Senior Associate – SIEM/SOAR Engineering
Tasks
- Administer and optimize Splunk Enterprise and Splunk ES
- Apply MITRE ATT&CK framework
- Apply NIST framework
- Build SIEM use cases for cyberattack detection
- Conduct threat hunting using threat intelligence
- Correlate security events across data sources
- Develop dashboards workbooks and alerts
- Implement SOAR workflows
- Implement security information management practices
- Integrate log sources with Azure Sentinel via REST API
Perks/Benefits
- N/A
Skills/Tech-stack
ArcSight | Azure Functions | Azure Monitor | Azure Security | Azure Security Center | Azure Sentinel | Behavior analytics | Defender ATP | Demisto | KQL | Log Analytics | Logic Apps | MITRE ATT and CK | Machine Learning | Microsoft Defender | Microsoft Defender ATP | NIST | Network Security | Network Security Group | Phantom | Python | REST API | SIEM | SOAR | SPL | Security Center | Security Group | Splunk | Splunk ES | Splunk Enterprise | Threat Intelligence | Threat hunting | User and entity behavior analytics
Education
N/A
Roles
Analyst | Cybersecurity Engineer | Engineer | Security | Security Analyst
Related jobs
-
Detection engineering | Google SecOps | Log Ingestion | MITRE | Playbook automationMid-level Full TimeArgentina AC Olivos1d ago
-
Senior Security Architect MXN 336K-336KApplication Security | CI/CD | Cloud Security | Code Management | DefectDojoDental insurance | Health insurance | Performance bonus | Remote work | Stock optionsSenior-level Full TimeArgentina R2d ago
-
Senior Application Security Engineer MXN 336K-336KApplication Security | Application Security Testing | Architecture Review | CI/CD | CheckovDental insurance | Health insurance | Hybrid work option | Performance bonus | Remote workSenior-level Full TimeArgentina R2d ago
-
Mid-level Full TimeArgentina2d ago
-
Staff Security Platform Engineer EUR 75K-88KAccess Management | Anomaly Detection | Apache Flink | ArgoCD | BashSenior-level Full TimeBuenos Aires3d ago
-
Senior-level Full TimeBuenos Aires, Argentina4d ago
-
Cyber Security Analyst - Americas USD 144K-210KAPI Security | Application Security | Attack mitigation | Behavioral analytics | Incident ResponseFlexible working hours | Fully remote | In person interview for final stepSenior-level Contract Full TimeBuenos Aires, Buenos Aires, Argentina - … R7d ago
-
Sr. Software Engineer - Application Security MXN 919K-1200KApache Tomcat | Application Security | Artificial Intelligence | C plus plus | Cloud SecurityRemote-first culture | Work-life balanceSenior-level Full TimeRemote - Argentina; Remote - Colombia … R7d ago
-
Senior Associate – SIEM/SOAR Engineering USD 73K-232KArcSight | Azure Functions | Azure Monitor | Azure Security | Azure Security CenterMid-level Full TimeArgentina AC Olivos9d ago
-
Offensive Security Senior USD 80K-202KAWS | Active Directory | Application Security | Azure | BloodHoundSenior-level Full TimeBuenos Aires, Argentina9d ago
-
800-82 | 802.1x | Access Control | Asset Inventory | CIS ControlsMid-level Full TimeArgentina AC Olivos9d ago
-
AAA | AWS | Azure | BGP | Cisco ACISenior-level Full TimeArgentina AC Olivos9d ago
-
Access Management | Access provisioning | Admin Account Control | Bash | Browser SecuritySenior-level ContractArgentina9d ago
-
Liquidity Risk Management - Senior Associate USD 174K-206KBalance sheet | Balance sheet analysis | Excel | Indicators | Limit managementSenior-level Full TimeCiudad Autónoma de Buenos Aires, Argentina10d ago
-
Cloud Support Engineer USD 119K-222KAWS | Ansible | Azure | CI/CD | ChefCustomer working hours support | Rotational on-call scheduleSenior-level Full TimeCiudad Autónoma de Buenos Aires, Buenos …12d ago
-
Cloud Support Engineer USD 119K-222KAWS | Ansible | Azure | Change Control | ChefRotational on call coverageSenior-level Full TimeCiudad Autónoma de Buenos Aires, Buenos …12d ago
-
Senior-level Full TimeCiudad Autónoma de Buenos Aires, Buenos …13d ago
-
Senior-level Full TimeCiudad Autónoma de Buenos Aires, Buenos …13d ago
-
Senior-level Full TimeCiudad Autónoma de Buenos Aires, Buenos …13d ago
-
Systems Engineer USD 200K-240K3DES | 802.1Q | Amazon Web Services | Application Security | AuthenticationMid-level Full TimeBuenos Aires, Ciudad Autónoma de Buenos …13d ago
-
Mid-level Full TimeBuenos Aires, Ciudad Autónoma de Buenos …13d ago
-
800-82 | 802.1x | Armis | Asset Inventory | BluetoothSenior-level Full TimeArgentina AC Olivos15d ago
-
AWS | Access Control | Appgate) | Azure | BGPSenior-level Full TimeArgentina AC Olivos15d ago
-
AWS | Access Management | Application Security | Azure | BashMid-level Full TimeArgentina AC Olivos15d ago
-
Associate – SIEM/SOAR Engineering USD 77K-163KArcSight | Azure Functions | Azure Monitor | Azure Security | Azure Security CenterMid-level Full TimeArgentina AC Olivos15d ago