Enable job alerts via email!

Independent Contractor QRadar QROC Specialist

Lumifi Cyber

Scottsdale (AZ)

Remote

USD 80,000 - 100,000

Full time

4 days ago
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

Lumifi Cyber is seeking an Independent Contractor with expertise in QRadar/QROC to enhance threat detection mechanisms. The role involves reviewing existing libraries, translating playbooks, and ensuring effective automation with Palo Alto solutions for a 3 to 6-month project with potential extensions.

Qualifications

  • 3+ years’ experience in designing, building, and testing playbooks.
  • 3+ years' experience in threat detections and tuning.
  • US Based.

Responsibilities

  • Review current QRadar threat detection library.
  • Translate Threat Detection Library in QRadar to Palo Alto xSIAM.
  • Migrate automation playbooks from xSOAR to xSIAM.

Skills

Proficient in QRadar SIEM/QROC
Threat detections
Playbooks design
Self-motivated

Job description

Independent Contractor – QRadar/QROC Specialist
Company: Lumifi Cyber Inc.
Location: Scottsdale AZ strongly preferred, remote accepted

About the Project, Summary:
We are seeking an experienced independent contractor to with deep knowledge around in threat detection and automation in QRadar/QROC. Having additional knowledge and experience in other Palo Alto is highly recommended. The Independent Contractors goal is to translate a threat detection library utilized in QRadar, verify the concept is covered in a default rule in Palo SIEM or covered by Lumifi threat detection, and if it is not then to build the new rule in Palo Alto Cortex XQL.
Secondary there will be a focus on playbooks, to convert xSOAR to Palo Alto xSIAM. These playbooks will contain enrichment from various log sources (Azure Entra ID, O365, Firewall etc.)

Length of Project: 3 to 6 months with possible extension

Responsibilities:
Stage 1: 8 weeks
  • Review of current QRadar threat detection library to verify the concept is covered in default Palo Alto SIEM or verify it is covered in Lumifi Threat Detection Library.
  • Partner with Lumifi Threat Detection team to ensure you have all the right information to verify
Stage 2: 8 weeks
  • Translate Threat Detection Library in QRadar to Palo Alto xSIAM utilizing XQL.
  • Migrate and translate automation playbooks from xSOAR to xSIAM
All content and playbooks will need to be verified by Jordan Weiner.

Required Skills and Qualifications:
  • Proficient in QRadar SIEM/QROC
  • 3+ years’ experience in designing, building, and testing playbooks
  • 3+ years' experience in threat detections and tuning
  • Ability to work independently
  • Self-motivated and results-oriented
  • US Based
  • English proficient

To become an Independent Contractor the following are required:
  • Submit a resume with your background and qualifications for the role and have a call with the manager of Product Development regarding the role.
  • Complete and pass a background check via Chekr
  • Sign an Independent Contractor Agreement
  • Complete a W9 form
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.