Summary
✨ AI‑Generated
A cybersecurity engineering role responsible for deploying and optimizing security monitoring platforms, integrating data sources, improving detection capabilities, and collaborating with response teams.
Highlights
Senior cybersecurity opportunity focused on security monitoring, threat detection, SIEM implementation, and improving security visibility.
Description
SIEM Implementation & Management Specialist
We are looking for an experienced SIEM professional with strong hands-on expertise in implementing,
configuring, maintaining, and optimizing Security Information and Event Management (SIEM) platforms.
The candidate will be responsible for log-source integration, detection engineering, correlation rules, alert
tuning, threat visibility, and collaboration with SOC and Incident Response teams.
Educational Qualification & Experience
• Bachelor's degree in Computer Science, Information Technology, or a related subject.
• 8+ years of relevant professional experience in SIEM, cybersecurity, security operations, or a related
field.
Key Responsibilities
Deploy, configure, administer, and maintain SIEM platforms such as Splunk, IBM QRadar, ArcSight, or LogRhythm.
Integrate diverse log sources across infrastructure, applications, endpoints, network devices, security tools, and cloud environments.
Develop and maintain custom parsers, field extractions, and log normalization to ensure accurate event analysis.
Create, test, tune, and optimize detection rules, correlation logic, use cases, and security alerts.
Develop detection capabilities based on threat models, attack scenarios, and business risks.
Work closely with SOC and Incident Response (IR) teams to improve threat visibility, alert quality, and investigative workflows.
Identify and reduce false positives while maintaining effective threat detection and monitoring coverage.
Develop automation scripts using Python, PowerShell, or similar scripting languages.
Create and maintain custom SIEM dashboards, reports, and security monitoring views.
Continuously optimize SIEM performance, detection effectiveness, data quality, and operational
processes.
Preferred Certifications
Splunk Certified Architect
GIAC Certified Intrusion Analyst (GCIA)
Equivalent SIEM, cybersecurity, or security operations cer