks LikeIncreased automation coverage across MDR workflowsMeasurable reduction in analyst workload and response timesImproved consistency and quality of incident responseStable, reliable automation systems operating at scaleWe invite you to check out our Instagram Page to gain further insight into the Varonis culture!@VaronisLife Varonis is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, national origin, disability, veteran status, and other legally protected characteristics. #LI-Hybrid Apply Apply Later ← Back to Current Openings Share lang: en_US Share LinkedIn Facebook Twitter Email Similar Jobs MDR Security Engineer MDR Security Engineer (India) MDR Security Engineer (Poland) Powered by Jobvite

Varonis Careers { "@context": "http://schema.org", "@type": "JobPosting", "datePosted": "2026-06-17", "description": "

Summary\u00A0Data has never been more valuable and vulnerable. As cybercriminals become more sophisticated and regulations more strict, organizations struggle to answer one key question: \u201CIs my data safe?\"At Varonis, we see the world of cybersecurity differently. Instead of chasing threats, we believe the most practical approach is protecting data from the inside out. We\u2019ve built the industry\u2019s first fully autonomous Data Security Platform to help our customers dramatically reduce risk with minimal human effort.At Varonis, we move fast. We\u2019re an ultra-collaborative company with brilliant people who care deeply about the details. Together, we\u2019re solving interesting and complex puzzles to keep the world\u2019s data safe.\u00A0We work in a flexible, hybrid model, so you can choose the home-office balance that works best for you\u00A0Position Overview:Varonis MDR delivers 24x7x365 managed detection and response services, protecting customer data through advanced detection, investigation, and response at scale.We are seeking an MDR Security Engineer to own and scale the automation layer that powers our global MDR operations. This role is responsible for building and operating production-grade automation systems that reduce manual workload, improve detection quality, and enable consistent, high-quality incident response.The ideal candidate is a hands-on engineer with strong experience in SOAR platforms, security operations, and automation design, capable of driving measurable improvements in efficiency, reliability, and response outcomes across a high-volume SOC environment.Responsibilities
  • Upkeep the design, development, and lifecycle of SOAR playbooks, workflows, and integrations across the MDR platform
  • Build and operate production-grade automation systems supporting alert triage, enrichment, investigation, and response
  • Define and drive automation strategy by identifying high-impact, high-volume SOC processes and scaling them through automation
  • Develop integrations across SIEM, EDR/XDR, identity, cloud, and ticketing systems using APIs and scripting
  • Partner with MDR analysts, IR, threat hunters, and engineering teams to translate operational workflows into scalable automation
  • Improve detection and response quality through automation of enrichment, investigation, and containment workflows
  • Contribute to incident response and RCAs by delivering tooling that improves investigation speed, accuracy, and consistency
  • Evaluate and implement new automation capabilities, including AI-assisted workflows and data-driven decisioning
\u00A0Monitoring, Metrics & Reliability Ownership
  • Define and own automation KPIs, including:
    • Automation coverage (% of alerts handled or augmented)
    • MTTD / MTTR improvement
    • False positive reduction and signal-to-noise improvement
    • Analyst time saved and throughput increase
  • Build and maintain dashboards and reporting to measure automation impact on SOC performance and SLAs
  • Ensure production reliability and stability of automation systems, including:
    • Monitoring workflow success/failure rates and execution latency
    • Tracking integration and API health, errors, and retry behavior
    • Implementing logging, alerting, and observability across automation pipelines
  • Continuously optimize workflows based on data, feedback, and operational performance to ensure consistent 24/7 MDR operation
Requirements
  • 4+ years of experience in Security Operations, MDR, Incident Response, or Security Engineering
  • 2\u20133+ years of hands-on experience with SOAR platforms and security automation
  • Proven experience owning and operating production-grade automation workflows in a SOC/MDR environment
  • Strong understanding of SOC operations, alert triage, escalation workflows, and incident response
