Skip to content
mimi

Senior Security Operations Platform Engineer

Jobs via Dice

Eastchester · On-site Full-time Senior 6d ago

About the role

Qualifications

  • Lead SOC process transformation including triage, escalation, SLAs, and workflow optimization aligned with XSIAM
  • Design and implement incident response playbooks, automation, and SOC workflows
  • Define KPIs, dashboards, and metrics to improve SOC visibility and performance
  • Lead end-to-end SIEM/SOAR migration from QRadar and CP4S to XSIAM
  • Translate and rebuild SOAR playbooks and runbooks into XSIAM automations
  • Ensure SIEM normalization, log onboarding, field mapping, and data integrity
  • Develop detection rules using XQL and MITRE ATT&CK framework for gap analysis and coverage improvement
  • Implement telemetry ingestion across cloud, endpoint, network, and identity systems
  • Build integrations and automation using Python, JavaScript, or similar scripting languages
  • Design and manage logging/data pipelines using tools such as Syslog-ng, Kafka, or Cribl
  • Perform threat hunting, incident response, root cause analysis, and alert tuning to reduce false positives
  • Advise on modern SOC architecture including UEBA, threat intelligence, and attack surface management
  • Recommend SOC operating models, tiering structures, and automation-first strategies

Skills

CP4SCriblIdentity systemsJavaScriptKafkaMITRE ATT&CKPythonQRadarSyslog-ngUEBAXQLXSIAM

Don't send a generic resume

Paste this job description into Mimi and get a resume tailored to exactly what the hiring team is looking for.

Get started free