Gratitude Inc banner
Gratitude Inc logo

Security Engineers - SIEM & SOAR (CL8)

Gratitude Inc
20 Views
1 day ago

Security Engineers - SIEM & SOAR (CL8)

3-8 Year(s)
Manila
Manila

Job Description

Key Skills

SIEM tools SOAR Cybersecurity Frameworks Working knowledge of Cybersecurity technologies, Networking, or system administration

4 candidate(s) have already applied for this Job. Apply now

JOB TITLE: JOB TITLE: Security Engineers - SIEM & SOAR (CL8)


WORK SET UP: Onsite in Manila

WORK SHIFT: Shifting

Role Overview:


We are looking for Security Engineers to design, implement, and manage security monitoring and automated response capabilities. You will partner closely with SOC teams, threat analysts, and IT stakeholders to strengthen detection coverage and accelerate incident response through automation.


Key Responsibilities


SIEM Engineering & Management

• Design, implement, and optimize SIEM solutions (e.g., Splunk, Microsoft Sentinel, Google SecOps, QRadar, Elastic).

• Develop and maintain correlation rules, dashboards, and reports to identify threats and anomalies.

• Integrate diverse data sources (network, endpoints, cloud, applications) into the SIEM platform.

• Enhance data ingestion, parsing, and normalization to improve detection quality and reduce noise.


SOAR & Automation

• Implement and manage SOAR platforms (e.g., Cortex XSOAR, Splunk SOAR, IBM Resilient).

• Develop automated playbooks for incident response, alert triage, and threat intelligence enrichment.

• Collaborate with SOC analysts to streamline workflows and improve response efficiency.

• Maintain integrations with ticketing systems, threat intel feeds, and security tools.


Security Engineering & Operations Support

• Support incident response by delivering actionable alerts and automation-driven insights.

• Conduct root cause analysis of recurring threats and implement engineering solutions.

• Partner with audit and compliance teams to align security controls with regulatory standards.

• Provide training and documentation for SOC and IT teams on SIEM/SOAR platforms.



Qualifications


Education & Experience

• Bachelor’s degree in Cybersecurity, IT, Computer Science, or related field.

• 3–8 years of cybersecurity experience, with strong hands-on experience in SIEM and/or SOAR engineering.

• Experience in a SOC environment is highly preferred.


Core Technical Skills

• Proven experience with at least one SIEM platform (Splunk, Sentinel, QRadar, ArcSight, Google SecOps).

• Hands-on experience developing SOAR playbooks and automation workflows.

• Scripting skills (Python, PowerShell, or Bash) for automation and integrations.

• Knowledge of frameworks such as MITRE ATT&CK, NIST, or CIS Controls.

• Familiarity with EDR/XDR, firewalls, IDS/IPS, and cloud security (AWS, Azure, or GCP).


Work Setup

• Willing to work on a shifting schedule.

• Open to hybrid or on-site work (Cyberpark, Cubao).


RECRUITMENT PROCESS:


• Endorse for Validation

• Screening with CV Review and upload through Workday, along with the HRI toolkit, FCV and CV

• For review with the client



PRE-SCREENING QUESTIONS:


1. How many years of hands-on experience do you have in cybersecurity, specifically with SIEM and SOAR engineering?

2. Which SIEM platforms have you worked with (e.g., Splunk, Microsoft Sentinel, QRadar, ArcSight, Google SecOps, Elastic)?

3. Have you designed, implemented, or optimized SIEM solutions? Please describe your experience.

4. Which SOAR platforms have you worked with (e.g., Cortex XSOAR, Splunk SOAR, IBM Resilient)?

5. How much is your last drawn salary?

6. What is your salary expectation?

7. Are you willing to work onsite in Manila on a shifting schedule?

8. Do you currently have an active or recent application with Accenture and an active Workday Profile? If not, please avoid sending applications to this company after you submitted through us to avoid duplication.
WORK SET UP: Onsite in Manila

WORK SHIFT: Shifting

Salary budget: 70K - 150K (Confidential)

(Salary is confidential, but sharing a range here for sourcing purposes only; never share with your candidates. Only give them a hint that once they are selected, the final salary offer will depend on the client and project they will be assigned to)



Role Overview:


We are looking for Security Engineers to design, implement, and manage security monitoring and automated response capabilities. You will partner closely with SOC teams, threat analysts, and IT stakeholders to strengthen detection coverage and accelerate incident response through automation.


Key Responsibilities


SIEM Engineering & Management

• Design, implement, and optimize SIEM solutions (e.g., Splunk, Microsoft Sentinel, Google SecOps, QRadar, Elastic).

• Develop and maintain correlation rules, dashboards, and reports to identify threats and anomalies.

• Integrate diverse data sources (network, endpoints, cloud, applications) into the SIEM platform.

