Security Operations Engineer Jobs in Maryland
Security Operations Engineer jobs in Maryland are open across Rockville, Adelphi, and Baltimore and other Maryland metros, with employers like ARDENT, Guidepoint Security, and Merkle hiring at every experience level. Find a role that fits below and apply directly.
Find JobsOverview
Showing 5 of 7+ Security Operations Engineer jobs











About the Role
Our Security Operations Center is evolving from foundational capabilities into a mature, comprehensive security operations program. We need an experienced SOC engineer who has been part of a top-tier SOC and can provide technical vision and leadership to guide our detection engineering and automation efforts. This role focuses on building robust detection capabilities, automating security responses, and creating the frameworks that enable our SOC analysts to effectively identify and respond to threats. You will work closely with our threat intelligence and hunting teams to translate security research into actionable detections and automated responses.
Key Responsibilities
Detection Engineering:
- Design and implement comprehensive detection use cases aligned with the MITRE ATT&CK framework
- Conduct gap analysis of current detection coverage and develop roadmap to address gaps
- Build and tune correlation searches, alerts, and detection logic in Splunk Enterprise Security
- Implement Risk-Based Alerting (RBA) methodologies to improve signal-to-noise ratio
- Develop detection strategies for multi-cloud environments (AWS, GCP, Azure)
- Continuously evaluate and improve detection effectiveness based on SOC feedback
Security Automation & Orchestration:
- Design and implement automated response playbooks using Splunk SOAR
- Build integrations between security tools to enable automated investigation and response workflows
- Develop scripts and automation (Python, Bash, PowerShell) to streamline SOC operations
- Create reusable automation frameworks that scale across multiple use cases
- Collaborate with platform engineering to ensure reliable automation infrastructure
SOC Architecture & Vision:
- Define what a mature SOC capability looks like using Splunk ES, SOAR, and supporting tools
- Identify gaps and shortcomings in current SOC implementation and provide clear remediation guidance
- Establish best practices, standards, and frameworks for detection engineering and response
- Mentor platform engineering team on SOC-specific requirements and approaches
- Contribute to long-term SOC strategy and capability development
Cross-Functional Collaboration:
- Partner with threat intelligence and threat hunting teams to operationalize research into detections
- Work with SOC analysts to understand investigation workflows and improve detection quality
- Collaborate with platform engineering teams to implement and maintain SOC infrastructure
- Participate in incident response activities to validate and refine detection and automation capabilities
- Document detection logic, playbooks, and technical architectures
Required Qualifications:
SOC Experience:
- 5+ years in a Security Operations Center environment with exposure to mature SOC operations and best practices
SIEM Expertise:
- Hands-on experience with Splunk Enterprise Security or comparable enterprise SIEM platforms (building correlation searches, alerts, dashboards, and ES-specific frameworks)
Detection Engineering:
- Proven experience developing security detections, use cases, and alert tuning methodologies
MITRE ATT&CK Framework:
- Practical application of MITRE ATT&CK for detection coverage mapping and gap analysis
Security Automation:
- Experience building automated response workflows and playbooks (SOAR platforms preferred)
Scripting:
- Strong proficiency in Python, PowerShell, or Bash for automation and integration development
Cloud Security:
- Understanding of cloud security monitoring and detection across AWS, GCP, and Azure environments
Analytical Mindset:
- Ability to identify gaps, define clear vision for improvement, and guide teams toward maturity
Preferred Qualifications:
- Splunk SOAR (Phantom) hands-on experience
- Splunk UEBA or behavioral analytics platform experience
- Risk-Based Alerting (RBA) implementation experience
- Threat hunting background with detection engineering application
- Infrastructure automation and CI/CD pipeline knowledge
- Experience mentoring or leading detection engineering teams
- Relevant certifications (GIAC, CISSP, or similar)
LI-CGTS # TS-2505
See All 7 Security Operations Engineer Jobs in Maryland
Find roles in Maryland that match your experience and apply in just a few clicks.
Find JobsSecurity Operations Engineer Jobs by City in Maryland
Where Maryland roles are concentrated, by current openings.
Security Operations Engineer Job Market in Maryland
A snapshot from current Maryland openings, updated as new roles post.
Who's Hiring
- ARDENT1

- Guidepoint Security1

- Merkle1

- OneMain Financial1

- T. Rowe Price1

Top Industries Hiring
- Consulting & Professional Services2
- Technology & Software2
- Education1
- Investment & Asset Management1
What Maryland Employers Look For
The qualifications that appear most often in security operations engineer jobs across Maryland.
- Three or more years of hands-on experience in a security operations center or equivalent environment
- Proficiency with at least one major SIEM platform such as Splunk, Microsoft Sentinel, or IBM QRadar
- Experience with endpoint detection and response tools including CrowdStrike Falcon or Carbon Black
- Relevant certification such as CompTIA Security+, CEH, GCIA, GCIH, or CISSP
- Familiarity with cloud security monitoring across AWS, Azure, or Google Cloud Platform
- Knowledge of incident response frameworks and threat intelligence integration practices
Security Operations Engineer Jobs in Maryland: Frequently Asked Questions
How many security operations engineer jobs are there in Maryland?
There are 7+ security operations engineer openings in Maryland on Migrate Mate as of June 2026, with the most roles in Rockville, Adelphi, and Baltimore. New positions post regularly as employers across Maryland hire.
How much do security operations engineers make in Maryland?
Security operations engineers in Maryland earn a median of about $139,640 a year, based on May 2025 Bureau of Labor Statistics wage data, ranging from around $79,130 for the lowest 10% to over $216,570 for the top 10%. Pay rises with experience, specialty, and employer.
Which Maryland cities have the most security operations engineer jobs?
Rockville, Adelphi, and Baltimore have the most security operations engineer openings in Maryland right now, with additional roles spread across smaller metros statewide.
Which companies hire security operations engineers in Maryland?
Employers hiring security operations engineers in Maryland include ARDENT, Guidepoint Security, and Merkle, based on current listings on Migrate Mate as of June 2026.
Are there remote security operations engineer jobs in Maryland?
Yes. About 57% of security operations engineer openings tied to Maryland are remote or hybrid as of June 2026. The rest are on-site roles based in Maryland metros.
How do I apply for security operations engineer jobs in Maryland?
You can apply to security operations engineer jobs in Maryland directly on Migrate Mate. Search the listings above, find roles that match your experience and preferred Maryland location, then apply to each one that fits.
See All 7 Security Operations Engineer Jobs in Maryland
Find roles in Maryland that match your experience and apply in just a few clicks.
Find Jobs