Lead SOC Engineer (SIEM)

CPX


Date: 3 weeks ago
City: Abu Dhabi
Contract type: Full time
Job Purpose

The SOC Senior Engineer, Splunk, is a critical role responsible for delivering SIEM /SOAR management services, particularly focusing on Splunk, within the Security Operations Center (SOC). Working closely with the SOC Principal Engineer, SIEM, this role encompasses onboarding new log sources, enhancing and optimizing telemetry, ensuring system updates, resolving issues, and maintaining SIEM performance according to best practices. Reporting to the Senior SOC Engineering & Architecture Manager, the SOC Senior Engineer, Splunk, is a professional with a solid foundation in SOC operations.

Job Responsibilities

Key Focus Areas

Key Activities

Key Responsibilities:

  • Deliver Splunk SIEM /SOAR management services within the SOC environment.
  • Collaborate with the SOC Principal Engineer, SIEM, in onboarding new log sources to the SIEM/SOAR platform.
  • Maintain and govern SOC critical log sources, ensuring their proper functionality and integration with Splunk SIEM /SOAR.
  • Detect log source issues, coordinate with customers to diagnose and resolve them in a timely manner.
  • Enhance and optimize telemetry within the Splunk environment to improve data collection, correlation, and reporting.
  • Perform regular system updates to ensure Splunk functionality and security are up to date.
  • Resolve Splunk-related issues promptly and efficiently.
  • Maintain the performance of the Splunk SIEM /SOAR according to established best practices.
  • Participate in continuous process improvements to increase SOC efficiency and effectiveness.
  • Provide regular and accurate reports on Splunk services and SOC operations to relevant stakeholders.
  • Contribute to SOC architecture strategy and implementation initiatives related to Splunk.
  • Assist in the mentorship and development of junior SOC engineers.

Characteristics:

  • Profound knowledge and hands-on experience with Splunk SIEM/SOAR and other related technologies like CRIBL.
  • Strong understanding of cloud and network technologies, essential for efficient log source onboarding.
  • Proven technical capabilities in a complex, fast-paced SOC environment.
  • Ability to diagnose and troubleshoot log source issues related to cloud and network infrastructures.
  • Strong understanding of SOC operations, cybersecurity principles, and best practices.
  • Excellent problem-solving skills and the ability to make decisions under pressure.
  • Ability to collaborate effectively with a variety of team members, including interfacing with customers to resolve issues.
  • High proficiency in written and verbal communication

Job Specifications

Skills/Certifications (Technical & Non-Technical)

  • Certified Information Systems Security Professional (CISSP), preferred.
  • Certified Information Security Manager (CISM), preferred.
  • Splunk Certified Architect or Splunk Certified Administrator.
  • Cloud-related certifications like AWS Certified Solutions Architect, Google Professional Cloud Architect, or Microsoft Certified: Azure Solutions Architect Expert.
  • Networking certifications such as CCNA or CCNP are advantageous.

Minimum Work Experience

  • A minimum of 6 years of experience in SOC operations, with significant experience in Splunk SIEM management.
  • Prior experience in a technical role within a SOC or similar cybersecurity environment.

Education

  • Bachelor’s degree in computer science, Information Technology, Cybersecurity, or a related field.

How to apply

To apply for this job you need to authorize on our website. If you don't have an account yet, please register.

Post a resume

Similar jobs

Assistant Resident Engineer Civil

WSP in the Middle East, Abu Dhabi
6 hours ago
Job Description""Think bigger scale. Think higher profile. Think ground-breaking. Join WSP, and you’ll be at the heart of an international collective of innovative thinkers, all dedicated to growing and sharing their expertise, working on projects that transform society for all of us. WSP Middle East is seeking a dynamic Assistant Resident Engineer Civil will be responsible for overseeing and managing...

Teacher - Music - Al Danah Charter School (AY25-26)

Aldar Education, Abu Dhabi
10 hours ago
Job DescriptionAl Danah Charter School is an American Curriculum school in the beautiful city of Abu Dhabi. With our globally recognised and admired curriculum, dedicated and passionate practitioners and outstanding teaching and learning, Al Danah Charter School is a great place to work. It has an exciting, diverse, and progressive learning community that is committed to fulfilling the National Agenda...

Principal Engineer Facilities and Maintenance Management

Abu Dhabi Accountability Authority, Abu Dhabi
13 hours ago
Key Responsibilities/DutiesStrategy and PlanningDevelop and manage the implementation and update of the section related policy, procedures manual, delegation of authority, systems user manuals and standard forms, and ensure compliance across the Authority and alignment with ADAA’s overall policies and procedures. Develop and manage the implementation, and update of the section’s strategic, budget and procurement, and operational plans ensuring alignment with...