SIEM/ XSIAM/ SOC Engineer

3 days ago


Downtown Core, Singapore Saddleback Solutions, Inc. Full time $90,000 - $120,000 per year

SIEM/ XSIAM/ SOC ENGINEER

Location: Singapore

Contract: 12 months (highly likely to be extended)

Job Description:

Your Career

As a SIEM Engineer for Cortex XSIAM, you will play a pivotal role in assisting our customers with seamless log migration and effective detection strategies. Working closely with the technical lead, you will ensure the successful onboarding and ingestion of relevant log sources into XSIAM, adhering to industry best practices and meeting customer-specific requirements. Your responsibilities will also involve devising suitable detection strategies to fortify our customers' defenses against threats, encompassing the design and implementation of correlation rules.

Your Impact

  • Collaborate with the technical lead to devise a comprehensive log ingestion strategy
  • Contribute to the development of detection strategies based on industry best practices
  • Articulate a step-by-step process to ensure the ingestion of high-quality log sources
  • Monitor and optimize log sources for optimal performance
  • Create meticulous and effective correlation rules
  • Fine-tune log sources and correlation rules to enhance system efficiency
  • Serve as the subject matter expert (SME) in SIEM, correlation, and log source ingestion
  • Serve as a trusted advisor to end customers, offering consultative guidance and expertise in optimizing the utilization of Cortex XSIAM
  • Leverage your in-depth knowledge of SIEM and SOC practices to assess customer needs, provide tailored recommendations, and assist in the formulation of effective security strategies
  • Collaborate closely with customers to understand their unique challenges and objectives, translating them into actionable steps that enhance their security posture
  • Identify opportunities to enhance analyst alert handling through automation
  • Foster collaboration with internal and external teams to drive product adoption
  • Produce technical documentation detailing SIEM aspects of the engagement
  • Occasionally travel to customer meetings and workshops (up to 10% of the time)

Your Experience

  • Exceptional written and verbal communication and presentation skills, for both internal and external interactions
  • 2+ years of hands-on experience in deploying and integrating SIEM solutions within enterprise to large enterprise-level environments
  • Proficiency in coordinating and conducting event collection, log management, event management, compliance automation, and identity monitoring using SIEM platforms
  • Ability to conceive and develop correlation and detection rules in SIEM systems to enable effective alerting
  • Proven experience in providing consultative services to end customers within the realm of cybersecurity, particularly in SIEM and SOC domains
  • Demonstrated ability to comprehend customer requirements, analyze complex security environments, and deliver strategic recommendations that align with their goals
  • Strong expertise in Regular Expressions (Regex)
  • Skill in understanding logs and locating relevant third-party documentation when required
  • Knowledge of generating reports on SIEM status, including metrics like logging source count, log collection rate, and other performance indicators
  • Understanding of Security Analysis & Response, encompassing endpoint, network, and cloud-based environments is a plus
  • Proficient in comprehending and creating technical design documentation
  • 2+ years of experience with Security Operations Centers (SOC) tooling and processes
  • 2+ years of hands-on experience in deploying and integrating endpoint security solutions within enterprise to large enterprise-level environments.
  • Relevant bachelor's degree or equivalent military experience or industry-recognized qualifications (CISSP, GIAC, SIEM Vendor Qualification, etc.), is a plus

The Team

Our professional services team is critical to our success and mission. As part of this team, you enable customer success by providing support to clients post-sale. Our dedication to our customers doesn't stop once they sign – it evolves.

As threats and technology evolve, we stay in step to accomplish our mission. You'll be involved in implementing new products, transitioning from old products to new, and will fix integrations and critical issues as they are raised. But you won't wait for them to be raised, you'll seek them out, too. We fix and identify technical problems, with a pointed focus of providing the best customer support in the industry.

About Us:

Saddleback Solutions offer Consultancy and Professional Services to our Partners and Clients. We partner Palo Alto Networks, Juniper Networks and Arista worldwide, and we indirectly Partner AWS, so there are always lots of varying opportunities that come up.

We have long standing and close relationships with our consultants and our partners so we can represent you fully. We offer free training for all our consultants should they wish to expand their knowledge and profiles while with us.

