Ingénieur SOC
Core
Maintaining and evolving detection configurations (rules and parsers) for IBM QRadar SIEM and supporting SOC operators during attack simulation campaigns.
Role type
SOC Engineer (SIEM maintenance & incident analysis)
Builds
Detection rules, parsers, incident inventories, and non-regression test reports
Domain
Cybersecurity / Threat Detection
Deliverable
production ML models | product features | dashboards & analysis | client delivery
Required skills
IBM QRadar expertise, SIEM configuration, incident analysis, log analysis, rule development, non-regression testing, false positive identification
Preferred skills
Attack simulation support, procedural documentation, stakeholder reporting
Technologies
IBM QRadar, SIEM
Responsibilities
Analyze and contribute to detection configuration fixes, update incident contextualization inventory, write fix application procedures, perform non-regression tests, investigate events from attack simulations, support SOC operators, identify and classify false positives, report to build teams
Seniority
Mid-level, hands-on IC