
SIEM/SOC/XSIAM Engineer
6 days ago
Responsibilities
Collaborate with the technical lead to devise a comprehensive log ingestion strategy
Contribute to the development of detection strategies based on industry best practices
Articulate a step-by-step process to ensure the ingestion of high-quality log sources
Monitor and optimize log sources for optimal performance
Create meticulous and effective correlation rules
Fine-tune log sources and correlation rules to enhance system efficiency
Serve as the subject matter expert (SME) in SIEM, correlation, and log source ingestion
Serve as a trusted advisor to end customers, offering consultative guidance and expertise in optimizing the utilization of Cortex XSIAM
Leverage your in-depth knowledge of SIEM and SOC practices to assess customer needs, provide tailored recommendations, and assist in the formulation of effective security strategies
Collaborate closely with customers to understand their unique challenges and objectives, translating them into actionable steps that enhance their security posture
Identify opportunities to enhance analyst alert handling through automation
Foster collaboration with internal and external teams to drive product adoption
Produce technical documentation detailing SIEM aspects of the engagement
Occasionally travel to customer meetings and workshops (up to 10% of the time)
Qualifications
Exceptional written and verbal communication and presentation skills, for both internal and external interactions
5+ years of hands-on experience in deploying and integrating SIEM solutions within enterprise to large enterprise-level environments
Proficiency in coordinating and conducting event collection, log management, event management, compliance automation, and identity monitoring using SIEM platforms
Ability to conceive and develop correlation and detection rules in SIEM systems to enable effective alerting
Proven experience in providing consultative services to end customers within the realm of cybersecurity, particularly in SIEM and SOC domains
Demonstrated ability to comprehend customer requirements, analyze complex security environments, and deliver strategic recommendations that align with their goals
Strong expertise in Regular Expressions (Regex)
Skill in understanding logs and locating relevant third-party documentation when required
Knowledge of generating reports on SIEM status, including metrics like logging source count, log collection rate, and other performance indicators
Understanding of Security Analysis & Response, encompassing endpoint, network, and cloud-based environments is a plus
Proficient in comprehending and creating technical design documentation
5+ years of experience with Security Operations Centers (SOC) tooling and processes
5+ years of hands-on experience in deploying and integrating endpoint security solutions within enterprise to large enterprise-level environments
Relevant Bachelor\'s degree or equivalent military experience or industry-recognized qualifications (CISSP, GIAC, SIEM Vendor Qualification, etc.), is a plus
About Us
Saddleback Solutions
offer Consultancy and Professional Services to our Partners and Clients. We partner Palo Alto Networks, Juniper Networks and Arista worldwide, and we indirectly Partner AWS, so there are always lots of varying opportunities that come up.
We have long standing and close relationships with our consultants and our partners so we can represent you fully. We offer free training for all our consultants should they wish to expand their knowledge and profiles while with us.
We have an education services arm also, so our consultants once qualified can also offer their services running workshops or bootcamps between projects or even full time.
We will support you the best way we know how.
Company details
Seniority level: Mid-Senior level
Employment type: Contract
Job function: Engineering and Information Technology
Industries: Computer Networking
#J-18808-Ljbffr
-
Ps Consultant
2 weeks ago
Singapore Palo Alto Networks Full timeCompany Description **Our Mission** At Palo Alto Networks® everything starts and ends with our mission: Being the cybersecurity partner of choice, protecting our digital way of life. Our vision is a world where each day is safer and more secure than the one before. We are a company built on the foundation of challenging and disrupting the way things are...
-
Log Analytics Specialist
6 days ago
Singapore beBeeEngineer Full time $90,000 - $120,000Job Title: SIEM/SOC/XSIAM EngineerWe are seeking a seasoned professional to lead our SIEM/SOC/XSIAM efforts.Design and implement comprehensive log ingestion strategies in collaboration with technical leads.Contribute to the development of detection strategies based on industry best practices.Develop step-by-step processes for ensuring high-quality log...
-
SOC Engineer
1 week ago
Singapore ENSIGN INFOSECURITY (CYBERSECURITY) PTE. LTD. Full time**Duties & Responsibilities** - Provide engineering supporting an SOC environment in areas relating to Advanced Analytics domain - Approve junior engineer requests and assignment of work to the various junior engineers - Plan work activities for engineering team and provide engineering support - Plan, test and deploy patches for SOC systems - Work with...
-
SOC Engineer
6 days ago
Singapore ENSIGN INFOSECURITY (CYBERSECURITY) PTE. LTD. Full time**Key Responsibilities** - Provide engineering supporting an SOC environment in areas relating to Advanced Analytics domain - Approve junior engineer requests and assignment of work to the various junior engineers - Plan work activities for engineering team and provide engineering support - Plan, test and deploy patches for SOC systems - Work with DevOps and...
-
SOC Engineer
5 days ago
Singapore ENSIGN INFOSECURITY (CYBERSECURITY) PTE. LTD. Full time**Responsibilities**: - Provide engineering supporting an SOC environment in areas relating to Advanced Analytics domain - Plan, test and deploy patches for SOC systems - Work with DevOps and SOC team to plan for developmental work - Manage lifecycle of security log sources, including onboarding, modifying and decommissioning of log sources - Perform data...
-
Cyber Practice Manager
3 days ago
Singapore NCS Full time**Cyber Practice Manager (SIEM/SOAR/SOC)**: **Date**:27 Jan 2025 **Location**: Singapore, Singapore **Company**:Singtel Group NCS is a leading technology services firm that operates across the Asia Pacific region in over 20 cities, providing consulting, digital services, technology solutions, and more. We believe in harnessing the power of technology to...
-
SOC Manager
2 days ago
Singapore Apar Technologies Full time $90,000 - $120,000 per yearJob Title: SOC Manager Location: Singapore Experience: 10 YearsEmployment Type: Full-TimeIndustry: Cybersecurity / IT SecurityJob Summary: We are seeking a highly experienced SOC Manager to lead and manage our Security Operations Center. The ideal candidate will have 10 years of experience in cybersecurity with a strong background in managing SOC...
-
SIEM Engineer
1 week ago
Singapore Ensign InfoSecurity Full timeDirect message the job poster from Ensign InfoSecurity Join Us - Ensign InfoSecurity | Conquer the Unknown | IHRP-CP Key Responsibilities Carry out maintenance, support and operation of the project's security solution platforms. Maintain understanding of the architecture and work with security team to understand the use case and playbooks to be created....
-
SOC Manager
2 weeks ago
Singapore GATEWAY SEARCH PTE. LTD. Full time**Responsibilities** - Responsible for the success of the Managed Security Services. - Design, build, operate and maintain the Security Operations Center (SOC). - Attain and maintain SOC certifications. - Well-versed in technologies such as SIEM, EDR, SOAR, Network Analytics, Endpoint Analytics, Threat Intelligence, Threat Intelligence Platform. - Train and...
-
SIEM Platform Lead
4 days ago
Singapore Tetra Pak Full timePress Tab to Move to Skip to Content Link Select how often (in days) to receive an alert: Create Alert At Tetra Pak we commit to making food safe and available, everywhere; and we protect what's good – protecting food, protecting people, and protecting the planet. By doing so we touch millions of people's lives every day. And we need people like you to...