drjobs SIEM Engineer with QRadar

SIEM Engineer with QRadar

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Lindenwold, NJ - USA

Monthly Salary drjobs

Not Disclosed

drjobs

Salary Not Disclosed

Vacancy

1 Vacancy

Job Description

Role SIEM Engineer

Location Remote

Position 1

Required Skills:

  • QRadar SIEM
  • AQL
  • Analytical Skills
  • Redhat Linux administration
  • Bash
  • DSM
  • Database Management
  • Excellent Verbal Communication Skills
  • IBM
  • IBM QRadar SIEM
  • Intrusion Detection System IDS
  • Linux
  • Network Engineering
  • Networking Protocol
  • Performance Monitoring and Metrics
  • PostgreSQL
  • Problem Solving
  • Python (Programming Language)
  • SIEM
  • SOAR
  • Scripting
  • Security Operations
  • Software Troubleshooting
  • Ticketing Systems
  • Use case creation
  • Vulnerability Scanning

Preferred Skills

Palo Alto XSIAM and XDR Cribl Splunk FireEye EDR security tools

Responsibilities

  • Primary engineer managing SIEM platform with IBM QRadar and supporting delivery for Managed Security Services to a State Government client to provide timely accurate planned completion and implementation of security services which must be available for 24x7x365 support
  • Leads primary daytoday SIEM interactions with project team and State cybersecurity staff. Manages platform health performs upgrades including managing deployed sensors and collectors. Interacts with SOC analysts to tune alerts and use cases to include integrations with client
  • Handson QRadar engineering and configuration experience required as system will be undergoing platform upgrades
  • Adding new log sources to existing QRadar configure use cases alerts etc.
  • Conduct Nessus scans
  • Ensure the solution can be integrated successfully into the overall application/system with clear robust and welltested interfaces.
  • Perform troubleshooting work through complex requirements/solutions and provide assistance/coaching with the creation of QRadar search queries and dashboards
  • Maintain strong partnership with Detection & Response leadership and other teams in Security Organization
  • Investigate and resolve QRadar performance issues including event drops parsing problems and unknown events
  • Perform deepdive analysis of log source integration issues and implement solutions
  • Troubleshoot and optimize event collection parsing and normalization
  • Create and maintain custom parsers DSMs and log source extensions
  • Monitor system health storage utilization and EPS/FPS metrics
  • Develop custom reports and dashboards for security metrics and compliance
  • Finetune correlation rules and optimize system performance
  • Perform root cause analysis for SIEMrelated incidents

Additional Information :

All your information will be kept confidential according to EEO guidelines.


Remote Work :

Yes


Employment Type :

Fulltime

Employment Type

Remote

Company Industry

About Company

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.