  • Experience with enterprise security technologies (SIEM, SOAR, EDR/XDR, IAM/AD)
  • Strong scripting/development skills (Python, PowerShell, Bash) and experience building APIs and integrations
  • Experience with CI/CD, version control (Git), and deploying automation at scale
  • Strong analytical thinking and problem-solving skills with the ability to translate complex workflows into automation
  • Excellent communication and collaboration skills across engineering and operations teams
Nice to Have
  • Experience with AI-enhanced automation or large-scale workflow orchestration
  • Experience in high-volume MDR/SOC environments
  • Familiarity with threat hunting or detection engineering
\u00A0What Success Looks Like
  • Increased automation coverage across MDR workflows
  • Measurable reduction in analyst workload and response times
  • Improved consistency and quality of incident response
  • Stable, reliable automation systems operating at scale
We invite you to check out our Instagram Page to gain further insight into the Varonis culture!@VaronisLife\u00A0\u00A0Varonis is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, national origin, disability, veteran status, and other legally protected characteristics.\u00A0\u00A0#LI-Hybrid", "hiringOrganization": "Varonis", "industry": "MDDR", "identifier": "oQ2mAfwy", "jobLocation": [ { "@type": "Place", "address": { "@type": "PostalAddress", "addressCountry": "Israel" } } ], "title": "MDR Security Engineer", "baseSalary": { "@type": "MonetaryAmount", "currency": "", "value": { "@type": "QuantitativeValue", "minValue": "", "maxValue": "", "unitText": "" } } } MDR Security Engineer MDDR Herzliya, Israel Apply Description Summary Data has never been more valuable and vulnerable. As cybercriminals become more sophisticated and regulations more strict, organizations struggle to answer one key question: “Is my data safe?"At Varonis, we see the world of cybersecurity differently. Instead of chasing threats, we believe the most practical approach is protecting data from the inside out. We’ve built the industry’s first fully autonomous Data Security Platform to help our customers dramatically reduce risk with minimal human effort.At Varonis, we move fast. We’re an ultra-collaborative company with brilliant people who care deeply about the details. Together, we’re solving interesting and complex puzzles to keep the world’s data safe. We work in a flexible, hybrid model, so you can choose the home-office balance that works best for you Position Overview:Varonis MDR delivers 24x7x365 managed detection and response services, protecting customer data through advanced detection, investigation, and response at scale.We are seeking an MDR Security Engineer to own and scale the automation layer that powers our global MDR operations. This role is responsible for building and operating production-grade automation systems that reduce manual workload, improve detection quality, and enable consistent, high-quality incident response.The ideal candidate is a hands-on engineer with strong experience in SOAR platforms, security operations, and automation design, capable of driving measurable improvements in efficiency, reliability, and response outcomes across a high-volume SOC environment.ResponsibilitiesUpkeep the design, development, and lifecycle of SOAR playbooks, workflows, and integrations across the MDR platformBuild and operate production-grade automation systems supporting alert triage, enrichment, investigation, and responseDefine and drive automation strategy by identifying high-impact, high-volume SOC processes and scaling them through automationDevelop integrations across SIEM, EDR/XDR, identity, cloud, and ticketing systems using APIs and scriptingPartner with MDR analysts, IR, threat hunters, and engineering teams to translate operational workflows into scalable automationImprove detection and response quality through automation of enrichment, investigation, and containment workflowsContribute to incident response and RCAs by delivering tooling that improves investigation speed, accuracy, and consistencyEvaluate and implement new automation capabilities, including AI-assisted workflows and data-driven decisioning Monitoring, Metrics & Reliability OwnershipDefine and own automation KPIs, including:Automation coverage (% of alerts handled or augmented)MTTD / MTTR improvementFalse positive reduction and signal-to-noise improvementAnalyst time saved and throughput increaseBuild and maintain dashboards and reporting to measure automation impact on SOC performance and SLAsEnsure production reliability and stability of automation systems, including:Monitoring workflow success/failure rates and execution