SIEM Platform Engineer (SIEM & SOAR)
Work Setup: Hybrid - Cubao, Quezon City
Work Shift: Shifting
Salary: Confidential – To be discussed during the job offer
Job Overview
We are looking for an experienced SIEM Platform Engineer (SIEM & SOAR) to design, implement, optimize, and support security monitoring and automation platforms.
The ideal candidate will have hands-on experience with major SIEM and SOAR technologies, strong scripting skills, and a solid understanding of security operations, threat detection, and incident response.
Key Responsibilities
SIEM Engineering
- Design, implement, and optimize SIEM platforms such as Google SecOps, Splunk, QRadar, Microsoft Sentinel, or Elastic.
- Develop correlation rules, dashboards, alerts, and reports to improve threat visibility.
- Integrate security data from networks, endpoints, cloud environments, and applications.
- Improve data quality, parsing, and normalization to enhance detection accuracy.
SOAR & Security Automation
- Build and maintain automated response workflows using SOAR platforms such as Cortex XSOAR, Splunk SOAR, IBM Resilient, or Google SecOps SOAR.
- Develop playbooks for alert triage, incident response, and threat intelligence enrichment.
- Streamline SOC processes through automation and security tool integrations.
Security Operations Support
- Support incident response activities through actionable detections and automated workflows.
- Investigate recurring security issues and implement long-term engineering solutions.
- Partner with compliance, audit, and IT teams to strengthen security controls and processes.
Required Skills & Qualifications
- Minimum 3 years of experience in SIEM and/or SOAR engineering or administration.
- Experience working in a SOC environment is preferred.
- Hands-on experience with at least one major SIEM platform such as Google SecOps, Splunk, Microsoft Sentinel, QRadar, ArcSight, or similar.
- Experience developing SOAR playbooks and security automations.
- Scripting experience in Python, PowerShell, or Bash.
- Knowledge of security frameworks such as MITRE ATT&CK, NIST, or CIS Controls.
- Familiarity with EDR/XDR, IDS/IPS, firewalls, threat intelligence platforms, and cloud security technologies.
- Strong analytical, troubleshooting, and problem-solving skills.
Work Arrangement
Location: Cubao, Quezon City
Setup: Hybrid
Schedule: Shifting schedule
Eligibility
Open to applicants who are currently based in the Philippines and already have the right to live and work in the country.
Benefits & Perks
- Competitive salary package
- Performance bonus and 13th Month Pay
- Day 1 HMO and Life Insurance coverage
- Flexible working arrangements*
- Company-sponsored training, upskilling, and certifications
- Expanded maternity and paternity benefits*
- Employee Stock Purchase Plan
- Inclusive and collaborative work culture
Recruitment Process
- Screening with CV Reviewer
- Endorsement for validation and further CV screening through Workday, along with the HRI Toolkit, FCV, and CV
- Client review