✦ Luna Orbit — Cybersecurity

Cybersecurity Operation Engineer

at Wyndham Hotels & Resorts

📍 Remote, US Remote Posted April 10, 2026
Type Not Specified
Experience mid
Exp. Years 1-3 years
Education Not specified
Category Cybersecurity

Wyndham is hiring a Cybersecurity Operations Engineer to join the Security Operations Center (SOC). You will monitor, triage, investigate, and respond to security alerts, while tuning security tooling to improve detections and reduce false positives.

  • Monitor, triage, and investigate security alerts across the enterprise tool stack
  • Execute incident response activities and coordinate escalations
  • Maintain and tune security tooling to keep detections effective and false positive rates low
  • Support vulnerability management, cloud security, application security, and threat hunting
  • Collaborate cross-functionally across IT, business, and information security teams

This role operates in a modern multi-platform security environment using SIEM and EDR/XDR, supporting incident response and maintaining effective detection coverage. The engineer gains exposure across vulnerability management, cloud security, application security, and threat hunting, collaborating across IT and information security teams.

The ideal candidate is a security operations engineer with 1–3 years of hands-on experience monitoring and responding to security events within a SOC environment. They are comfortable triaging alerts using SIEM and EDR/XDR, executing incident response, and tuning security tooling to reduce false positives while expanding skills across vulnerability management, cloud security, application security, and threat hunting.

1-3 years of hands-on experience in a security operations or engineering capacitysecurity monitoring and incident responsemonitortriageand respond to security eventsmaintain and tune security tooling to keep detections effective and false positive rates lowexecute incident response activitiesmaintain and tune security tooling
SIEMEDR/XDR
security monitoringincident responseSecurity Operations Center (SOC)SIEMEDR/XDRvulnerability managementcloud securityapplication securitythreat huntingsecurity alert triagesecurity tooling tuningfalse positive rate reductionsecurity events escalation and documentation
security monitoringincident responseSOCSIEMEDR/XDRvulnerability managementcloud securityapplication securitythreat huntingsecurity event triagesecurity tooling tuningfalse positive rate reductionescalation documentationsecurity alert investigationenterprise tool stack
clear communication skillsinterface with technical peersinterface with non-technical stakeholderscollaborationwork across cross-functional initiatives
Industry Hospitality
Job Function Operate the SOC by monitoring and responding to enterprise security events while tuning detection tooling
Role Subtype SOC Analyst L2
Tech Domains Cybersecurity
Cybersecurity Operation EngineerCybersecurity Operations EngineerSecurity Operations CenterSOCsecurity monitoringincident responseSIEMEDR/XDRvulnerability managementcloud securityapplication securitythreat huntingsecurity alertsmonitor triage investigatesecurity eventsescalatefalse positive ratessecurity toolingenterprise tool stackincident response activitiesSOC analyst

1-3 years of hands-on security operations or engineering experience

Apply for this Position →

Get matched to jobs like this

Luna finds roles that fit your skills and career goals — no endless scrolling required.

Create a Free Profile