XSOAR Consultant (Remote)
Remote
Job Id:
129302
Job Category:
Job Location:
Remote
Security Clearance:
None
Business Unit:
Piper Companies
Division:
Piper Enterprise Solutions
Position Owner:
Chase Reese
Piper Companies is seeking a Remote XSOAR Consultant to join an international leader in cybersecurity services. The XSOAR Consultant will play a pivotal role in assisting with log migration and detection strategy for clients.
Responsibilities of the XSOAR Consultant include:
- Collaborate with the technical lead to develop a log ingestion strategy.
- Contribute to the detection strategy based on industry best practices.
- Document a detailed step-by-step process for ingesting high-quality log sources.
- Monitor and optimize log sources for maximum efficiency.
- Create high-quality correlation rules to enhance threat detection.
- Tune log sources and correlation rules for optimal performance.
Qualifications for the XSOAR Consultant:
- 6+ years of experience in deploying and integrating SIEM solutions in enterprise to large enterprise-level environments.
- Experience with Security Operation Centers tooling and processes.
- Experience in coordinating and conducting event collection, log management, event management, compliance automation, and identity monitoring activities using SIEM platforms.
- Ability to create and develop correlation and detection rules within a SIEM to support alerting capabilities.
- Experience with a variety of SIEM technologies such as Splunk, IBM QRadar, etc.
Compensation for the XSOAR Consultant:
- Salary Range: $145,000 - $165,000
- Full benefits: Healthcare, Dental, Vision, PTO, Holiday
Keywords: #LI-CR2 #LI-REMOTE
XSOAR Consultant, SIEM Engineer, Cortex XSIAM, Log Migration, Detection Strategy, SIEM, Log Ingestion, Correlation Rules, Threat Detection, Security Operations, Cybersecurity, Enterprise Security, Security Information and Event Management, Splunk, IBM QRadar, Security Automation, Compliance Monitoring, Identity Monitoring, Regular Expressions, Log Analysisentation, Industry Best Practices, Customer Requirements, Automation, Alert Handling, Subject Matter Expert, CISSP, GIAC, SIEM Vendor Qualification