Independent Contractor QRadar QROC Specialist
Lumifi Cyber
Scottsdale (AZ)
Remote
USD 80,000 - 100,000
Full time
Boost your interview chances
Create a job specific, tailored resume for higher success rate.
Job summary
Lumifi Cyber is seeking an Independent Contractor with expertise in QRadar/QROC to enhance threat detection mechanisms. The role involves reviewing existing libraries, translating playbooks, and ensuring effective automation with Palo Alto solutions for a 3 to 6-month project with potential extensions.
Qualifications
- 3+ years’ experience in designing, building, and testing playbooks.
- 3+ years' experience in threat detections and tuning.
- US Based.
Responsibilities
- Review current QRadar threat detection library.
- Translate Threat Detection Library in QRadar to Palo Alto xSIAM.
- Migrate automation playbooks from xSOAR to xSIAM.
Skills
Proficient in QRadar SIEM/QROC
Threat detections
Playbooks design
Self-motivated
Independent Contractor – QRadar/QROC SpecialistCompany: Lumifi Cyber Inc.Location: Scottsdale AZ strongly preferred, remote acceptedAbout the Project, Summary:We are seeking an experienced independent contractor to with deep knowledge around in threat detection and automation in QRadar/QROC. Having additional knowledge and experience in other Palo Alto is highly recommended. The Independent Contractors goal is to translate a threat detection library utilized in QRadar, verify the concept is covered in a default rule in Palo SIEM or covered by Lumifi threat detection, and if it is not then to build the new rule in Palo Alto Cortex XQL. Secondary there will be a focus on playbooks, to convert xSOAR to Palo Alto xSIAM. These playbooks will contain enrichment from various log sources (Azure Entra ID, O365, Firewall etc.)Length of Project: 3 to 6 months with possible extensionResponsibilities:Stage 1: 8 weeks- Review of current QRadar threat detection library to verify the concept is covered in default Palo Alto SIEM or verify it is covered in Lumifi Threat Detection Library.
- Partner with Lumifi Threat Detection team to ensure you have all the right information to verify
Stage 2: 8 weeks- Translate Threat Detection Library in QRadar to Palo Alto xSIAM utilizing XQL.
- Migrate and translate automation playbooks from xSOAR to xSIAM
All content and playbooks will need to be verified by Jordan Weiner.Required Skills and Qualifications:- Proficient in QRadar SIEM/QROC
- 3+ years’ experience in designing, building, and testing playbooks
- 3+ years' experience in threat detections and tuning
- Ability to work independently
- Self-motivated and results-oriented
- US Based
- English proficient
To become an Independent Contractor the following are required:- Submit a resume with your background and qualifications for the role and have a call with the manager of Product Development regarding the role.
- Complete and pass a background check via Chekr
- Sign an Independent Contractor Agreement
- Complete a W9 form