Ingeniero/a - Especialista SIEM & SOAR Microsoft Sentinel, Crowdstrike, XSIAM y Splunk
Core
Senior cybersecurity professional leading Threat Engineering, SIEM/SOAR automation, and log management within a Security Operations Center (SOC) to optimize incident response and detection.
Role type
Senior IC Security Operations Engineer (SIEM/SOAR/Threat Engineering)
Builds
Automated security playbooks, SIEM dashboards, threat intelligence integrations, and incident response workflows
Domain
Cybersecurity / SIEM / SOAR / Threat Engineering
Deliverable
production ML models | product features | dashboards & analysis | client delivery
Required skills
SIEM administration, SOAR playbook development, threat engineering, incident investigation, log management, technical analysis, architecture documentation
Preferred skills
EDR tools, incident response, digital forensics, team leadership, mentoring, advanced scripting (Python/PowerShell)
Technologies
Microsoft Sentinel, CrowdStrike, XSIAM, Splunk
Responsibilities
Develop and optimize SIEM/SOAR automation playbooks; design and maintain SIEM use cases and dashboards; lead Threat Engineering initiatives; manage threat intelligence application; document architecture and processes; mentor technical teams
Seniority
Senior, hands-on IC with strategic responsibilities