Overview
Senior Cyber / Security Engineer (SOC / SIEM) for a 12+ months contract. This role focuses on the deployment and migration of SIEM solutions, working with clients to deliver quick wins while onboarding data sources and developing correlation rules for SIEM initiatives.
You will be a key project engineer interfacing directly with clients, driving implementation efforts, and contributing to the success of SIEM initiatives. Technical skills such as Python scripting, query languages, and regex are important but secondary to your SOC / SIEM expertise and ability to learn and adapt on the job.
Key Responsibilities
- Lead and execute SIEM deployment and migration projects for clients.
- Onboard data sources with parsing and regex-based rules in collaboration with SOC teams and stakeholders.
- Develop and refine correlation rules using Python and query languages to detect relevant security events.
- Work with clients to understand their environment and deliver quick-win solutions during deployment.
- Troubleshoot and resolve issues related to data ingestion, rule creation, and SIEM performance.
- Document processes, configurations, and lessons learned to support knowledge sharing and future projects.
- Continuously learn and adapt to new technologies, SIEM features, and security threats.
- 5+ years of hands-on experience in SOC environments with a strong focus on SIEM technologies.
- Proven track record of SIEM deployment, migration, or major upgrades, preferably in government or highly regulated environments.
- Intermediate proficiency in Python scripting for automation and rule creation.
- Strong knowledge of SIEM-specific query languages (e.g., SPL, KQL, or similar).
- Experience with regex for parsing and onboarding diverse data sources.
- Excellent communication with technical and non-technical stakeholders.
- Experience with XSIAM or similar advanced SIEM / XDR platforms.
- Familiarity with SOC operations, incident detection, and response workflows.
- Knowledge of automation tools and frameworks within security operations.
Qualifications
5+ years of hands-on SOC experience focused on SIEM technologies.Proven SIEM deployment, migration, or major upgrade experience.Proficiency in Python for automation and rule development.Experience with SIEM query languages (SPL, KQL, etc.).Regex experience for data onboarding.Strong communication and stakeholder engagement skills.Experience with XSIAM or similar platforms is a plus.Employment type
ContractJob function
Information TechnologyIndustries
Computer and Network Security#J-18808-Ljbffr