All remote jobs
Open role
Remote opportunity atLivePerson

SecOps Engineer I

Review the role, location requirements, compensation details, and application process before deciding whether this opportunity fits your next career move.

Published
50Listing views
2Application actions
15 Oct 2026Apply before
Opportunity details

About this role.

AI Summary

LivePerson is hiring a SecOps Engineer I to support security operations across cloud and on-premise infrastructure. The role focuses on alert triage, incident investigation, log analysis, vulnerability testing, security-tool maintenance, and documentation of SOPs and playbooks. Candidates need hands-on experience with multi-cloud environments, GCP, Elastic, Okta, IAM/IDM, Active Directory, JAMF, and Windows, Linux, and macOS systems. This remote Bulgaria-based position requires English fluency, US-hours support availability, and participation in an on-call rotation.

Role DNA

A quick view of the complexity, pace, ownership and collaboration implied by the job description.

Job Complexity

4/5
EasyHard

Pace & Pressure

4/5
RelaxedFast-paced

Autonomy Level

3/5
GuidedFull ownership

Communication Load

4/5
IndependentCollaborative
AI insightThe position requires broad practical security operations knowledge across cloud, identity, endpoint, and monitoring technologies, plus the ability to investigate active security events. On-call responsibilities, operational troubleshooting, and coordination with IT and systems teams create a fast-moving environment.

Salary analysis

Estimated compensation compared with the broader US market for similar roles.

Estimated job medianHighly competitive
$110,000
US market range$95k–$125k
AI insightNo actual salary was disclosed in the posting. This is a US-market estimate in USD for an early-career SecOps/Security Operations Engineer with approximately three or more years of relevant SaaS or cloud infrastructure experience; local Bulgaria compensation may differ materially.

Core skills

Skills and capabilities most closely associated with this opportunity.

Sample interview questions
How would you triage a high-severity alert from a SIEM or monitoring platform?

I would first validate the alert by reviewing its source, affected assets, timestamps, related logs, and detection logic. I would assess scope and business impact, contain the issue if needed, collect evidence, escalate according to the incident process, and document findings and next actions in the ticket.

Describe how you would investigate suspicious authentication activity in Okta or Active Directory.

I would review sign-in logs for unusual IP addresses, locations, devices, impossible travel, repeated failures, privilege changes, and MFA events. I would correlate those events with endpoint and network telemetry, verify whether the activity is legitimate with the user or owner, and revoke sessions, reset credentials, or disable accounts when compromise is suspected.

What steps would you take to harden a cloud workload in GCP?

I would apply least-privilege IAM roles, enforce strong authentication, restrict network exposure, enable centralized audit logging, manage secrets securely, and ensure encryption is configured for data in transit and at rest. I would also use configuration monitoring, vulnerability management, patching, and periodic reviews against security baselines.

How do you make security playbooks useful during an incident?

A useful playbook has clear triggers, ownership, severity criteria, evidence-collection steps, containment actions, escalation contacts, communication templates, and closure requirements. I would keep it concise, test it through exercises or real incident retrospectives, and update it when tools, threats, or processes change.

How would you prioritize several simultaneous security tickets while supporting an on-call rotation?

I would prioritize based on severity, exploitability, affected systems, data sensitivity, business impact, and whether active compromise is indicated. I would immediately address critical containment needs, communicate status and expected timelines, assign or escalate work where appropriate, and keep lower-risk items tracked with clear follow-up commitments.

This analysis is generated from the job description. Salary estimates, role characteristics and sample answers are guidance, not employer-provided facts.

