JV
Senior Security Operations Platform Engineer
Jobs via Dice
Eastchester · On-site Full-time Senior 6d ago
About the role
Qualifications
- Lead SOC process transformation including triage, escalation, SLAs, and workflow optimization aligned with XSIAM
- Design and implement incident response playbooks, automation, and SOC workflows
- Define KPIs, dashboards, and metrics to improve SOC visibility and performance
- Lead end-to-end SIEM/SOAR migration from QRadar and CP4S to XSIAM
- Translate and rebuild SOAR playbooks and runbooks into XSIAM automations
- Ensure SIEM normalization, log onboarding, field mapping, and data integrity
- Develop detection rules using XQL and MITRE ATT&CK framework for gap analysis and coverage improvement
- Implement telemetry ingestion across cloud, endpoint, network, and identity systems
- Build integrations and automation using Python, JavaScript, or similar scripting languages
- Design and manage logging/data pipelines using tools such as Syslog-ng, Kafka, or Cribl
- Perform threat hunting, incident response, root cause analysis, and alert tuning to reduce false positives
- Advise on modern SOC architecture including UEBA, threat intelligence, and attack surface management
- Recommend SOC operating models, tiering structures, and automation-first strategies
Skills
CP4SCriblIdentity systemsJavaScriptKafkaMITRE ATT&CKPythonQRadarSyslog-ngUEBAXQLXSIAM
Don't send a generic resume
Paste this job description into Mimi and get a resume tailored to exactly what the hiring team is looking for.
Get started free