Administer and manage Google SecOps SIEM, including configuration, tuning, monitoring, and data source integration
Deploy, optimize, and maintain SIEM & SOC Infrastructure. Ensure accurate log collection, correlation, alerting, and system health through regular updates, patch management, and best practices
Integrate and analyze security data, centralize monitoring, correlate logs from various sources, and conduct security incident analysis for threat detection and remediation
Automate security processes using scripting to improve efficiency and response times
Collaborate with SOC teams to ensure effective incident detection and response
Requirements
Strong knowledge of SIEM operations, log analysis, and security event correlation
Experience with Google Cloud Security tools and cloud-based SIEM solutions
Proficiency in scripting languages (Python, Powershell, Bash) for automation
Understanding of network security, firewalls, IDS/IPS, and threat intelligence
Certification (preferred): Google Cloud Security Certification or equivalent