MxDR SOC Engineer
Accenture, recognized as a Great Place To Work®, is a global professional services company that helps leading businesses, governments, and organizations build their digital core, optimize their operations, accelerate revenue growth, and enhance services, creating tangible value at speed and scale.
Would you like to be part of a global team of more than 19,000 cybersecurity professionals? At Accenture, we have an opportunity for you to join our Cybersecurity team.
We are looking for an MxDR SOC Engineer, with a strong focus on SIEM/SOAR platform engineering, to join our Adaptive MxDR service in Málaga, working in a hybrid model.
As part of the team, you will be responsible for implementing, maintaining, troubleshooting, and optimizing the platforms that support our Security Operations Center (SOC)
Working from our EU Regional Delivery Center, you will collaborate closely with SOC analysts, detection engineers, SOAR engineers, and client onboarding teams across a multi-platform environment including Google SecOps, CrowdStrike NG-SIEM, Microsoft Sentinel, and Splunk, supporting more than 50 clients.
You will also contribute to threat detection engineering and the continuous improvement of a tierless, AI-augmented SOC environment.
What will your main responsibilities be?
- Install, configure, implement, troubleshoot, and maintain SIEM/SOAR components, including configuration changes, account management, software upgrades, and patch management.
- Prepare log baseline configuration documentation and identify, analyze, and troubleshoot parsing issues affecting integrated devices and log sources.
- Monitor the health and availability of SIEM components, devices, and log sources, perform health checks, and prepare regular health reporting.
- Onboard and normalize new log sources into SIEM platforms, review data ingestion, and perform ingestion trend analysis.
- Perform whitelisting and detection use-case fine-tuning based on input from SOC operations teams.
- Create, maintain, and continuously improve the SIEM use-case library.
- Drive and support Change Management activities across the security monitoring platforms.
- Provide subject-matter expert support for client SIEM solutions and maintain accurate and up-to-date technical documentation of the environment.
- Support SIEM/SOAR applications and assist with the deployment, configuration, and maintenance of log collectors and log forwarders.
- Support SOAR integrations and content development, collaborating with detection and SOAR engineers on custom integrations and playbook enablement.
- Troubleshoot issues affecting client monitoring solutions and resolve log-source monitoring and ingestion issues reported by SOC operations teams.
- At least 2 year of professional experience implementing, administering, maintaining, or supporting SIEM/SOAR platforms, performing activities such as platform configuration, log-source integration, troubleshooting, maintenance, or platform health monitoring.
- Hands-on experience with at least one of the following technologies: Google SecOps, CrowdStrike NG-SIEM, Microsoft Sentinel, or Splunk.
- Knowledge of log integration, ingestion, parsing, and normalization, including troubleshooting issues related to log collection and processing.
- C1 level of English is required, as you will be working within an international SOC environment, collaborating with clients and technical teams across different countries. You should therefore be comfortable working professionally in English, both written and spoken.
Malaga
Equal Employment Opportunity Statement
All employment decisions shall be made without regard to age, race, creed, color, religion, sex, national origin, ancestry, disability status, veteran status, sexual orientation, gender identity or expression, genetic information, marital status, citizenship status or any other basis as protected by federal, state, or local law.
Job candidates will not be obligated to disclose sealed or expunged records of conviction or arrest as part of the hiring process.
Accenture is committed to providing veteran employment opportunities to our service men and women.
Please read Accenture’s Recruiting and Hiring Statement for more information on how we process your data during the Recruiting and Hiring process.
We work with one shared purpose: to deliver on the promise of technology and human ingenuity. Every day, more than 775,000 of us help our stakeholders continuously reinvent. Together, we drive positive change and deliver value to our clients, partners, shareholders, communities, and each other.
We believe that delivering value requires innovation, and innovation thrives in an inclusive and diverse environment. We actively foster a workplace free from bias, where everyone feels a sense of belonging and is respected and empowered to do their best work.
At Accenture, we see well-being holistically, supporting our people’s physical, mental, and financial health. We also provide opportunities to keep skills relevant through certifications, learning, and diverse work experiences. We’re proud to be consistently recognized as one of the World’s Best Workplaces™.
Join Accenture to work at the heart of change. Visit us at www.accenture.com.