Senior SIEM Engineer

malomatia

Doha

On-site

QAR 180,000 - 360,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Malomatia seeks an experienced SIEM Engineer to design, implement, and manage SIEM solutions across the enterprise. You will optimize threat detection, log management, and incident response while collaborating with stakeholders to strengthen security posture.

The role requires hands-on expertise with Splunk, Microsoft Sentinel, and similar platforms, plus scripting for data onboarding. You will mentor junior engineers and contribute to SOC improvements and automation initiatives.

Qualifications

  • Bachelor's degree in Engineering, Economics, Computer Science, or a related discipline.
  • Extensive experience designing and implementing SIEM solutions.
  • Strong knowledge of SIEM integrations with AV, AAA, Firewall, DLP, IDS/IPS.

Responsibilities

  • Design, review, implement, test, maintain, and troubleshoot SIEM deployments and infrastructures.
  • Manage dependencies for SIEM projects including connectivity, storage, licenses, and equipment.
  • Implement changes to SIEM infrastructure and perform health checks; produce detailed reports on effectiveness.
  • Develop integrations, connectors, and parsers for new event sources.
  • Create rules and reports for compliance and audit requirements; document SIEM infrastructure and connectors.

Education

Bachelor's degree

Tools

Splunk
Microsoft Sentinel
Google SecOps
Python
Regex
SPL
KQL

Job description

This role is responsible for designing, implementing, and managing SIEM solutions to enhance security monitoring, threat detection, and incident response capabilities. The role involves having strong expertise in SIEM platforms such as Splunk, Microsoft Sentinel, or similar technologies, with experience in security integrations, log management, detection engineering, and SOC operations. The role will focus on optimizing SIEM capabilities, supporting security improvements, and collaborating with stakeholders to strengthen overall security posture.

ROLES & RESPONSIBILITIES:
  • Designing, reviewing, implementing, testing, maintaining, and troubleshooting SIEM deployments and infrastructures.
  • Responsible for managing arrangements of dependencies and pre-requisites for SIEM projects e.g., connectivity, storage, licenses, and other equipment).
  • Responsible for implementing changes to the SIEM infrastructure (including patches, updates, and upgrades) and performing SIEM Health Checks; and for creating technically relevant detailed reports to track solution effectiveness and performance.
  • Manage SIEM Appliance or Virtual Appliance (including OS and SIEM software).
  • Configure backups, verify custom reports, manage log source groups, and validate log sources.
  • Add /Remove log sources. Troubleshoot issues with log sources or systems with system owners and vendors, and report system defects and product enhancement / feature requests with vendors as needed.
  • Be responsible for development of integrations, connectors, and parsers for new event sources
  • Implementing security monitoring rules in a SIEM tooling, according to the business needs
  • Assist with fully optimizing the SIEM system capabilities and identifying opportunities for automation to improve SIEM effectiveness and efficiency.
  • Create rules and reports for compliance and audit requirements and create and manage Watch Lists for current threats.
  • Create engineering and security documentation for internal and external needs including high level and low-level design of SIEM infrastructure, as-built documentation and documentation for custom connectors/parsers and integrations.
  • Assist with designing and documenting work processes within the SOC.
  • Responsible for mentoring and training of Junior SIEM Engineers.
  • Perform other duties as assigned.
JOB SPECIFICATIONS:
Education:
  • Bachelor's degree in Engineering, Economics, Computer Science, or a related discipline.
Experience:
  • Minimum 05 years in Security Engineering with at least 03 years' experience managing SIEM solutions
Required Skills:
  • Proven experience of designing and implementing SIEM solutions
  • Proven experience in integrating security tools such as AV, AAA, Firewall, DLP, IDS/IPS into SIEM solution
  • Proven experience of applying SIEM monitoring with cloud systems (e.g., AWS CloudTrail, AWS GuardDuty, AWS VPC Flow Logs, Azure Activity Log, Azure AD/Entra ID Sign-in Logs, Microsoft Defender for Cloud, GCP Cloud Audit Logs, GCP VPC Flow Logs, OCI Audit Logs, OCI Cloud Guard)
  • Proven experience of SIEM technologies (e.g., Splunk, Microsoft Sentinel, Google SecOps, etc.)
  • Demonstrated understanding of Information Security regulations, frameworks, requirements and how to map a client’s security needs to a SIEM solution required.
  • Solid understanding of Information Security and Networking required.
  • Proven experience of scripting/query languages relevant to SIEM data onboarding (e.g., Python, Regex, SPL, KQL)
  • Outstanding time management and organizational skills required.
  • Ability to work On-Call (nights or weekends) as required.
  • Proven capability to deliver to a high standard within deadlines.
  • Strong organizational skills and an ability prioritize tasks from multiple stakeholders.
  • Excellent written and verbal communication skills required.
  • Ability to relay complex technical subject matters to non-technical stakeholders.
  • Demonstrable analytical and technical aptitude with focus on identifying and alleviating the root cause of a problem.
  • Proven ability to thrive and respond to frequent demands of multiple constituents, both internal and external, in a high demand, customer-centric environment
  • Familiarity and experience working within the region
  • Experience working as part of a MSSP or MDR provider
  • Experience with deploying and administering multiple SIEM technologies
  • Certification for Managing and Administration Splunk, Microsoft Sentinel, Google Sec Ops or any other SIEM relevant
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior SIEM Engineer & Threat Detection Lead
Senior SIEM Engineer & Threat Detection Lead

malomatia • Doha

On-site
QAR 180,000 - 360,000
Security Infrastructure Engineer - Google SecOps
Security Infrastructure Engineer - Google SecOps

Meeza Qstp LLC • Qatar

On-site
QAR 180,000 - 300,000
Cybersecurity Detection Engineer
Cybersecurity Detection Engineer

Employment • Doha

On-site
QAR 180,000 - 240,000
Senior SOC Engineer
Senior SOC Engineer

Employment • Doha

On-site
QAR 250,000 - 350,000
Senior Cybersecurity Consultant
Senior Cybersecurity Consultant

Employment • Doha

On-site
QAR 437,000 - 655,000
SOC Engineer - Up to 20k QAR
SOC Engineer - Up to 20k QAR

Edison Smart® • Doha

On-site
QAR 60,000 - 120,000
Senior SOC Engineer
Senior SOC Engineer

Experience • Doha

On-site
QAR 240,000 - 420,000
None
Security Infrastructure Engineer - Sentinel at Qatar Advanced Technology
Security Infrastructure Engineer - Sentinel at Qatar Advanced Technology

Qatar Advanced Technology • Qatar

On-site
QAR 112,000 - 145,000
Senior SOAR Engineer
Senior SOAR Engineer

malomatia • Doha

On-site
QAR 200,000 - 350,000
Senior SOC Engineer
Senior SOC Engineer

Edison Smart® • Doha

On-site
QAR 201,000 - 223,000