Talworx·16 days ago
We are looking for an experienced SIEM Engineer to execute the migration of our Security Information and Event Management (SIEM) platform from the existing environment to a new solution. The ideal candidate will have a strong background in SIEM tools, log management, security event correlation, and experience handling migration projects, including data mapping, connector integration, and validation.
· Lead and manage end-to-end SIEM migration activities.
· Design and implement log source onboarding, normalization, parsing, and enrichment processes.
· Recreate and optimize existing use cases, alerts, dashboards, and correlation rules in the new SIEM platform.
· Collaborate with security operations, infrastructure, and application teams to ensure seamless integration.
· Conduct data validation, testing, and performance tuning post-migration.
· Maintain documentation for migration steps, configuration, and system architecture.
· Ensure compliance with security and audit requirements during and after migration.
· Update and maintain SOC knowledge base for new security incidents and docs
· Must be able to raise OEM Support tickets for troubleshooting and resolution·
Develop and optimize automation playbooks within SOAR platforms (preferably Palo Alto XSOAR).
· Design and implement custom integrations with third-party tools using Python.
· Maintain and enhance SOAR platform infrastructure, including setup, configuration, upgrades, data purging etc.