Configure, and maintain the SIEM platform (Any SIEM Tool).
Develop and fine-tune correlation rules, alerts, and dashboards to support SOC use cases. Onboard log sources from various platforms (Windows, Linux, cloud, network devices, applications).
Perform health checks, upgrades, and patch management of SIEM components.
Work closely with SOC analysts to improve detection capabilities and reduce false positives.
Collaborate with threat intel and incident response teams to create advanced detection logic.
Automate log ingestion and alert tuning using scripting (Python, PowerShell, etc.).
Develop and maintain documentation, runbooks, and standard operating procedures (SOPs ).
Beneficial:
Good Documentation skills
Good at Incident Management.
Personal Characteristics:
Strong communication skills, ability to work comfortably with different regions
Actively participate within internal project community
Good team player, ability to work on a local, regional and global basis and as part of joint cross location initiative.
Self-motivated, able to work independently and with a team
Able to perform under pressure.
Job Classification
Industry: IT Services & ConsultingFunctional Area / Department: IT & Information SecurityRole Category: IT SecurityRole: Security Engineer / AnalystEmployement Type: Full time