Senior Associate-SIEM Implementation Engineer (Bilingual FR/EN)
Core
Implement and operate SIEM platforms (Microsoft Sentinel, Google SecOps, Palo Alto XSIAM, Devo) to detect cyber threats, manage log ingestion pipelines, and automate security responses for clients.
Role type
Senior IC SIEM Implementation Engineer
Builds
Production SIEM environments, detection use cases, and SOAR workflows for client security operations centers.
Domain
Cybersecurity, Cloud Security, Log Management
Deliverable
production ML models | product features | dashboards & analysis | infrastructure
Required skills
SIEM architecture and implementation, log management, threat detection methodologies, scripting (Python, PowerShell, Bash), cloud platforms (Azure, GCP, AWS), data pipeline tools (Cribl), SOAR playbook development, CI/CD practices for security content, REST APIs and JSON integration.
Preferred skills
AI application in security operations, incident response automation, security risk management.
Technologies
Microsoft Sentinel, Google SecOps, Palo Alto XSIAM, Devo, Splunk, Logic Apps, Phantom, Demisto, XSOAR, GitHub, DataBahn, Azure, GCP, AWS, Cribl, Python, PowerShell, Bash.
Responsibilities
Lead technical deliverables for SIEM implementation and operations; perform PoC/PoV engagements; conduct SIEM assessments and gap analysis; develop and maintain data pipelines for log ingestion and enrichment; integrate log sources using connectors and custom scripts; build detection use cases aligned with NIST/MITRE ATT&CK; implement detection rules using SPL/KQL; develop dashboards and alerts; implement SOAR workflows; perform platform health checks and tuning; create and maintain documentation (SOPs, runbooks); collaborate with SOC and cloud teams.
Seniority
Senior, hands-on IC