An application made for this job — a tailored resume and cover letter that speak straight to the posting.
Accenture is seeking a skilled SIEM/SOAR engineer to design, implement, and optimize enterprise security platforms. You will develop correlation rules, dashboards, and automated response playbooks while collaborating with SOC analysts and security teams to strengthen threat detection across networks, endpoints, and cloud environments.
The role emphasizes hands-on work with Google SecOps, Splunk, QRadar, and other SIEM/SOAR tools, in a hybrid setup at our Cubao office with shifting schedules as
Join Accenture's Cybersecurity team and help organizations strengthen their defenses through advanced threat detection, security automation, and incident response. You'll work with leading SIEM and SOAR technologies while partnering with SOC analysts and security teams to build scalable, enterprise-grade security solutions.
Design, implement, and optimize SIEM platforms such as Google SecOps, Splunk, QRadar, Microsoft Sentinel, or Elastic.
Develop correlation rules, dashboards, alerts, and reports to improve threat visibility.
Integrate security data from networks, endpoints, cloud environments, and applications.
Improve data quality, parsing, and normalization to enhance detection accuracy.
Build and maintain automated response workflows using SOAR platforms such as Cortex XSOAR, Splunk SOAR, IBM Resilient, or Google SecOps SOAR.
Develop playbooks for alert triage, incident response, and threat intelligence enrichment.
Streamline SOC processes through automation and tool integrations.
Lead proactive threat hunts to uncover sophisticated threats, adversary behaviors, and indicators of compromise that bypass traditional detection mechanisms.
Develop and test hunt hypotheses using SIEM, EDR/XDR, threat intelligence, and cloud security telemetry across user, endpoint, network, and cloud activity.
Create advanced analytics and detection use cases aligned with MITRE ATT&CK techniques and threat actor tactics, techniques, and procedures.
Investigate anomalous and recurring security activity, support incident response with actionable detections, and implement sustainable engineering solutions.
Convert threat-hunting outcomes into SIEM correlation rules, dashboards, detection content, and automated response workflows.
Minimum of 3 years of experience in SIEM and/or SOAR engineering or administration.
Experience working in a SOC environment is preferred.
Hands-on experience with at least one major SIEM platform (Google SecOps, Splunk, Sentinel, QRadar, ArcSight, etc.).
Experience developing SOAR playbooks and security automations.
Scripting experience in Python, PowerShell, or Bash.
Knowledge of security frameworks such as MITRE ATT&CK, NIST, or CIS Controls.
Familiarity with EDR/XDR, IDS/IPS, firewalls, threat intelligence platforms, and cloud security technologies.
Hybrid work arrangement
Cubao office location
Amenable to possible shifting schedules
At Accenture, you'll work on impactful projects using emerging technologies while collaborating with some of the industry's top cybersecurity professionals.
Competitive salary package
Performance bonus and 13th Month Pay
Day 1 HMO and Life Insurance coverage
Flexible working arrangements*
Company-sponsored training, upskilling, and certifications
Expanded maternity and paternity benefits*
Employee Stock Purchase Plan
Inclusive and collaborative work culture
*Terms and conditions apply.
At Accenture, we celebrate diversity and are committed to creating an inclusive environment where everyone can thrive. We welcome applications from all qualified candidates and provide reasonable accommodations throughout the recruitment process.
In line with Accenture's identity verification process, please ensure your resume/CV includes a recent photo.
If you're an experienced Google SecOps Engineer, we'd love to hear from you.