About the role
Your role and responsibilities
Responsibilities:
- Creates, updates, tests, and deploys content.
- Updates are measured against the MITRE framework.
- Work with the security operations team to ensure that the SIEM system is configured and optimized to detect and respond to security incidents.
- Develop and maintain SIEM dashboards, alerts, and reports. Create and maintain SIEM use cases to detect specific security threats.
- Collaborate closely with cross-functional teams to ensure the effectiveness of detection mechanisms. (SOC Analyst, Cyber Threat Intel, Cyber Threat Hunting, SOC Management)
- Integrate content with various platforms and ensure seamless delivery aligned with business objectives and industry best practices.
- Monitor and analyze (XDR/SIEM/SOAR) content performance metrics to drive continuous improvement, troubleshooting and documenting.
Continuously monitor the threat landscape and stay updated with the latest attack techniques and tactics.
Number of Yrs exp : 8-10 Years
Product & Industry Cert: CISSP/OEM certifications/ Security+ etc..
Domain exp: XDR, SIEM and SOAR Automation
Required education
Bachelor's Degree
Preferred education
Doctorate Degree
Required technical and professional expertise
Responsibilities:
- Creates, updates, tests, and deploys content.
- Updates are measured against the MITRE framework.
- Work with the security operations team to ensure that the SIEM system is configured and optimized to detect and respond to security incidents.
- Develop and maintain SIEM dashboards, alerts, and reports. Create and maintain SIEM use cases to detect specific security threats.
- Collaborate closely with cross-functional teams to ensure the effectiveness of detection mechanisms. (SOC Analyst, Cyber Threat Intel, Cyber Threat Hunting, SOC Management)
- Integrate content with various platforms and ensure seamless delivery aligned with business objectives and industry best practices.
- Monitor and analyze (XDR/SIEM/SOAR) content performance metrics to drive continuous improvement, troubleshooting and documenting.
Continuously monitor the threat landscape and stay updated with the latest attack techniques and tactics.
Number of Yrs exp : 8-10 Years
Product & Industry Cert: CISSP/OEM certifications/ Security+ etc..
Domain exp: XDR, SIEM and SOAR Automation
Preferred technical and professional experience
Palo-alto XIAM Certification is highly desirable.
Palo-alto XSOAR experience & exposure is desired
Large scale SOC-SIEM Migration experience
Large data sources integration
Palo-alto XDR, XSOAR Experience is good to have.
Years of Experience:
8 - 15
Millions of jobs, with real people getting hired every day
Questions, answered
Click "Apply with JobAssist" – we tailor your resume and application to this role and submit it for your approval.
Yes. This role at IBM was screened before publishing – we confirmed the employer before listing it.
The employer didn't disclose a salary range for this listing. JobAssist shows pay whenever it's available.
This position can be done from anywhere, with no in-office requirement.
Yes – every application is tailored from your profile and this job's requirements, and you can review and edit before it's sent.
