Lead SOC Engineer SIEM CPX

TALENTMATE

Abu Dhabi

On-site

AED 350,000 - 600,000

Full time

8 hours ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

TALENTMATE is seeking a SOC Lead Engineer, SIEM to oversee SIEM architecture design, operations, and licensing across multiple customers. You will guide senior and junior engineers, drive pre-sales estimations, and shape SIEM strategy in a fast-paced SOC.

The role emphasizes leadership, cross-team collaboration, and deep SIEM expertise to ensure robust log collection, data correlation, and reporting across Splunk, Sentinel, LogRhythm, Qradar, and FortiSIEM environments.

Qualifications

  • Over 10 years of SIEM and SOC operations experience.
  • Proven leadership in complex, fast-paced security environments.
  • Experience with SIEM licenses, forecasting and renewals.
  • Strong understanding of cybersecurity principles and incident response.

Responsibilities

  • Lead technical operations and management of SIEM tools across environments.
  • Oversee log collection health and maintenance, incl. CRIBL.
  • Forecast, track SIEM licenses, and coordinate renewals with sales.
  • Develop logging standards for consistency across customers and platforms.
  • Mentor SOC engineers and troubleshoot SIEM service issues.
  • Contribute to pre-sales estimates for SIEM licenses and architectures.

Skills

SIEM leadership
SOC operations
Pre-sales estimation
Mentorship
Communication skills
Cloud security fundamentals

Education

Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or related field

Tools

Splunk
Sentinel
LogRhythm
Qradar
FortiSIEM
CRIBL

Job description

Overview

Job Description The SOC Lead Engineer, SIEM has a vital role in the SOC that encompasses technical leadership, SIEM architecture design, and pre-sales support. This position is responsible for overseeing the management and coordination of SIEM solutions, within the Security Operations Center (SOC). The SOC Lead Engineer will guide senior and junior engineers in day-to-day operations across multiple environments and customers, while also assisting in pre-sales estimations of SIEM licenses. Reporting to the Senior SOC Engineering & Architecture Manager, the SOC Lead Engineer, SIEM is a seasoned professional with over a decade of experience in SIEM operations.

Responsibilities
  • Lead the technical operations and management of SIEM tools including Splunk, Sentinel, LogRhythm,Qradar and FortiSIEM.
  • Oversee the maintenance and functionality of the log collection layer, with a focus on tools like CRIBL.
  • Ensure the health and functionality of SIEM systems through regular checks and maintenance activities.
  • Oversee and manage SIEM licenses, including forecasting, tracking usage, and coordinating with sales for estimations and renewals.
  • Optimize SIEM telemetry to ensure efficient and accurate data collection, correlation, and reporting.
  • Develop and enforce logging standards across all customers, systems and platforms to maintain consistent and reliable log data
  • Provide guidance and mentorship to SOC Engineers in managing and resolving issues related to SIEM services and log management.
  • Participate in pre-sales activities to provide technical expertise and estimation for SIEM licenses and architectures.
  • Collaborate with SOC Engineering & Architecture Manager to develop SIEM architecture strategies and implement initiatives.
  • Assist in continuous process improvements to increase SOC efficiency and effectiveness.
  • Provide regular and accurate reporting on SIEM services, SOC operations, and license management to relevant stakeholders.
Skills
  • Extensive knowledge and hands-on experience with SIEM tools such as Splunk, Sentinel, LogRhythm, FortiSIEM, and log collection components like CRIBL.
  • Proven technical leadership skills in a complex, fast-paced environment.
  • Demonstrable pre-sales experience, particularly in estimating SIEM licenses.
  • Strong understanding of SOC operations, cybersecurity principles, and best practices.
  • Exceptional problem-solving skills and the ability to make decisions under pressure.
  • Excellent mentorship and team development capabilities.
  • High proficiency in written and verbal communication.
Certifications
  • Certified Information Systems Security Professional (CISSP).
  • Certified Information Security Manager (CISM).
  • Splunk Certified Architect or similar SIEM certifications are a must.
  • Cloud-related certifications like AWS Certified Solutions Architect, Google Professional Cloud Architect, or Microsoft Certified: Azure Solutions Architect Expert.
  • Networking certifications such as CCNA or CCNP are advantageous.
Educational Experience
  • Bachelor’s degree in computer science, Information Technology, Cybersecurity, or a related field.
  • A minimum of 10 years of experience in SIEM and SOC operations, with significant experience in SIEM management and architecture.
  • Prior leadership role experience within a SOC or similar cybersecurity environment.
Job Details
  • Role Level: Not Applicable
  • Work Type: Full-Time
  • Country: United Arab Emirates City: Abu Dhabi
  • Company Website: https://cpx.net/
  • Job Function: Cybersecurity
  • Company Industry/ Sector: Other
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Lead SOC Engineer (SIEM) (CPX)
Lead SOC Engineer (SIEM) (CPX)

CPX • Abu Dhabi

On-site
AED 550,000 - 750,000
Senior Engineer – SOC (SIEM)
Senior Engineer – SOC (SIEM)

CPX • Abu Dhabi

On-site
AED 223,000 - 234,000
Senior SIEM Architect & SOC Lead
Senior SIEM Architect & SOC Lead

CPX • Abu Dhabi

On-site
AED 550,000 - 750,000
Senior SOC Engineer: Splunk SIEM & Threat Detection Lead
Senior SOC Engineer: Splunk SIEM & Threat Detection Lead

CPX • Abu Dhabi

On-site
AED 223,000 - 234,000
SIEM Security Analyst SOC L3 Analyst
SIEM Security Analyst SOC L3 Analyst

Epergne Solutions • Dubai

On-site
AED 180,000 - 300,000
SOC L1 Analyst – SIEM Integration (Emirati National Only)
SOC L1 Analyst – SIEM Integration (Emirati National Only)

Talents Of Endearment Careers • Dubai

Remote
AED 180,000 - 300,000
Remote work support
Career development for Emirati talent
SIEM Security Analyst
SIEM Security Analyst

Epergne Solutions • Dubai

On-site
AED 240,000 - 360,000
SOC L1 Analyst – SIEM Integration (Emirati National Only)
SOC L1 Analyst – SIEM Integration (Emirati National Only)

Talents of Endearment • Dubai

On-site
AED 100,000 - 167,000
Career growth potential
Emirati talent development program
Hands-on SIEM exposure
Senior SIEM Architect & SOC Lead (Pre-Sales Focus)
Senior SIEM Architect & SOC Lead (Pre-Sales Focus)

TALENTMATE • Abu Dhabi

On-site
AED 350,000 - 600,000
Cloud Security & SIEM Engineer (SOC)
Cloud Security & SIEM Engineer (SOC)

Client of ITHR 360° CONSULTING FZE • Dubai

On-site
AED 240,000 - 360,000