Lead SOC Engineer (SIEM) (CPX)

🏢 CPX Piceance
📍 Abu Dhabi, United Arab EmiratesFull-timeOn-site
📅 Posted: 4d ago🔄 Updated: 4d ago
CV%
✨ AI Summary
The Lead SOC Engineer, SIEM at CPX Piceance is a critical technical leadership role focused on SIEM architecture, operations, and pre-sales support within the Security Operations Center. This position involves leading the technical operations and management of SIEM tools like Splunk, Sentinel, and LogRhythm, overseeing log collection, and ensuring SIEM system health. The role also includes managing SIEM licenses, optimizing telemetry, developing logging standards, and providing guidance to junior engineers. Additionally, the Lead SOC Engineer will participate in pre-sales activities, contributing technical expertise for SIEM license estimations and architectures, and collaborating on strategic SIEM architecture development and process improvements.
Required Skills
Information Technology
SIEMMicrosoft Sentinel
Other
CRIBLlogrhythm
Requirements
The role requires a Bachelor's degree in Computer Science, Information Technology, or Cybersecurity, with a minimum of 10 years of experience in SIEM and SOC operations, including significant experience in SIEM management and architecture. Prior leadership experience in a SOC or similar cybersecurity environment is also necessary. Must possess certifications such as CISSP, CISM, and Splunk Certified Architect or equivalent.
Description
OverviewThe SOC Lead Engineer, SIEM has a vital role in the SOC that encompasses technical leadership, SIEM architecture design, and pre-sales support. This position is responsible for overseeing the management and coordination of SIEM solutions, within the Security Operations Center (SOC). The SOC Lead Engineer will guide senior and junior engineers in day-to-day operations across multiple environments and customers, while also assisting in pre-sales estimations of SIEM licenses. Reporting to the Senior SOC Engineering & Architecture Manager, the SOC Lead Engineer, SIEM is a seasoned professional with over a decade of experience in SIEM operations.ResponsibilitiesLead the technical operations and management of SIEM tools including Splunk, Sentinel, LogRhythm,Qradar and FortiSIEM.Oversee the maintenance and functionality of the log collection layer, with a focus on tools like CRIBL.Ensure the health and functionality of SIEM systems through regular checks and maintenance activities.Oversee and manage SIEM licenses, including forecasting, tracking usage, and coordinating with sales for estimations and renewals.Optimize SIEM telemetry to ensure efficient and accurate data collection, correlation, and reporting.Develop and enforce logging standards across all customers, systems and platforms to maintain consistent and reliable log dataProvide guidance and mentorship to SOC Engineers in managing and resolving issues related to SIEM services and log management.Participate in pre-sales activities to provide technical expertise and estimation for SIEM licenses and architectures.Collaborate with SOC Engineering & Architecture Manager to develop SIEM architecture strategies and implement initiatives.Assist in continuous process improvements to increase SOC efficiency and effectiveness.Provide regular and accurate reporting on SIEM services, SOC operations, and license management to relevant stakeholders.SkillsExtensive knowledge and hands-on experience with SIEM tools such as Splunk, Sentinel, LogRhythm, FortiSIEM, and log collection components like CRIBL.Proven technical leadership skills in a complex, fast-paced environment.Demonstrable pre-sales experience, particularly in estimating SIEM licenses.Strong understanding of SOC operations, cybersecurity principles, and best practices.Exceptional problem-solving skills and the ability to make decisions under pressure.Excellent mentorship and team development capabilities.High proficiency in written and verbal communication.QualificationsCertifications:Certified Information Systems Security Professional (CISSP).Certified Information Security Manager (CISM).Splunk Certified Architect or similar SIEM certifications are a must.Cloud-related certifications like AWS Certified Solutions Architect, Google Professional Cloud Architect, or Microsoft Certified: Azure Solutions Architect Expert.Networking certifications such as CCNA or CCNP are advantageous.Educational ExperienceBachelor's degree in computer science, Information Technology, Cybersecurity, or a related field.A minimum of 10 years of experience in SIEM and SOC operations, with significant experience in SIEM management and architecture.Prior leadership role experience within a SOC or similar cybersecurity environment.
✨ Premium Match Details
Deep-dive CV analysis, customized Cover Letters, and Interview prep!
📊 Match Analysis
Insights against your active CV
📊
Personalized Match Analysis
Upload your CV to see exact matching percentages, detailed skills mapping, and gap analysis for this role.
🎯 Overalli74%
⚡ Skillsi85%
View Breakdown
Ontology Match: 85.0
Matched:✓ Requirements Matching✓ Ontology Skills Mapping
📜 Eligibilityi49%
View Breakdown
Local: 19600%
🏗️ Career Fiti91%
View Breakdown
Seniority: 91.0
📋 Requirementsi67%
View Breakdown
Domain: 67.0
🔥 Motivationi78%
View Breakdown
Title Fit: 78.00