Job Search

XSOAR Consultant

Remote

Piper Companies Logo

Job Id:
148580

Job Category:

Job Location:
Remote

Security Clearance:
No Clearance

Business Unit:
Piper Companies

Division:
Piper Enterprise Solutions

Position Owner:
Connor Gordon

Piper Companies is seeking a XSOAR Consultant to support log migration and detection strategy efforts for enterprise customers. This remote role will work closely with technical leads to onboard relevant log sources, implement detection strategies, and design high-quality correlation rules to protect against threats. The ideal candidate will be a subject matter expert in SIEM technologies and log ingestion, with strong experience in detection engineering and security operations.


Responsibilities:

  • Collaborate with technical leads to develop and execute log ingestion strategies.
  • Contribute to detection strategies based on industry best practices and customer requirements.
  • Document step-by-step processes for ingesting high-quality log sources.
  • Monitor and optimize log source performance.
  • Design and implement high-quality correlation rules.
  • Tune log sources and detection rules for accuracy and efficiency.
  • Serve as a subject matter expert in SIEM, correlation, and log ingestion.
  • Identify opportunities for automation to improve alert handling.
  • Work with internal and external teams to ensure successful product adoption.
  • Create technical documentation detailing SIEM aspects of engagements.
  • Travel to customer meetings and workshops as needed (up to 10%).

Qualifications:

  • 6+ years of experience deploying and integrating SIEM solutions in enterprise environments.
  • Proven ability to create and develop correlation and detection rules.
  • Experience with SIEM platforms such as Splunk, IBM QRadar, and Cortex XSIAM.
  • Strong understanding of log formats and third-party documentation.
  • Expertise in Regular Expressions and log parsing.
  • Familiarity with performance metrics and reporting for SIEM environments.
  • Knowledge of security analysis and response across endpoint, network, and cloud environments.
  • 4+ years of experience with Security Operations Center (SOC) tooling and processes.
  • Bachelor’s degree in a relevant field or industry certifications (CISSP, GIAC, SIEM vendor certifications).
  • Ability to read and create technical design documentation.
  • Strong communication and presentation skills.
  • Fluent in English; additional languages are a plus.

Compensation & Benefits:

  • Salary Range: $130,000 – $150,000 (based on experience)
  • Benefits Package: Medical, Dental, Vision, 401(k), Paid Time Off, Sick Leave (as required by law), and Holidays


Application Period: Opens August 23, 2025. Applications will be accepted for a minimum of 30 days from the posting date


Keywords:

#LI-CG1 #SIEMEngineer #CortexXSIAM #LogIngestion #DetectionEngineering #CorrelationRules #SecurityOperations #Splunk #QRadar #SIEMIntegration #ThreatDetection #RegularExpressions #LogParsing #SecurityAnalytics #SOC #Cybersecurity #SIEMOptimization #TechnicalDocumentation #Automation #EndpointSecurity #CloudSecurity #NetworkSecurity #AgileSecurity #SecurityArchitecture

Apply For This Position


Personal Information

Required
Required
Required
Required
Required
Required
Required

Additional Details

Required
Required
Required

Voluntary Self-identification Form

Required
Required
Required

Veteran Status *

Discharge Date:

Resume Upload

Please note only files with .pdf, .docx, or .doc file extensions are accepted.

Currently selected file:

Don't have a resume?