latencyTracking integration and API health, errors, and retry behaviorImplementing logging, alerting, and observability across automation pipelinesContinuously optimize workflows based on data, feedback, and operational performance to ensure consistent 24/7 MDR operationRequirements4+ years of experience in Security Operations, MDR, Incident Response, or Security Engineering2–3+ years of hands-on experience with SOAR platforms and security automationProven experience owning and operating production-grade automation workflows in a SOC/MDR environmentStrong understanding of SOC operations, alert triage, escalation workflows, and incident responseExperience with enterprise security technologies (SIEM, SOAR, EDR/XDR, IAM/AD)Strong scripting/development skills (Python, PowerShell, Bash) and experience building APIs and integrationsExperience with CI/CD, version control (Git), and deploying automation at scaleStrong analytical thinking and problem-solving skills with the ability to translate complex workflows into automationExcellent communication and collaboration skills across engineering and operations teamsNice to HaveExperience with AI-enhanced automation or large-scale workflow orchestrationExperience in high-volume MDR/SOC environmentsFamiliarity with threat hunting or detection engineering What Success Looks LikeIncreased automation coverage across MDR workflowsMeasurable reduction in analyst workload and response timesImproved consistency and quality of incident responseStable, reliable automation systems operating at scaleWe invite you to check out our Instagram Page to gain further insight into the Varonis culture!@VaronisLife Varonis is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, national origin, disability, veteran status, and other legally protected characteristics. #LI-Hybrid Apply Apply Later ← Back to Current Openings Share lang: en_US Share LinkedIn Facebook Twitter Email Similar Jobs MDR Security Engineer MDR Security Engineer (India) MDR Security Engineer (Poland) Powered by Jobvite

Varonis Careers { "@context": "http://schema.org", "@type": "JobPosting", "datePosted": "2026-06-17", "description": "

Summary\u00A0Data has never been more valuable and vulnerable. As cybercriminals become more sophisticated and regulations more strict, organizations struggle to answer one key question: \u201CIs my data safe?\"At Varonis, we see the world of cybersecurity differently. Instead of chasing threats, we believe the most practical approach is protecting data from the inside out. We\u2019ve built the industry\u2019s first fully autonomous Data Security Platform to help our customers dramatically reduce risk with minimal human effort.At Varonis, we move fast. We\u2019re an ultra-collaborative company with brilliant people who care deeply about the details. Together, we\u2019re solving interesting and complex puzzles to keep the world\u2019s data safe.\u00A0We work in a flexible, hybrid model, so you can choose the home-office balance that works best for you\u00A0Position Overview:Varonis MDR delivers 24x7x365 managed detection and response services, protecting customer data through advanced detection, investigation, and response at scale.We are seeking an MDR Security Engineer to own and scale the automation layer that powers our global MDR operations. This role is responsible for building and operating production-grade automation systems that reduce manual workload, improve detection quality, and enable consistent, high-quality incident response.The ideal candidate is a hands-on engineer with strong experience in SOAR platforms, security operations, and automation design, capable of driving measurable improvements in efficiency, reliability, and response outcomes across a high-volume SOC environment.Responsibilities
  • Upkeep the design, development, and lifecycle of SOAR playbooks, workflows, and integrations across the MDR platform
  • Build and operate production-grade automation systems supporting alert triage, enrichment, investigation, and response
  • Define and drive automation strategy by identifying high-impact, high-volume SOC processes and scaling them through automation
  • Develop integrations across SIEM, EDR/XDR, identity, cloud, and ticketing systems using APIs and scripting
  • Partner with MDR analysts, IR, threat hunters, and engineering teams to translate operational workflows into scalable automation
  • Improve detection and response quality through automation of enrichment, investigation, and containment workflows
  • Contribute to incident response and RCAs by delivering tooling that improves investigation speed, accuracy, and consistency