We have an education services arm also, so our consultants once qualified can also offer their services running workshops or bootcamps between projects or even full time.

We will support you the best way we know how.

Salary shall be agreed upon.

Job Type: Contract

Contract length: 12 months

License/Certification:

  • Work Permit (Preferred)

Work Location: In person



  • Downtown Core, Singapore Saddleback Solutions, Inc. Full time

    **SIEM/ XSIAM/ SOC ENGINEER** **Location**: Singapore **Contract**: 12 months (highly likely to be extended) **Your Career** As a SIEM Engineer for Cortex XSIAM, you will play a pivotal role in assisting our customers with seamless log migration and effective detection strategies. Working closely with the technical lead, you will ensure the successful...

  • Security Engineer

    2 weeks ago


    Downtown Core, Singapore Sopra Steria Full time

    Sopra Steria is a listed European tech leader specializes in IT Consulting, Digital Service, and Software. We have 50,000 employees worldwide located in different regions (Europe, North America and Asia), whereby Singapore is the HQ for APAC. EvaGroup Asia Pacific is part of Sopra Steria I2S APAC, in charge of Infrastructure, Cloud and Cybersecurity...


  • Downtown Core, Singapore Anotech Singapore Full time

    **Responsibilities**: - Design and deploy distributed architecture for cybersecurity solutions, including SIEM platforms like LogRhythm. - Set up and manage Group Policies for system-wide security enforcement and compliance. - Deploy and maintain Windows Active Directory Servers, including security configurations and access controls. - Conduct monthly...


  • Downtown Core, Singapore Ssquad Global Full time

    Job Title: Threat Intelligence Practitioner Experience Required: 7+ years Location: Client Site (Singapore) Duration: 12 months Industry: Financial ServicesKey **Responsibilities**: - Perform advanced threat intelligence analysis focused on risks relevant to the financial services sector, including APT groups, cybercrime campaigns, and fraud-related...

  • Security Engineer

    1 week ago


    Downtown Core, Singapore InvestaX Full time

    **InvestaX Overview**: **Tokenization SaaS** **Tokenize your assets on top of our infrastructure: Our Tokenization SaaS platform is a software-as-a-service solution that enables the issuance, trading, and custody of real world assets. We have been granted a Capital Markets Services licence and Recognized Market Operator licence by the Monetary Authority of...


  • Downtown Core, Singapore Anotech Energy Full time

    ALTEN Group is a world leader in Engineering and Technology consulting services providing outsourced Engineering, R&D, and IT Services for different industries such as Transportation, Defence, Energy and Security with 55,000 engineers in nearly 35 countries. ANOTECH is the subsidiary of the Group delivering ALTEN's Engineering Services in Singapore. As a...


  • Downtown Core, Singapore Splunk Full time

    Join our innovative mission at Splunk to make machine data accessible, usable, and valuable to everyone. We're not just a company, we're a community of passionate individuals dedicated to our product, delivering unparalleled experiences for our customers. At Splunk, commitment to our work, customers, fun, and, most importantly, to each other's success is...


  • Downtown Core, Singapore U3 InfoTech Pte Ltd Full time

    We are seeking a skilled and motivated CyberArk Engineer to join our growing security engineering team. In this role, you will be responsible for designing, implementing, and supporting privileged access management (PAM) solutions using CyberArk, ensuring the highest levels of security, compliance, and operational efficiency. - ____________________ Key...


  • Downtown Core, Singapore Anotech Singapore Full time

    ALTEN Group is a world leader in Engineering and Technology consulting services providing outsourced Engineering, R&D, and IT Services for different industries such as Transportation, Defence, Energy and Security with 55,000 engineers in nearly 35 countries. ANOTECH is the subsidiary of the Group delivering ALTEN's Engineering Services in Singapore. As a...


  • Downtown Core, Singapore U3 InfoTech Pte Ltd Full time $60,000 - $70,000 per year

    Job DescriptionWe are seeking a skilled and motivated CyberArk Engineer to join our growing security engineering team. In this role, you will be responsible for designing, implementing, and supporting privileged access management (PAM) solutions using CyberArk, ensuring the highest levels of security, compliance, and operational efficiency.The ideal...