• Enhance data ingestion, parsing, and normalization to improve detection quality and reduce noise.


SOAR & Automation

• Implement and manage SOAR platforms (e.g., Cortex XSOAR, Splunk SOAR, IBM Resilient).

• Develop automated playbooks for incident response, alert triage, and threat intelligence enrichment.

• Collaborate with SOC analysts to streamline workflows and improve response efficiency.

• Maintain integrations with ticketing systems, threat intel feeds, and security tools.


Security Engineering & Operations Support

• Support incident response by delivering actionable alerts and automation-driven insights.

• Conduct root cause analysis of recurring threats and implement engineering solutions.

• Partner with audit and compliance teams to align security controls with regulatory standards.

• Provide training and documentation for SOC and IT teams on SIEM/SOAR platforms.



Qualifications


Education & Experience

• Bachelor’s degree in Cybersecurity, IT, Computer Science, or related field.

• 3–8 years of cybersecurity experience, with strong hands-on experience in SIEM and/or SOAR engineering.

• Experience in a SOC environment is highly preferred.


Core Technical Skills

• Proven experience with at least one SIEM platform (Splunk, Sentinel, QRadar, ArcSight, Google SecOps).

• Hands-on experience developing SOAR playbooks and automation workflows.

• Scripting skills (Python, PowerShell, or Bash) for automation and integrations.

• Knowledge of frameworks such as MITRE ATT&CK, NIST, or CIS Controls.

• Familiarity with EDR/XDR, firewalls, IDS/IPS, and cloud security (AWS, Azure, or GCP).


Work Setup

• Willing to work on a shifting schedule.

• Open to hybrid or on-site work (Cyberpark, Cubao).


RECRUITMENT PROCESS:


• Endorse for Validation

• Screening with CV Review and upload through Workday, along with the HRI toolkit, FCV and CV

• For review with the client


**REMINDER: Please do not include the name of the client and estimated salary in all your job postings. Kindly ensure that you upload the CVs of your candidates in PDF format with screening notes based on the JD provided.**


PRE-SCREENING QUESTIONS:


1. How many years of hands-on experience do you have in cybersecurity, specifically with SIEM and SOAR engineering?

2. Which SIEM platforms have you worked with (e.g., Splunk, Microsoft Sentinel, QRadar, ArcSight, Google SecOps, Elastic)?

3. Have you designed, implemented, or optimized SIEM solutions? Please describe your experience.

4. Which SOAR platforms have you worked with (e.g., Cortex XSOAR, Splunk SOAR, IBM Resilient)?

5. How much is your last drawn salary?

6. What is your salary expectation?

7. Are you willing to work onsite in Manila on a shifting schedule?

8. Do you currently have an active or recent application with Accenture and an active Workday Profile? If not, please avoid sending applications to this company after you submitted through us to avoid duplication.

Role

Any Other

Timings

Flexible (Permanent)

Industry

BPO

Work Mode

Work from office

Process

Voice

Functional Area

Any Other

Note: Myglit doesn't charge any money from candidates. If you have been asked to pay money to get this job then report to us immediately at support@myglit.com.

Recruiter profile

Zainab Busari

Recruiter - Gratitude Inc

NA, nigeria

0+ Followers

500+ Posts

Interview Tips

  • Giving the VNA round?
  • What are the most important skills you acquired as a Soft Skills/VNA trainer?
  • How would you handle an irate customer?

Get the Best Jobs
on your Fingertips

Similar Jobs

0 - 6 Year(s)

BPO Voice Process Customer oriented attention to details

Confidential

Manila, Philippines

0 - 20 Year(s)

Customer Service Thai Collections Process

₱ 60 - ₱ 60.95K p.m

Manila, Philippines

1 - 5 Year(s)

CRM (Customer relationship Management) Customer Relations Customer Service

₱ 15 - ₱ 30K p.m

Manila, Philippines

0 - 1 Year(s)

Customer Service

₱ 38 - ₱ 50K p.m

Manila, Philippines

3 - 10 Year(s)

Communication Technical documentation technical solutions

₱ 85 - ₱ 90K p.m

Manila, Philippines

1 - 4 Year(s)

Data Analysis Microsoft Excel Scheduling

Confidential

Manila, Philippines

0 - 2 Year(s)

Communication Listening typing skills

Confidential

Manila, Philippines

0 - 1 Year(s)

Customer Service

₱ 15 - ₱ 23K p.m

Manila, Philippines

Company logo

Firewall Specialist

Gratitude Inc

8 - 15 Year(s)

CISCO Firewall good communication skills

Confidential

Manila, Philippines

1 - 17 Year(s)

Inbound BPO BPO Voice Process BPO Skills

₱ 20 - ₱ 25K p.m

Manila, Philippines