← All Positions
AI-SOC-ENG-01AI Security & SOC

AI SOC Consulting & Deployment Engineer

Remote or hybrid: Ho Chi Minh City, Hanoi, or Ecopark, Hung Yen, Vietnam
Full-time · Hybrid work
3+ years experience
Apply Now →

About Us

Alexa Cybersecurity designs, integrates, and validates enterprise cybersecurity and AI security architectures. We help organizations protect applications, APIs, AI, data, cloud, and critical infrastructure with practical controls that work in production.

Position Overview

We are seeking a hands-on AI SOC Consulting & Deployment Engineer to help customers turn their SOC modernization plans into operational capabilities. You will configure and integrate security platforms, build use cases and response workflows, and support the safe introduction of AI-assisted investigation and automation. You will work closely with an AI SOC Architect, customer SOC teams, and technology partners from discovery through production handover.

Key Responsibilities

  • Deploy and integrate SIEM, SOAR, EDR, NDR, cloud, identity, threat-intelligence, and case-management data sources.
  • Configure detection use cases, alert enrichment, dashboards, correlation logic, and investigation workflows based on customer requirements.
  • Build and test automation playbooks with clear approval points, exception handling, rollback paths, and audit records.
  • Support AI-assisted analyst workflows for triage, investigation, knowledge retrieval, and reporting while applying access control and data-protection guardrails.
  • Develop integration scripts, API connectors, data mappings, and technical documentation for customer environments.
  • Troubleshoot ingestion, correlation, detection, and workflow issues during proof-of-concept, deployment, and post-go-live support.
  • Run technical workshops, knowledge-transfer sessions, and operational handover with customer analysts and engineers.
  • Maintain accurate deployment documentation, test evidence, runbooks, and change records.

Qualifications

  • Bachelor's degree in Information Security, Computer Science, Engineering, or equivalent practical experience.
  • At least 3 years of hands-on experience in SOC engineering, security operations, SIEM, SOAR, incident response, or security platform deployment.
  • Experience integrating security tools through APIs, webhooks, syslog, agents, or cloud-native connectors.
  • Comfortable working with logs, event schemas, detection logic, and investigation workflows.
  • Practical scripting experience in Python, PowerShell, Bash, or a similar language.
  • Strong troubleshooting skills and confidence working directly with enterprise customer technical teams.
  • Fluent English, written and spoken, is required for technical documentation, workshops, and international collaboration.

Preferred Experience

SIEM or SOAR administrationDetection engineering or threat huntingCloud security logging and identity telemetryREST APIs and automation scriptingAI security controls or LLM-assisted workflowsSecurity certifications or relevant vendor training

What We Offer

  • Competitive salary and performance-based incentives.
  • Hybrid work with the option to work remotely, subject to project needs.
  • Hands-on delivery experience across AI security and enterprise SOC modernization.
  • Professional training, certification support, and international exposure.
  • A practical engineering environment focused on measurable customer outcomes.

How To Apply

To apply, please send your CV and a short introduction describing security platforms, integrations, automation, or SOC deployments you have delivered.

Apply Now →
Office

Escalation Holding LLC
5900 Balcones Dr, Ste 100
Austin, TX, USA