Act as a Subject Matter Expert (SME) for the company’s SIEM/Log Management/SOAR solution within your scope.
Ensure operational stability and performance of the SIEM/Log Management/SOAR solutions in scope.
Document and maintain the SIEM/Log Management/SOAR solution.
Monitor and recommend improvements for any solution within scope.
Ensure Operations are performed correctly by preparing relevant trainings and Standard Operating Procedures (SOPs) for the team.
Provide Level 3 (L3) technical support to our clients.
Analyze, troubleshoot, and resolve issues related to SIEM, Log Management, or SOAR solutions.
Engage external tools/vendors to resolve complex problems.
Incorporate change management and patching for solutions within scope.
Support the management of SIEM/Log Management/SOAR components, including log parsing/normalization, rules engine, log storage, source devices, log collection, and event monitoring.
Build and maintain relationships with internal and external clients.
Support the Security Group in day-to-day activities.
Provide expert consultancy for projects.
Requirements
Master’s degree or equivalent in Information Technology or Information Security.
Languages: fluent English (B2/C1).
Operational experience in Security or IT roles focused on Security (cybersecurity, IT operations, etc.).
Technical Knowledge: Solid experience in the deployment, management, or operation of large-scale SIEM or log management solutions.
Hands-on experience with Linux and Windows operating system troubleshooting.
Strong knowledge in: Cloud technologies and concepts (Azure/AWS)
Security threats and attack vectors
Log management
Network technologies, firewalls, and proxies
Ability to understand complex, large-scale IT environments.
Practical experience with observability platforms.
Ability to document processes and procedures.
Nice to have: Experience in security incident detection and management.
Experience with DNS management and Web Filtering/Proxy.
Knowledge of MITRE ATT&CK / D3FEND frameworks.
Familiarity with SOC2, NIST, ISO27001 standards.
Experience in project coordination or action tracking.
Benefits
Advanced and/or fluent English is mandatory, as the role involves working with international teams
Remote or hybrid modality, to be agreed with the manager
Cybersecurity Consultant ensuring cybersecurity operations and delivering consultancy projects for clients, focusing on strategic risk management and compliance assessments.
Senior IT Security Engineer developing and optimizing innovative security solutions in an international environment. Engaging in corporate information security utilizing best practices.
Regional Lead overseeing physical security infrastructure and operations for OpenAI’s data centers in Singapore. Collaborating with teams and managing security technologies for compliance and risk assessment.
Business Continuity and Cybersecurity Awareness Manager at ZEAL, leading BCM and cybersecurity training initiatives. Ensuring resilient operations and fostering secure behavior across teams.
Responsable d'Opérations en sécurité incendie et équipements du bâtiment chez Bureau Veritas. Animer une équipe tout en contribuant au développement commercial et à la qualité des prestations.
Senior Inhouse IT Consultant responsible for the network and server infrastructure of the L - mobile Group. Planning security measures and managing cloud and virtualization platforms.
(Junior) Information Security Officer responsible for ISMS management at Sana Clinics. Ensuring compliance with NIS - 2 and training staff on information security.
Senior Manager in Cybersecurity leading Cyber Defense Center operations and strategy development for effective threat response. Collaborating with stakeholders to enhance security posture across the organization.
Manager overseeing threat hunting and incident response using SIEM platforms in a leading financial institution in MENA. Enhancing security operations with expertise in Cyber Defense Center and Security Operations Center roles.