Security Engineer (SIEM & SOAR)

Metacom Careers

Quezon City

On-site

PHP 600,000 - 900,000

Full time

11 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Metacom Careers is seeking an experienced SIEM/SOAR engineer to design, implement, and optimize security operations across cloud, on‑prem, and hybrid environments. You will develop correlations, dashboards, and automations, and collaborate with SOC analysts to improve threat visibility and drive faster investigations.

The role requires hands‑on SIEM/SOAR work, SOC experience, and a relevant degree. You will work with familiar platforms like Splunk, Microsoft Sentinel, QRadar, and Cortex XSOAR in

Qualifications

  • 3–8 years of cybersecurity experience, with strong hands‑on experience in SIEM and/or SOAR engineering.
  • Experience working in a Security Operations Center (SOC) environment is highly preferred.
  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.

Responsibilities

  • Design, implement, and optimize SIEM solutions (Splunk, Microsoft Sentinel, Google SecOps, QRadar, ArcSight).
  • Develop and enhance correlation rules, dashboards, alerts, and reports to improve threat visibility.
  • Integrate security telemetry from cloud, endpoints, networks, and applications and improve data ingestion and parsing.
  • Build and maintain automated incident response playbooks using Cortex XSOAR, Splunk SOAR, or IBM Resilient.
  • Automate alert triage, threat intelligence enrichment, and response actions; collaborate with SOC analysts and threat hunters to streamline investigations.
  • Integrate SOAR platforms with ticketing systems, threat feeds, and security controls.
  • Provide incident response support through actionable detections and automation-driven insights; perform root cause analysis and collaborate with compliance.

Skills

SIEM engineering
SOAR engineering
SOC experience
Python scripting
PowerShell scripting

Education

Bachelor's degree in CS/IT/Cybersecurity

Tools

Splunk
Microsoft Sentinel
QRadar
ArcSight
Google SecOps
Cortex XSOAR
IBM Resilient
MITRE ATT&CK

Job description

What You\'ll Do
SIEM Engineering
  • Design, implement, and optimize SIEM solutions such as Splunk, Microsoft Sentinel, Google

SecOps, QRadar, and Elastic.

  • Develop and enhance correlation rules, dashboards, alerts, and reports to improve threat visibility.
  • Integrate security telemetry from cloud, endpoints, networks, and applications.
  • Improve data ingestion, normalization, and parsing to increase detection accuracy and reduce

noise.

SOAR & Security Automation
  • Build and maintain automated incident response playbooks using platforms such as Cortex XSOAR,

Splunk SOAR, or IBM Resilient.

  • Automate alert triage, threat intelligence enrichment, and response actions.
  • Partner with SOC analysts and threat hunters to streamline investigations and reduce response

times.

  • Integrate SOAR platforms with ticketing systems, threat feeds, and security controls.
Security Operations Support
  • Support incident response through actionable detections and automation-driven insights.
  • Perform root cause analysis and develop engineering solutions to address recurring threats.
  • Collaborate with compliance and audit teams to strengthen security controls.
  • Create documentation and provide enablement sessions for SOC and IT teams.
Required Experience
What We\'re Looking For
  • 3–8 years of cybersecurity experience, with strong hands‑on experience in SIEM and/or SOAR engineering.
  • Experience working in a Security Operations Center (SOC) environment is highly preferred.
  • Bachelor\'s degree in Computer Science, Information Technology, Cybersecurity, or a related field.
Technical Skills
  • Hands‑on experience with at least one SIEM platform:
  • Splunk
  • Microsoft Sentinel
  • Google SecOps
  • QRadar
  • ArcSight
  • Experience developing SOAR playbooks, workflows, and security automations.
  • Scripting and automation skills using Python, PowerShell, or Bash.
  • Knowledge of MITRE ATT&CK, NIST, CIS Controls, or similar cybersecurity frameworks.
  • Familiarity with EDR/XDR, IDS/IPS, firewall technologies, and cloud security (AWS, Azure, or GCP).
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Security Engineer (SIEM/SOAR)
Cyber Security Engineer (SIEM/SOAR)

Create Synergies Inc. • Mandaluyong

On-site
PHP 1,200,000 - 1,800,000
Cyber Security Engineer
Cyber Security Engineer

Our Clients • Mandaluyong

On-site
PHP 800,000 - 1,800,000
Security Engineer
Security Engineer

JetSon Manpower Agency • Manila

Hybrid
Security Engineer: SIEM & SOAR Automation Expert
Security Engineer: SIEM & SOAR Automation Expert

Metacom Careers • Quezon City

On-site
PHP 600,000 - 900,000
Cyber Security Engineer — SIEM & SOAR Expert
Cyber Security Engineer — SIEM & SOAR Expert

Our Clients • Mandaluyong

On-site
PHP 800,000 - 1,800,000
SIEM Platform Engineer (SIEM & SOAR)
SIEM Platform Engineer (SIEM & SOAR)

Accenture in the Philippines • Philippines

Hybrid
PHP 550,000 - 900,000
Day 1 HMO and Life Insurance coverage
13th Month Pay
Flexible working arrangements
+2
Security Engineer - Support
Security Engineer - Support

Thrive • Morong

On-site
PHP 400,000 - 700,000
Security Engineer – SIEM / SOC (Cybersecurity)
Security Engineer – SIEM / SOC (Cybersecurity)

Gratitude Philippines • Quezon

On-site
PHP 1,000,000 - 1,800,000
Senior SIEM & SOAR Security Engineer
Senior SIEM & SOAR Security Engineer

Create Synergies Inc. • Mandaluyong

On-site
PHP 1,200,000 - 1,800,000
Security Analyst / Network Security Analyst
Security Analyst / Network Security Analyst

RippedBoxStation • Philippines

On-site
PHP 260,000 - 420,000