Experteer Overview
In this role you will drive automation within the SOC by implementing and maintaining SIEM/SOAR solutions to detect and respond to threats. You will collaborate with the SOC and other IT teams to configure detections, develop automation playbooks, and integrate tools via APIs. The position focuses on improving incident response efficiency through custom scripts and workflows. You’ll operate in a security-focused environment, helping adapt configurations to evolving threats and organizational needs.
Compensaciones / Ventajas
• Perform SIEM configurations and use cases to optimize detection and response
• Develop automations and playbooks in the SOAR platform to streamline incident handling
• Integrate SOC tools through APIs to enhance process efficiency
• Scripting and programming development (Python, PowerShell, Bash) to automate tasks and data manipulation
• Optimize SIEM/SOAR modules in response to threat landscape changes
• Collaborate with SOC teams, Cybersecurity Architecture, CuSM, and other IT teams to align SIEM/SOAR with infrastructure and applications