LivePerson (NASDAQ:LPSN) is a Conversational AI company creating digital experiences that are Curiously Human. Every
person is unique, and our technology makes it possible for companies, including leading brands like HSBC, Orange, and GM
Financial, to treat their audiences that way at scale. Nearly a billion conversational interactions are powered by our
Conversational Cloud each month.
You’ll be successful at LivePerson if you are excited to build something from the ground up. You excel by finding daily
opportunities to grow at the same pace as the technology we’re building, and you build partnerships that improve our business.
Likewise, you’re someone who sees feedback as a chance to learn and grow and believe decisions powered by data are the
norm. You care about the wellbeing of others and yourself.
You will:
• Provide operational support for SecOps tool alerts, triaging, and maintenance.
• Work with the SecOps team and other stakeholders to test and uncover vulnerabilities.
• Assist with investigating cybersecurity incidents and investigations.
• Monitor email and the ticketing system for security-related issues and follow through until they are resolved.
• Troubleshoot problems with tools and infrastructure owned by the SecOps team (on-premise and cloud based).
• Provide support to the SecOps team with documentation for SOPs, playbooks, and how to walk throughs.
• Stay up to date with adversary tactics, techniques, and procedures (TTPs) and general security related events and news.
You should be an expert in:
• System security engineering or information security engineering.
• Building and maintaining both internal and external systems.
• Operating system security for all platforms.
• Cloud security, networking technologies, and monitoring tools.
What You’ll Do:
• Be responsible for all areas involving IT and operations infrastructure to ensure effective performance and data
confidentiality, integrity and availability.
• Be responsible for documenting, monitoring and reporting on various security related systems and processes to
ensure system and data integrity, security and availability.
• Evaluate and choose the right tools together with the various team(s) to best suit the company’s needs.
• Test, maintain and challenge the chosen solutions to comply with securities best practices.
• Work closely with the IT and System teams on hardening and configuration management on cloud and infrastructure
tools to align with security and regulatory best practices.
• Perform analysis of transactional data, log files and/or other system outputs to identify malicious or anomalous
activity.
• Be available to work in an on-call rotation.
You Have:
• Hands-on experience with multi-cloud service environments.
• Hands-on experience with GCP, Elastic, OKTA, IDM, AD, JAMF and Windows, Linux, MacOS Operating systems.
• Experience with responding to security incidents and log analysis.
• At least 3 years experience in IT / System teams in a SAAS /Cloud company.
• Experience with establishing procedures, reports, SLA’s and escalations.
• Ability to work under pressure in dynamic environments.
• Excellent interpersonal and effective leadership skills.
• Problem-solving skills and ability to work under pressure
• Ability to communicate using English (both speaking and writing)
Knowledge of Python / Go (big advantage)
• Valid CompTia CySA+ Certificate
Other Requirements:
• Ability to support during US hours
• The job requires on-call duty
• Excellent interpersonal skills
• Strong command of the English language (written and spoken)
• Critical thinking skills
• Problem solving skills
• Attention to detail required
• Communications skills necessary (both listening, and speaking)
• Ability to prioritize tasks.
Why you’ll love working here:
Your entrepreneurial spirit will be supported. We love team members who chase down their big ideas, become experts, help
colleagues, and own their work. These four company values guide our continued, holistic growth as individuals, as teams, and
as a global organization. And to further make our point, let’s just say we’re very proud to be on Fast Company’s list of Most
Innovative Companies and Newsweek’s list of most-loved workplaces. At LivePerson, the option to work remotely has helped
shape who we are today: a collective of innovators and industry leaders working toward the same vision without ego. While we
maintain hubs in NY and Seattle as well as WeWork locations across the globe, our employees choose the environments that
work best for them from anywhere in North America.
Belonging at LivePerson
At LivePerson, people from diverse backgrounds come together to make an impact and be their authentic selves. One way we
share and connect is through our employee resource groups such as: Live In Color, LP Proud, and Women In Tech. We are
proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to
age, ancestry, color, family or medical care leave, gender identity or expression, genetic information, marital status, medical
condition, national origin, physical or mental disability, protected veteran status, race, religion, sex (including pregnancy), sexual
orientation, or any other characteristic protected by applicable laws, regulations and ordinances. We also consider qualified
applicants with criminal histories, consistent with applicable federal, state, and local law.
We are committed to the accessibility needs of applicants and employees. We provide reasonable accommodations to job
applicants with physical or mental disabilities. Applicants with a disability who require a reasonable accommodation for any par of the application or hiring process should inform their recruiting contact upon initial connection.

Benefits:

  • Health: medical, dental, and vision
  • Time away: 28 vacation days
  • Development: Generous tuition reimbursement and access to internal professional development resources.
  • Additional: Food Vouchers.
  • #LI-Remote

Why you’ll love working here:

As leaders in enterprise customer conversations, we celebrate diversity, empowering our team to forge impactful conversations globally. LivePerson is a place where uniqueness is embraced, growth is constant, and everyone is empowered to create their own success. And, we’re very proud to have earned recognition from Fast Company, Newsweek, and BuiltIn for being a top innovative, beloved, and remote-friendly workplace.

Belonging at LivePerson:

We are proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, ancestry, color, family or medical care leave, gender identity or expression, genetic information, marital status, medical condition, national origin, physical or mental disability, protected veteran status, race, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable laws, regulations and ordinances. We also consider qualified applicants with criminal histories, consistent with applicable federal, state, and local law.

We are committed to the accessibility needs of applicants and employees. We provide reasonable accommodations to job applicants with physical or mental disabilities. Applicants with a disability who require reasonable accommodation for any part of the application or hiring process should inform their recruiting contact upon initial connection.

The talent acquisition team at LivePerson has recently been notified of a phishing scam targeting candidates applying for our open roles. Scammers have been posing as hiring managers and recruiters in an effort to access candidates’ personal and financial information. This phishing scam is not isolated to only LivePerson and has been documented in news articles and media outlets.Please note that any communication from our hiring teams at LivePerson regarding a job opportunity will only be made by a LivePerson employee with an @liveperson.com email address.

LivePerson does not ask for personal or financial information as part of our interview process, including but not limited to your social security number, online account passwords, credit card numbers, passport information and other related banking information. If you have any questions and or concerns, please feel free to contact recruiting-lp@liveperson.com

Apply now >

This job listing has been manually reviewed by the Jobicy Trust & Safety Team for compliance with our posting guidelines, including verification of the company's legitimacy, accuracy of job details, clarity of remote work policy, and absence of misleading or fraudulent content.

Next step

Apply now.

Follow the employer’s application method and review Jobicy’s safety guidance before sharing personal information.

Did you apply?Let us know, and we’ll help you track your application.

Continue on the employer website

Protect your personal information and never pay to secure an interview or job offer. View safety guidance.

Log in to save
One quick step before you apply

Create your free account, then apply.

Build a more organized job search on Jobicy and continue to the employer's application when you're ready.

  • Never lose a promising opportunitySave roles and return to them from your dashboard.
  • See your entire search at a glanceTrack applications, stages and next steps in one place.
  • Get matched with relevant remote jobsChoose the alerts and digests that work for you.
Applying is free. The employer's application opens in a new tab.
Add alert
Jobs Talent AI Tools Salaries
Menu