  • Evaluate and implement new automation capabilities, including AI-assisted workflows and data-driven decisioning
\u00A0Monitoring, Metrics & Reliability Ownership
  • Define and own automation KPIs, including:
    • Automation coverage (% of alerts handled or augmented)
    • MTTD / MTTR improvement
    • False positive reduction and signal-to-noise improvement
    • Analyst time saved and throughput increase
  • Build and maintain dashboards and reporting to measure automation impact on SOC performance and SLAs
  • Ensure production reliability and stability of automation systems, including:
    • Monitoring workflow success/failure rates and execution latency
    • Tracking integration and API health, errors, and retry behavior
    • Implementing logging, alerting, and observability across automation pipelines
  • Continuously optimize workflows based on data, feedback, and operational performance to ensure consistent 24/7 MDR operation
Requirements
  • 4+ years of experience in Security Operations, MDR, Incident Response, or Security Engineering
  • 2\u20133+ years of hands-on experience with SOAR platforms and security automation
  • Proven experience owning and operating production-grade automation workflows in a SOC/MDR environment
  • Strong understanding of SOC operations, alert triage, escalation workflows, and incident response
  • Experience with enterprise security technologies (SIEM, SOAR, EDR/XDR, IAM/AD)
  • Strong scripting/development skills (Python, PowerShell, Bash) and experience building APIs and integrations
  • Experience with CI/CD, version control (Git), and deploying automation at scale
  • Strong analytical thinking and problem-solving skills with the ability to translate complex workflows into automation
  • Excellent communication and collaboration skills across engineering and operations teams
Nice to Have
  • Experience with AI-enhanced automation or large-scale workflow orchestration
  • Experience in high-volume MDR/SOC environments
  • Familiarity with threat hunting or detection engineering
\u00A0What Success Looks Like
  • Increased automation coverage across MDR workflows
  • Measurable reduction in analyst workload and response times
  • Improved consistency and quality of incident response
  • Stable, reliable automation systems operating at scale
We invite you to check out our Instagram Page to gain further insight into the Varonis culture!@VaronisLife\u00A0\u00A0Varonis is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, national origin, disability, veteran status, and other legally protected characteristics.\u00A0\u00A0#LI-Hybrid", "hiringOrganization": "Varonis", "industry": "MDDR", "identifier": "oQ2mAfwy", "jobLocation": [ { "@type": "Place", "address": { "@type": "PostalAddress", "addressCountry": "Israel" } } ], "title": "MDR Security Engineer", "baseSalary": { "@type": "MonetaryAmount", "currency": "", "value": { "@type": "QuantitativeValue", "minValue": "", "maxValue": "", "unitText": "" } } } MDR Security Engineer MDDR Herzliya, Israel Apply Description Summary Data has never been more valuable and vulnerable. As cybercriminals become more sophisticated and regulations more strict, organizations struggle to answer one key question: “Is my data safe?"At Varonis, we see the world of cybersecurity differently. Instead of chasing threats, we believe the most practical approach is protecting data from the inside out. We’ve built the industry’s first fully autonomous Data Security Platform to help our customers dramatically reduce risk with minimal human effort.At Varonis, we move fast. We’re an ultra-collaborative company with brilliant people who care deeply about the details. Together, we’re solving interesting and complex puzzles to keep the world’s data safe. We work in a flexible, hybrid model, so you can choose the home-office balance that works best for you Position Overview:Varonis MDR delivers 24x7x365 managed detection and response services, protecting customer data through advanced detection, investigation, and response at scale.We are seeking an MDR Security Engineer to own and scale the automation layer that powers our global MDR operations. This role is responsible for building and operating production-grade automation systems that reduce manual workload, improve detection quality, and enable consistent, high-quality incident response.The ideal candidate is a hands-on engineer with strong experience in SOAR platforms, security operations, and automation design, capable of driving measurable improvements in efficiency, reliability, and response outcomes across a high-volume SOC environment.ResponsibilitiesUpkeep the design, development, and lifecycle of SOAR playbooks, workflows, and integrations across the MDR