SIEM Admin

Innovative Solutions

Riyadh

On-site

SAR 180,000 - 300,000

Full time

3 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Innovative Solutions is seeking an experienced SIEM Administrator to design, deploy, and maintain our SIEM platform. You will onboard log sources, build custom rules, and ensure SOC tools run seamlessly to protect enterprise assets.

The role requires strong platform architecture, threat modeling, and data governance experience across Windows and Unix environments, with hands-on expertise in Splunk, QRadar, LogRhythm, and Microsoft Sentinel.

Qualifications

  • Bachelor's degree in a related field or equivalent professional experience.

Responsibilities

  • Design, deploy, patch, and upgrade the SIEM platform and agents.
  • Collaborate with business units to map network hierarchies and classify log sources.
  • Build custom API connectors and parsers for non-standard log sources.
  • Develop robust use cases and SIEM detection rules; implement MITRE ATT&CK modeling.
  • Troubleshoot day-to-day issues across log sources, collectors, and SOC tools.
  • Manage data archiving, backups, retention, and purging configurations for compliance.
  • Raise and manage change tickets for administrative tasks and prepare assessment reports.
  • Leverage Windows and Unix admin skills to support infrastructure health.

Skills

Platform architecture
Log onboarding
Custom development
Threat modeling
Troubleshooting
Data governance
Change management
System administration
MITRE ATT&CK modeling

Education

Bachelor's degree in related field

Tools

Splunk
QRadar
LogRhythm
Microsoft Sentinel
Palo Alto XSIAM

Job description

Company Overview

Innovative Solutions (IS) is a leading Cybersecurity company established in 2003, with its headquarters in Riyadh and additional offices in Al Khobar, Jeddah, Dubai, and Abu Dhabi. We specialize in delivering Comprehensive Cybersecurity Solutions and Services encompassing Advisory Services, Technical Assurance, Solution Deployment, Professional Services, and Managed Security Services.

Our mission is "Delivering secure and intelligent digital services that empower organizations"

About the Role

A skilled SIEM Administrator to design, deploy, and maintain our (SIEM) platform. In this role, you will be the backbone of our log management and threat detection infrastructure. You will work closely with various business units to onboard log sources, build custom rules, and ensure our security operations tools run seamlessly to protect enterprise assets.

Key Responsibilities
  • Platform Architecture: Design, deploy, patch, and upgrade the SIEM platform and associated agents.
  • Log Onboarding & Integration: Collaborate with business units to map network hierarchies, establish building blocks, and classify log sources.
  • Custom Development: Build custom API connectors and parsers for non-standard log sources lacking out-of-the-box vendor support.
  • Threat Detection & Modeling: Develop robust use cases, create custom SIEM detection rules, and implement MITRE ATT&CK modeling.
  • Operations & Troubleshooting: Troubleshoot day-to-day issues across log sources, collectors, agents, and other SOC tools.
  • Data Governance: Manage data archiving, backups, retention, and purging configurations to align with compliance standards, restoring data as needed.
  • Change & Audit Management: Raise and manage change tickets for administrative tasks (e.g., patch upgrades, log onboarding) and prepare assessment reports for existing platforms.
  • System Administration: Leverage foundational Windows and Unix administration skills to support infrastructure health.
  • Education: Bachelor’s degree in a related field or equivalent demonstrated professional experience.
  • Core Technical Knowledge: Strong understanding of cybersecurity and IT disciplines, including networking, operating systems, authentication protocols, enterprise architecture, and incident response.
  • Enterprise Technology: Familiarity with common enterprise tools and logging capabilities (firewalls, Active Directory, EDR/antivirus, IDS/IPS, proxies, and cloud platforms). SOAR Knowledge ‘prefer
  • SIEM Expertise: Understanding of log aggregation or correlation technologies such as Splunk, QRadar, LogRhythm, Microsoft Sentinel, or Palo Alto XSIAM.
  • Security Principles: Deep knowledge of risk management processes, CIA triad principles, cryptography, IAM, access controls, and network security methodologies.
  • Hardening: Proven experience in system administration, network, and OS hardening techniques.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

MSS Senior Lead
MSS Senior Lead

cyberani solutions • Riyadh

On-site
SIEM Architect & Threat Detection Lead
SIEM Architect & Threat Detection Lead

Innovative Solutions • Riyadh

On-site
SAR 180,000 - 300,000
Sr. Splunk Engineer-KSA
Sr. Splunk Engineer-KSA

Itsecurityct • Saudi Arabia

On-site
SAR 120,000 - 150,000
Senior IT Security Operation- Saudi National- Riyadh, KSA
Senior IT Security Operation- Saudi National- Riyadh, KSA

DS DeepSource • Riyadh

On-site
SAR 200,000 - 320,000
MSS Lead Engineer
MSS Lead Engineer

cyberani solutions • Riyadh

On-site
SAR 180,000 - 300,000
SOC Manager
SOC Manager

Managed Services • Riyadh

On-site
SAR 240,000 - 360,000
SOC Manager
SOC Manager

Managed • Riyadh

On-site
SAR 240,000 - 360,000
SIEM MSS Lead Engineer: Log Onboarding & Ingestion
SIEM MSS Lead Engineer: Log Onboarding & Ingestion

cyberani solutions • Riyadh

On-site
SAR 180,000 - 300,000
Information Security Engineer
Information Security Engineer

KK People • Riyadh

On-site
Competitive remuneration and benefits package
Access to cutting-edge security technologies
Senior Cybersecurity Specialist (Splunk Architect)
Senior Cybersecurity Specialist (Splunk Architect)

Help AG, an e& enterprise company • Riyadh

On-site
SAR 40,000 - 70,000
Health insurance
Career progression and growth
Employee engagement activities