drjobs Solution Architect SIEM/SOAR (m/f/d)

Solution Architect SIEM/SOAR (m/f/d)

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Düsseldorf - Germany

Monthly Salary drjobs

Not Disclosed

drjobs

Salary Not Disclosed

Vacancy

1 Vacancy

Job Description

About Us:

Join our dynamic team of Cyber Defense Leaders and become a key player in safeguarding METRO. We are committed to fostering a secure environment where innovation thrives. As a Cyber Defense Leader you will have the opportunity to grow and develop into a seasoned security practitioner within our company.

Key Responsibilities:

  • Architect and Integrate: Design and implement SIEM and SOAR solutions that align with METROs detection automation and response strategy.
  • Use Case & Playbook Ownership: Lead the development and lifecycle management of detection use cases and response playbooks.
  • Log Source Strategy: Own the roadmap for log source onboarding and normalization across the enterprise.
  • Operational Integration: Collaborate closely with Security Operations to ensure seamless integration of SIEM/SOAR into daily workflows.
  • Global Collaboration: Engage with international teams and external vendors to drive solution adoption and continuous improvement.
  • Mentorship and Growth: Step into an architectural role with support and guidance even if youre transitioning from a senior engineering position.

Qualifications :

Qualifications:

  • Experience with at least one leading SIEM and SOAR platform (e.g. Google SecOps Splunk Microsoft Sentinel Cortex XSOAR etc.).
  • Strong understanding of log source onboarding normalization and detection engineering.
  • Proven ability to design and integrate security automation and orchestration into operational workflows.
  • Experience developing and maintaining detection use cases and response playbooks.
  • Strong communication skills and experience working in cross-functional international teams.
  • Strategic mindset with the ability to contribute to long-term planning.

Why Join Us:

  • Opportunity to grow within a supportive and innovative environment.
  • Work with cutting-edge technologies and tools.
  • Be part of a team of Cyber Defense Leaders that values your contributions and encourages professional development.
  • Help shape the future of METROs cyber defense at a global scale.


Additional Information :

  • Work-life balance: Flexible working hours with the option of mobile working in agreement with your line manager 30 days of holidays.
  • Training: A comprehensive training offer via our own training center or externally.
  • Well-being: Health days with lots of health checks and information about your well-being company medical care including a range of preventive services such as flu shots OTHEB employee assistance program. 
  • Exciting life on campus: Free gym and sports classes Rioba coffee bar canteen with discounted meals for employees many campus events.
  • Discounts: discounted Jobticket as well as discounts in our wholesale stores and at many partner companies.
  • Comfort: Good transport connections free parking spaces JobBike. 
  • Company pension plan: You will receive a contribution to your company pension. 
  • Family driven: Three daycare centers for children on campus support of holiday camps for children of employees.


Remote Work :

No


Employment Type :

Full-time

Employment Type

Full-time

Company Industry

About Company

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.