platformBuild and operate production-grade automation systems supporting alert triage, enrichment, investigation, and responseDefine and drive automation strategy by identifying high-impact, high-volume SOC processes and scaling them through automationDevelop integrations across SIEM, EDR/XDR, identity, cloud, and ticketing systems using APIs and scriptingPartner with MDR analysts, IR, threat hunters, and engineering teams to translate operational workflows into scalable automationImprove detection and response quality through automation of enrichment, investigation, and containment workflowsContribute to incident response and RCAs by delivering tooling that improves investigation speed, accuracy, and consistencyEvaluate and implement new automation capabilities, including AI-assisted workflows and data-driven decisioning Monitoring, Metrics & Reliability OwnershipDefine and own automation KPIs, including:Automation coverage (% of alerts handled or augmented)MTTD / MTTR improvementFalse positive reduction and signal-to-noise improvementAnalyst time saved and throughput increaseBuild and maintain dashboards and reporting to measure automation impact on SOC performance and SLAsEnsure production reliability and stability of automation systems, including:Monitoring workflow success/failure rates and execution latencyTracking integration and API health, errors, and retry behaviorImplementing logging, alerting, and observability across automation pipelinesContinuously optimize workflows based on data, feedback, and operational performance to ensure consistent 24/7 MDR operationRequirements4+ years of experience in Security Operations, MDR, Incident Response, or Security Engineering2–3+ years of hands-on experience with SOAR platforms and security automationProven experience owning and operating production-grade automation workflows in a SOC/MDR environmentStrong understanding of SOC operations, alert triage, escalation workflows, and incident responseExperience with enterprise security technologies (SIEM, SOAR, EDR/XDR, IAM/AD)Strong scripting/development skills (Python, PowerShell, Bash) and experience building APIs and integrationsExperience with CI/CD, version control (Git), and deploying automation at scaleStrong analytical thinking and problem-solving skills with the ability to translate complex workflows into automationExcellent communication and collaboration skills across engineering and operations teamsNice to HaveExperience with AI-enhanced automation or large-scale workflow orchestrationExperience in high-volume MDR/SOC environmentsFamiliarity with threat hunting or detection engineering What Success Looks LikeIncreased automation coverage across MDR workflowsMeasurable reduction in analyst workload and response timesImproved consistency and quality of incident responseStable, reliable automation systems operating at scaleWe invite you to check out our Instagram Page to gain further insight into the Varonis culture!@VaronisLife Varonis is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, national origin, disability, veteran status, and other legally protected characteristics. #LI-Hybrid Apply Apply Later ← Back to Current Openings Share lang: en_US Share LinkedIn Facebook Twitter Email Similar Jobs MDR Security Engineer MDR Security Engineer (India) MDR Security Engineer (Poland) Powered by Jobvite

{ "@context": "http://schema.org", "@type": "JobPosting", "datePosted": "2026-06-17", "description": "

Summary\u00A0Data has never been more valuable and vulnerable. As cybercriminals become more sophisticated and regulations more strict, organizations struggle to answer one key question: \u201CIs my data safe?\"At Varonis, we see the world of cybersecurity differently. Instead of chasing threats, we believe the most practical approach is protecting data from the inside out. We\u2019ve built the industry\u2019s first fully autonomous Data Security Platform to help our customers dramatically reduce risk with minimal human effort.At Varonis, we move fast. We\u2019re an ultra-collaborative company with brilliant people who care deeply about the details. Together, we\u2019re solving interesting and complex puzzles to keep the world\u2019s data safe.\u00A0We work in a flexible, hybrid model, so you can choose the home-office balance that works best for you\u00A0Position Overview:Varonis MDR delivers 24x7x365 managed detection and response services, protecting customer data through advanced detection, investigation, and response at scale.We are seeking an MDR Security Engineer to own and scale the automation layer that powers our global MDR operations. This role is responsible for building and operating production-grade automation systems that reduce manual workload, improve detection quality, and enable consistent, high-quality incident response.The ideal candidate is a hands-on engineer with strong experience in SOAR platforms, security operations, and automation design, capable of driving measurable improvements in efficiency, reliability, and response outcomes across a high-volume SOC environment.Responsibilities
