CyberCX, part of Accenture, protects and defends our customers and communities by providing the most comprehensive range of cyber security professional services in the region.
About Accenture
Accenture is a global professional services company with leading capabilities in digital, cloud and security. Find out more about us at www.accenture.com .
About The Role
This role sits within our APAC SecOps Modernisation team, delivering the hands-on technical work behind our customers' Agentic SOC and AI-driven security transformation. As the primary delivery professional between Senior Analyst and Senior Manager level, you'll own customer engagements end-to-end - running SOC maturity assessments, leading detection engineering, managing log optimisation programmes, and driving SIEM/SOAR migrations to completion. It's a technically hands-on role: you'll be designing detection rules and reviewing log pipelines one day and managing customer stakeholders and milestone delivery the next. We're looking for someone with a proven SOC engineering background, consulting maturity, and the ability to translate technical delivery into clear business outcomes.
Key Responsibilities
- Lead end-to-end SOC maturity assessments - discovery workshops, benchmarking against MITRE ATT&CK/NIST CSF/CIS Controls, and prioritised remediation roadmaps for technical and executive audiences
- Own detection engineering delivery, from gap analysis and threat-informed detection design through to rule tuning and reusable content for the APAC practice
- Manage log ingestion and data quality programmes, including source audits, pipeline deployments (e.g. Bindplane), and compliance-aligned retention and cost policies
- Run SIEM/SOAR migration engagements end-to-end using Accenture's Modernisation Factory methodology, from future-state design through build and ongoing optimisation
- Act as primary delivery contact for customer engagements, managing stakeholders, escalations, and milestone reporting
- Direct and mentor Senior Analysts, quality-assuring their work and contributing to the practice's delivery methodologies and playbooks
Skills & Experience
- 5-8 years in SOC operations, security engineering, or detection engineering, including 2-3 years in a delivery-focused or senior practitioner role
- Hands-on detection engineering and tuning experience within a SIEM (Google SecOps/Chronicle, Splunk, Microsoft Sentinel, CrowdStrike Next-Gen SIEM, or QRadar), applying the MITRE ATT&CK framework in practice
- Hands-on SOAR experience - playbook design, alert triage and enrichment, case management, and automation logic
- Working knowledge of log ingestion and pipeline tooling (Bindplane, Cribl, Logstash or equivalent), including normalisation, fidelity, and cloud security telemetry (AWS CloudTrail, Azure Monitor, GCP Audit Logs)
- Proven ability to run security engagements end-to-end - from structured assessment and scoping through to findings delivery, implementation handoff, and SIEM/SOAR migration
- Strong stakeholder management and communication skills - facilitating customer workshops, translating technical findings into executive-ready reports, and handling milestone tracking and escalations
Benefits of working at CyberCX, Part of Accenture:
- 18 weeks paid parental leave
- Long & short-term career break opportunities
- Structured career development program
- Local and international career opportunities.
- Certified as a Family Inclusive Workplace
- Flexible Work Arrangements - centered around Accenture's Truly Human ethos and our commitment to supporting the health and wellbeing of our people.
- We are proud to be in the top 3 of last year's Diversity & Inclusion Index!