Lead SOC Engineer SIEM And SOAR

23 hours ago


Abu Dhabi, United Arab Emirates TALENTMATE Full time

Overview The Lead Engineer – SOC (SIEM & SOAR) is a critical role responsible for delivering SIEM /SOAR management services, particularly focusing on Splunk SIEM and SOAR, within the Security Operations Center (SOC). This role encompasses working closely with the SOC internal and external teams to facilitate onboarding new log sources, enhancing and optimizing telemetry, ensuring system updates, resolving issues, and maintaining SIEM performance, automation and orchestration, designing playbooks according to best practices achieved through the SOAR solution. Responsibilities Deliver Splunk SIEM /SOAR management services within the SOC environment. Collaborate with the asset owner, client stakeholder, and SOC in onboarding new log sources to the SIEM/SOAR platform. Maintain and govern SOC critical log sources, ensuring their proper functionality and integration with Splunk SIEM /SOAR. Detect log source issues, coordinate with customers to diagnose and resolve them in a timely manner. Enhance and optimize telemetry within the Splunk environment to improve data collection, correlation, and reporting. Perform regular system updates to ensure Splunk functionality and security are up to date. Resolve Splunk-related issues promptly and efficiently. Proficiency in field extractions, data normalization, and CIM (Common Information Model) compliance. Maintain the performance of the Splunk SIEM /SOAR according to established best practices. Design SOAR playbooks to enhance automation and orchestration of incidents. Connect SOAR with SIEM, ticketing systems (e.g., ServiceNow), threat intelligence platforms, and endpoint tools. Experience with platforms like Splunk SOAR (Phantom), Forti SOAR, or Cortex XSOAR. Participate in continuous process improvements to increase SOC efficiency and effectiveness. Provide regular and accurate reports on Splunk services and SOC operations to relevant stakeholders. Contribute to SOC architecture strategy and implementation initiatives related to Splunk. Assist in the mentorship and development of junior SOC engineers. Characteristics Profound knowledge and hands‑on experience with Splunk SIEM/SOAR and other related technologies like CRIBL. Understanding of SOC workflows, MITRE ATT&CK framework, and threat detection methodologies. Ability to correlate data across multiple sources to identify patterns and anomalies. Strong understanding of cloud and network technologies, essential for efficient log source onboarding. Proven technical capabilities in a complex, fast‑paced SOC environment. Ability to diagnose and troubleshoot log source issues related to cloud and network infrastructures. Strong understanding of SOC operations, cybersecurity principles, and best practices. Excellent problem‑solving skills and the ability to make decisions under pressure. Ability to collaborate effectively with a variety of team members, including interfacing with customers to resolve issues. High proficiency in written and verbal communication. Job Details Role Level: Mid‑Level Work Type: Full‑time Country: United Arab Emirates City: Abu Dhabi Company Website: Job Function: Information Technology (IT) Company Industry: Computer and Network Security Sector: IT Services and IT Consulting Qualifications Minimum Work Experience: A minimum of 8 years of experience in SOC operations, with significant experience in Splunk SIEM management. Prior experience in a technical role within a SOC or similar cybersecurity environment. Education: Bachelor’s degree in computer science, Information Technology, Cybersecurity, or a related field. Skills/Certifications Splunk Certified Architect or Splunk Certified Administrator. Mastery of SPL (Search Processing Language) for complex queries, dashboards, and reports. Python scripting skills. Experience with platforms like Forti SOAR, Splunk SOAR (Phantom), Cortex XSOAR, etc. Cloud‑related certifications like AWS Certified Solutions Architect, Google Professional Cloud Architect, or Microsoft Certified: Azure Solutions Architect Expert. Certified Information Systems Security Professional (CISSP), GIAC is preferred. Networking certifications such as CCNA or CCNP are advantageous. About The Company Searching, interviewing and hiring are all part of the professional life. The TALENTMATE Portal idea is to fill and help professionals doing one of them by bringing together the requisites under One Roof. Whether you're hunting for your Next Job Opportunity or Looking for Potential Employers, we're here to lend you a Helping Hand. #J-18808-Ljbffr



  • Abu Dhabi, United Arab Emirates TALENTMATE Full time

    A leading security solution provider in the UAE is seeking a Lead Engineer – SOC (SIEM & SOAR) to deliver key management services within their Security Operations Center. This mid-level role requires a minimum of 8 years of experience in SOC operations, especially in Splunk SIEM. Responsibilities include enhancing log source functionalities and optimizing...