  • Upkeep the design, development, and lifecycle of SOAR playbooks, workflows, and integrations across the MDR platform
  • Build and operate production-grade automation systems supporting alert triage, enrichment, investigation, and response
  • Define and drive automation strategy by identifying high-impact, high-volume SOC processes and scaling them through automation
  • Develop integrations across SIEM, EDR/XDR, identity, cloud, and ticketing systems using APIs and scripting
  • Partner with MDR analysts, IR, threat hunters, and engineering teams to translate operational workflows into scalable automation
  • Improve detection and response quality through automation of enrichment, investigation, and containment workflows
  • Contribute to incident response and RCAs by delivering tooling that improves investigation speed, accuracy, and consistency
  • Evaluate and implement new automation capabilities, including AI-assisted workflows and data-driven decisioning
\u00A0Monitoring, Metrics & Reliability Ownership
  • Define and own automation KPIs, including:
    • Automation coverage (% of alerts handled or augmented)
    • MTTD / MTTR improvement
    • False positive reduction and signal-to-noise improvement
    • Analyst time saved and throughput increase
  • Build and maintain dashboards and reporting to measure automation impact on SOC performance and SLAs
  • Ensure production reliability and stability of automation systems, including:
    • Monitoring workflow success/failure rates and execution latency
    • Tracking integration and API health, errors, and retry behavior
    • Implementing logging, alerting, and observability across automation pipelines
  • Continuously optimize workflows based on data, feedback, and operational performance to ensure consistent 24/7 MDR operation
Requirements
  • 4+ years of experience in Security Operations, MDR, Incident Response, or Security Engineering
  • 2\u20133+ years of hands-on experience with SOAR platforms and security automation
  • Proven experience owning and operating production-grade automation workflows in a SOC/MDR environment
  • Strong understanding of SOC operations, alert triage, escalation workflows, and incident response
  • Experience with enterprise security technologies (SIEM, SOAR, EDR/XDR, IAM/AD)
  • Strong scripting/development skills (Python, PowerShell, Bash) and experience building APIs and integrations
  • Experience with CI/CD, version control (Git), and deploying automation at scale
  • Strong analytical thinking and problem-solving skills with the ability to translate complex workflows into automation
  • Excellent communication and collaboration skills across engineering and operations teams
Nice to Have
  • Experience with AI-enhanced automation or large-scale workflow orchestration
  • Experience in high-volume MDR/SOC environments
  • Familiarity with threat hunting or detection engineering
\u00A0What Success Looks Like
  • Increased automation coverage across MDR workflows
  • Measurable reduction in analyst workload and response times
  • Improved consistency and quality of incident response
  • Stable, reliable automation systems operating at scale
We invite you to check out our Instagram Page to gain further insight into the Varonis culture!@VaronisLife\u00A0\u00A0Varonis is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, national origin, disability, veteran status, and other legally protected characteristics.\u00A0\u00A0#LI-Hybrid", "hiringOrganization": "Varonis", "industry": "MDDR", "identifier": "oQ2mAfwy", "jobLocation": [ { "@type": "Place", "address": { "@type": "PostalAddress", "addressCountry": "Israel" } } ], "title": "MDR Security Engineer", "baseSalary": { "@type": "MonetaryAmount", "currency": "", "value": { "@type": "QuantitativeValue", "minValue": "", "maxValue": "", "unitText": "" } } } MDR Security Engineer MDDR Herzliya, Israel Apply Description Summary Data has never been more valuable and vulnerable. As cybercriminals become more sophisticated and regulations more strict, organizations struggle to answer one key question: “Is my data safe?"At Varonis, we see the world of cybersecurity differently. Instead of chasing threats, we believe the most practical approach is protecting data from the inside out. We’ve built the industry’s