Security Engineers - SIEM & SOAR (CL8)
Job Description
Key Skills
22 candidate(s) have already applied for this Job. Apply now
Key Responsibilities
SIEM Engineering & Management
• Design, implement, and optimize SIEM solutions (e.g., Splunk, Microsoft Sentinel, Google SecOps, QRadar, Elastic).
• Develop and maintain correlation rules, dashboards, and reports to identify threats and anomalies.
• Integrate diverse data sources (network, endpoints, cloud, applications) into the SIEM platform.
• Enhance data ingestion, parsing, and normalization to improve detection quality and reduce noise.
SOAR & Automation
• Implement and manage SOAR platforms (e.g., Cortex XSOAR, Splunk SOAR, IBM Resilient).
• Develop automated playbooks for incident response, alert triage, and threat intelligence enrichment.
• Collaborate with SOC analysts to streamline workflows and improve response efficiency.
• Maintain integrations with ticketing systems, threat intel feeds, and security tools.
Security Engineering & Operations Support
• Support incident response by delivering actionable alerts and automation-driven insights.
• Conduct root cause analysis of recurring threats and implement engineering solutions.
• Partner with audit and compliance teams to align security controls with regulatory standards.
• Provide training and documentation for SOC and IT teams on SIEM/SOAR platforms.
Qualifications
Education & Experience
• Bachelor’s degree in Cybersecurity, IT, Computer Science, or related field.
• 3–8 years of cybersecurity experience, with strong hands-on experience in SIEM and/or SOAR engineering.
• Experience in a SOC environment is highly preferred.
Core Technical Skills
• Proven experience with at least one SIEM platform (Splunk, Sentinel, QRadar, ArcSight, Google SecOps).
• Hands-on experience developing SOAR playbooks and automation workflows.
• Scripting skills (Python, PowerShell, or Bash) for automation and integrations.
• Knowledge of frameworks such as MITRE ATT&CK, NIST, or CIS Controls.
• Familiarity with EDR/XDR, firewalls, IDS/IPS, and cloud security (AWS, Azure, or GCP).
Work Setup
• Willing to work on a shifting schedule.
• Open to hybrid or on-site work (Cyberpark, Cubao).
Role
Security
Timings
Rotational Shifts (Permanent)
Industry
Construction / Engineering / Cement / Metals
Work Mode
Work from office
Process
Semi-Voice
Functional Area
IT Software/Hardware
Note: Myglit doesn't charge any money from candidates. If you have been asked to pay money to get this job then report to us immediately at support@myglit.com.
Interview Tips
- Giving the VNA round?
- What are the most important skills you acquired as a Soft Skills/VNA trainer?
- How would you handle an irate customer?
Similar Jobs
Senior Front-End / UI Developer
Gratitude Inc7 - 10 Year(s)
₱ 120 - ₱ 150.7K p.m
Manila, Philippines
5 - 7 Year(s)
Confidential
Manila, Philippines
Lead Microsoft 365 Architect & Developer
Gratitude Inc7 - 8 Year(s)
₱ 10 - ₱ 15K p.m
Manila, Philippines
Senior GCP Cloud Architect – SAP (AMS Engagement)
Gratitude Inc10 - 15 Year(s)
Confidential
Manila, Philippines
Service Desk Transformation Consultant
Gratitude Inc6 - 10 Year(s)
Confidential
Manila, Philippines
Manager Expert - Technical Architect for AI
Gratitude Inc10 - 11 Year(s)
Confidential
Manila, Philippines
5 - 10 Year(s)
Confidential
Manila, Philippines
Training Design & Curriculum
Gratitude Inc2 - 10 Year(s)
Confidential
Manila, Philippines
Network Engineer | Hybrid Quezon City
Gratitude Inc10 - 11 Year(s)
Confidential
Manila, Philippines