  • Abu Dhabi, United Arab Emirates CPX Full time

    Join to apply for the Senior SOC Engineer SIEM role at CPX . Overview We are seeking a skilled Senior SOC Engineer with expertise in SOAR platforms to drive automation and efficiency in our Security Operations Center. The role involves designing and optimizing SOAR workflows to improve incident response, integrate threat intelligence, and scale operations....


  • abu dhabi, United Arab Emirates CPX Full time

    Join to apply for the Senior SOC Engineer SIEM role at CPX. Overview We are seeking a skilled Senior SOC Engineer with expertise in SOAR platforms to drive automation and efficiency in our Security Operations Center. The role involves designing and optimizing SOAR workflows to improve incident response, integrate threat intelligence, and scale operations....


  • abu dhabi, United Arab Emirates CPX Full time

    Join to apply for the Senior SOC Engineer SIEM role at CPX. Overview We are seeking a skilled Senior SOC Engineer with expertise in SOAR platforms to drive automation and efficiency in our Security Operations Center. The role involves designing and optimizing SOAR workflows to improve incident response, integrate threat intelligence, and scale operations....


  • Abu Dhabi, United Arab Emirates TALENTMATE Full time

    Overview We are seeking a skilled Senior SOC Engineer with expertise in SOAR platforms to drive automation and efficiency in our Security Operations Center. The role involves designing and optimizing SOAR workflows to improve incident response, integrate threat intelligence, and scale operations. Collaboration with cross‑functional teams is essential to...


  • Abu Dhabi, United Arab Emirates TALENTMATE Full time

    Overview We are seeking a skilled Senior SOC Engineer with expertise in SOAR platforms to drive automation and efficiency in our Security Operations Center. The role involves designing and optimizing SOAR workflows to improve incident response, integrate threat intelligence, and scale operations. Collaboration with cross‐functional teams is essential to...


  • Abu Dhabi, United Arab Emirates TALENTMATE Full time

    TALENTMATE Abu Dhabi, Abu Dhabi Emirate, United Arab Emirates Overview We are seeking a skilled Senior SOC Engineer with expertise in SOAR platforms to drive automation and efficiency in our Security Operations Center. The role involves designing and optimizing SOAR workflows to improve incident response, integrate threat intelligence, and scale operations....


  • abu dhabi, United Arab Emirates CPX Holding Full time

    Overview: We are seeking a skilled Senior SOC Engineer with expertise in SOAR platforms to drive automation and efficiency in our Security Operations Center. The role involves designing and optimizing SOAR workflows to improve incident response, integrate threat intelligence, and scale operations. Collaboration with cross‑functional teams is essential to...


  • Abu Dhabi, United Arab Emirates TALENTMATE Full time

    A cybersecurity firm located in Abu Dhabi is seeking a Senior SOC Engineer to enhance automation and efficiency in their Security Operations Center. The ideal candidate will have a Bachelor’s degree in a related field and at least 5 years of SOC experience, specifically with SOAR platforms like Splunk SOAR. Responsibilities include designing SOAR...

  • Senior SOC Engineer

    23 hours ago


    Abu Dhabi, United Arab Emirates TALENTMATE Full time

    A cybersecurity firm located in Abu Dhabi is seeking a Senior SOC Engineer to enhance automation and efficiency in their Security Operations Center. The ideal candidate will have a Bachelor’s degree in a related field and at least 5 years of SOC experience, specifically with SOAR platforms like Splunk SOAR. Responsibilities include designing SOAR...