first fully autonomous Data Security Platform to help our customers dramatically reduce risk with minimal human effort.At Varonis, we move fast. We’re an ultra-collaborative company with brilliant people who care deeply about the details. Together, we’re solving interesting and complex puzzles to keep the world’s data safe. We work in a flexible, hybrid model, so you can choose the home-office balance that works best for you Position Overview:Varonis MDR delivers 24x7x365 managed detection and response services, protecting customer data through advanced detection, investigation, and response at scale.We are seeking an MDR Security Engineer to own and scale the automation layer that powers our global MDR operations. This role is responsible for building and operating production-grade automation systems that reduce manual workload, improve detection quality, and enable consistent, high-quality incident response.The ideal candidate is a hands-on engineer with strong experience in SOAR platforms, security operations, and automation design, capable of driving measurable improvements in efficiency, reliability, and response outcomes across a high-volume SOC environment.ResponsibilitiesUpkeep the design, development, and lifecycle of SOAR playbooks, workflows, and integrations across the MDR platformBuild and operate production-grade automation systems supporting alert triage, enrichment, investigation, and responseDefine and drive automation strategy by identifying high-impact, high-volume SOC processes and scaling them through automationDevelop integrations across SIEM, EDR/XDR, identity, cloud, and ticketing systems using APIs and scriptingPartner with MDR analysts, IR, threat hunters, and engineering teams to translate operational workflows into scalable automationImprove detection and response quality through automation of enrichment, investigation, and containment workflowsContribute to incident response and RCAs by delivering tooling that improves investigation speed, accuracy, and consistencyEvaluate and implement new automation capabilities, including AI-assisted workflows and data-driven decisioning Monitoring, Metrics & Reliability OwnershipDefine and own automation KPIs, including:Automation coverage (% of alerts handled or augmented)MTTD / MTTR improvementFalse positive reduction and signal-to-noise improvementAnalyst time saved and throughput increaseBuild and maintain dashboards and reporting to measure automation impact on SOC performance and SLAsEnsure production reliability and stability of automation systems, including:Monitoring workflow success/failure rates and execution latencyTracking integration and API health, errors, and retry behaviorImplementing logging, alerting, and observability across automation pipelinesContinuously optimize workflows based on data, feedback, and operational performance to ensure consistent 24/7 MDR operationRequirements4+ years of experience in Security Operations, MDR, Incident Response, or Security Engineering2–3+ years of hands-on experience with SOAR platforms and security automationProven experience owning and operating production-grade automation workflows in a SOC/MDR environmentStrong understanding of SOC operations, alert triage, escalation workflows, and incident responseExperience with enterprise security technologies (SIEM, SOAR, EDR/XDR, IAM/AD)Strong scripting/development skills (Python, PowerShell, Bash) and experience building APIs and integrationsExperience with CI/CD, version control (Git), and deploying automation at scaleStrong analytical thinking and problem-solving skills with the ability to translate complex workflows into automationExcellent communication and collaboration skills across engineering and operations teamsNice to HaveExperience with AI-enhanced automation or large-scale workflow orchestrationExperience in high-volume MDR/SOC environmentsFamiliarity with threat hunting or detection engineering What Success Looks LikeIncreased automation coverage across MDR workflowsMeasurable reduction in analyst workload and response timesImproved consistency and quality of incident responseStable, reliable automation systems operating at scaleWe invite you to check out our Instagram Page to gain further insight into the Varonis culture!@VaronisLife Varonis is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, national origin, disability, veteran status, and other legally protected characteristics. #LI-Hybrid Apply Apply Later ← Back to Current Openings Share lang: en_US Share LinkedIn Facebook Twitter Email Similar Jobs MDR Security Engineer MDR Security Engineer (India) MDR Security Engineer (Poland)

MDR Security Engineer

MDDR Herzliya, Israel

Similar jobs