Senior Security Operations Specialist – SIEM & SOAR

1 Minute ago • 3 Years + • Operations

Job Summary

Job Description

We are seeking a Security Operations Specialist – SIEM & SOAR to manage and optimize Security Information and Event Management (SIEM) and Security Orchestration, Automation, and Response (SOAR) platforms. The ideal candidate will oversee the operation of Splunk, Google Chronicle, Siemplify, and Palo Alto XSOAR, ensuring effective log ingestion, parser development, playbook automation, and anomaly detection. This role is critical in identifying unusual behavior, enhancing security visibility, and providing actionable insights to executives.
Must have:
  • Manage and maintain SIEM platforms (Splunk, Google Chronicle) to ensure optimal log ingestion and processing.
  • Develop and fine-tune log parsers for structured and unstructured data.
  • Ensure data normalization, enrichment, and correlation to improve threat detection.
  • Continuously monitor security events to identify unusual behavior and potential threats.
  • Create custom detections, alerts, and dashboards for advanced threat visibility.
  • Investigate suspicious activities and escalate incidents as needed.
  • Design and implement automation playbooks in Siemplify and Palo Alto XSOAR to streamline security operations.
  • Automate threat response, triage, and remediation workflows to reduce response times.
  • Integrate SIEM, threat intelligence feeds, and incident response tools for enhanced security operations.
  • Generate security analytics and reports for leadership, highlighting trends and risks.
  • Provide executive-level insights on security events, response effectiveness, and operational improvements.
  • Track and improve key security metrics and operational efficiencies.
Good to have:
  • Certifications such as Splunk Certified Admin, Chronicle Security Engineer, CISSP, or GIAC Security Operations (GCIA, GMON)
  • Experience with threat intelligence integration and UEBA (User and Entity Behavior Analytics)
  • Knowledge of cloud security logging (AWS, GCP, Azure) and compliance frameworks

Job Details

Job Description: Security Operations Specialist – SIEM & SOAR

Department: Information Security / Security Operations

Job Summary

We are seeking a Security Operations Specialist – SIEM & SOAR to manage and optimize Security Information and Event Management (SIEM) and Security Orchestration, Automation, and Response (SOAR) platforms. The ideal candidate will oversee the operation of Splunk, Google Chronicle, Siemplify, and Palo Alto XSOAR, ensuring effective log ingestion, parser development, playbook automation, and anomaly detection. This role is critical in identifying unusual behavior, enhancing security visibility, and providing actionable insights to executives.

Key Responsibilities

1. SIEM Operations & Log Management

  • Manage and maintain SIEM platforms (Splunk, Google Chronicle) to ensure optimal log ingestion and processing.
  • Develop and fine-tune log parsers for structured and unstructured data.
  • Ensure data normalization, enrichment, and correlation to improve threat detection.

2. Threat Detection & Anomaly Analysis

  • Continuously monitor security events to identify unusual behavior and potential threats.
  • Create custom detections, alerts, and dashboards for advanced threat visibility.
  • Investigate suspicious activities and escalate incidents as needed.

3. SOAR Automation & Playbook Development

  • Design and implement automation playbooks in Siemplify and Palo Alto XSOAR to streamline security operations.
  • Automate threat response, triage, and remediation workflows to reduce response times.
  • Integrate SIEM, threat intelligence feeds, and incident response tools for enhanced security operations.

4. Security Insights & Executive Reporting

  • Generate security analytics and reports for leadership, highlighting trends and risks.
  • Provide executive-level insights on security events, response effectiveness, and operational improvements.
  • Track and improve key security metrics and operational efficiencies.

Qualifications & Skills

Required:

  • 3+ years of experience in SIEM, SOAR, or Security Operations.
  • Hands-on experience with Splunk, Google Chronicle, Siemplify, Palo Alto XSOAR.
  • Strong knowledge of log ingestion, parsing, and security event correlation.
  • Experience in developing custom detections, queries, and dashboards.
  • Ability to design and automate security playbooks for incident response.
  • Strong analytical and communication skills to present security insights to executives.

Preferred:

  • Certifications such as Splunk Certified Admin, Chronicle Security Engineer, CISSP, or GIAC Security Operations (GCIA, GMON).
  • Experience with threat intelligence integration and UEBA (User and Entity Behavior Analytics).
  • Knowledge of cloud security logging (AWS, GCP, Azure) and compliance frameworks.

Similar Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

Similar Skill Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

Jobs in Bengaluru, Karnataka, India

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

Operations Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

About The Company

Iron Mountain is a global leader in storage and information management services trusted by more than 225,000 organizations in 60 countries. We safeguard billions of our customers’ assets, including critical business information, highly sensitive data, and invaluable cultural and historic artifacts. Iron Mountain helps lower cost and risk, comply with regulations, recover from disaster, and enable digital and sustainable solutions, whether in information management, digital transformation, secure storage and destruction, data center operations, cloud services, or art storage and logistics.

Sabaneta, Antioquia, Colombia (On-Site)

Bengaluru, Karnataka, India (On-Site)

Bogotá, Bogota, Colombia (On-Site)

Alcobendas, Community Of Madrid, Spain (On-Site)

Bogotá, Bogota, Colombia (Hybrid)

Barcelona, Catalonia, Spain (On-Site)

Bengaluru, Karnataka, India (Remote)

Bogotá, Bogota, Colombia (Remote)

Tracy, California, United States (On-Site)

San Diego, California, United States (On-Site)

View All Jobs

Get notified when new jobs are added by Iron Mountain

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug