This job is no longer available. Continue your job search here.
Security Information & Event Management (SIEM) Platform Operations
Quezon City
Job No. r00214254
Full-time - Hybrid
Job Description
Ready to join Accenture’s team of empowered people? We’re looking for candidates with the following skills and experience for this role. Do you fit the profile? If you do, we’d love to hear from you!
In adherence to Accenture’s process of Identity Verification, your resume or CV must include your photo to ensure the accuracy of your application.
Who we are:
Accenture in the Philippines is a pioneer in Accenture’s global delivery network. Over the past 30 years, we have expanded our capabilities to become a powerhouse company providing end-to-end technology and business services. As part of Accenture’s global footprint in over 120 countries, covering 40-plus industries, we have been working with the biggest companies in the country and around the globe.
Innovation, a constant at Accenture, enables us to find new ways to stay ahead of our clients’ challenges. Our inclusive, diverse, and strong culture of equality helps us constantly drive innovation in the workplace. By combining our industry expertise and the deep skills of our people with the latest technologies and our uncompromising high-performance standards, we help organizations grow their business and succeed in the digital age.
What’s in it for you?
At Accenture you will work on meaningful and innovative projects, powered by the latest technologies. You’ll be immersed in industry best practices such as event-driven architectures and domain-driven designs. Accenture will continually invest in your learning and growth. You'll work with Accenture’s certified practitioners, and Accenture will support you in growing your own tech stack and certifications.
Summary:
As a Security Engineer, you will be responsible for designing, building, and protecting enterprise systems, applications, data, assets, and people.
Your typical day will involve applying security skills to safeguard information, infrastructures, applications, and business processes against cyber threats using Security Information & Event Management (SIEM) Platform Operations.
Roles & Responsibilities:
Lead the implementation and maintenance of SIEM platforms to able to detect and respond to security incidents
Collaborate with cross-functional teams to develop and implement security usecases, playbooks, and integrations
Stay updated with the latest advancements in security technologies and best practices to ensure the security of enterprise systems and data
Create/Modify SIEM/SOAR usecases, playbooks, dashboards and parsers
Lead SIEM/SOAR build/implementation activities
- Provide recommendations and optimizations on SIEM and SOAR technologies to drive efficiencies and increase output
Open Positions:
Security Delivery Specialist/Team Lead
Security Delivery Associate Manager
Security Delivery Manager
Qualifications
Professional & Technical Skills:
Experience in Security Response and Monitoring Implemented any SIEM solutions;
Hands on experience in port scan and vulnerability scanning techniques;
Strong ArcSight ESM and Splunk skills from end tend understanding of the technology;
Strong understanding of Security orchestration, automation and response technology;
Implemented multiple SOAR playbooks/projects;
Strong understanding of Correlation, Normalization, Parsing, and syslog formats and events in general;
Strong understanding of SIEM and the required infrastructure;
Strong understanding of SIEM concepts and best practices;
Should have architect level knowledge in Information Security domain;
Should have design, build or consulting experience on any of the leading SMR tools;
Knowledge on different standards and frameworks CIS, COBIT, IS17799 27001, NIST SP800-53, ITIL v2, HIPAA, FFIEC, NERC-CIP, PCI-DSS, CIS, OWASP Windows administration skills
Application servers, web services, remote access, file print services, server virtualization Active Directory Performance monitoring, logs alerts Network fundamentals
-Knowledgeable in Infrastructures such as VPN, LAN, WAN, wireless network, network topologies, and access methods
Knowledgeable in Hardware such as switches, routers, media types
Protocols and services such as OSI model, IPv4, IPv6, name resolutions, networking services, TCP/IP
Knowledgeable in User authentication, permissions, password policies, audit policies, encryption, cryptography
Knowledgeable in Physical security, internet security, wireless security, and core security principles
Strong understanding to security monitoring tools and technologies Splunk, SIEM, IBM QRadar, Demisto, Splunk Phantom, Azure Sentinel
Minimum of 5 years relevant experience
Additional Information:
The ideal candidate will possess a strong educational background in computer science, information technology, or a related field, along with a proven track record of delivering impactful security solutions
Location: Manila/Cebu
#LI-PH