Job Requirements
Scott AFB, IL
Top Secret Polygraph Unspecified
Career Level not specified
Salary not specified
Join Premium to unlock estimated salaries
Job Description
Zachary Piper Solutions is seeking an XSOAR Extended Enterprise Engineer to provide services to a client at Scott AFB.
This role emphasizes SIEM engineering, detection development, and log ingestion excellence while incorporating automation, orchestration, and Python scripting to enhance security operations. You will support customers across integration, optimization, and automation of both SIEM (Cortex XSIAM) and SOAR (Cortex XSOAR) technologies.
• Develop SIEM log ingestion strategies and onboard high-quality log sources.
• Create, tune, and optimize SIEM correlation and detection rules.
• Perform log source monitoring, troubleshooting, and continuous optimization.
• Identify automation opportunities and build SOAR playbooks leveraging Python.
• Guide customers through secure cloud integrations and operational best practices.
• Train and enable customer teams to successfully operate SIEM/SOAR platforms.
• Produce clear documentation including workflows, detection logic, and configurations.
• Present technical information to both technical and non-technical stakeholders.
Your Experience
• 6+ years deploying and integrating SIEM platforms in enterprise environments.
• Strong experience with SIEM technologies such as Splunk or IBM QRadar.
• Ability to build detection logic, correlation rules, and log ingestion pipelines.
• Experience with automation platforms, SOAR tools, and Python scripting.
• Background in SOC environments, security analysis, and threat detection.
• Strong communication and documentation skills.
• Familiarity with Linux/Unix, networking, IDS/IPS, and endpoint solutions.
#XDR #XSOAR #Paloalto #Socmanager #scottAFB
This role emphasizes SIEM engineering, detection development, and log ingestion excellence while incorporating automation, orchestration, and Python scripting to enhance security operations. You will support customers across integration, optimization, and automation of both SIEM (Cortex XSIAM) and SOAR (Cortex XSOAR) technologies.
• Develop SIEM log ingestion strategies and onboard high-quality log sources.
• Create, tune, and optimize SIEM correlation and detection rules.
• Perform log source monitoring, troubleshooting, and continuous optimization.
• Identify automation opportunities and build SOAR playbooks leveraging Python.
• Guide customers through secure cloud integrations and operational best practices.
• Train and enable customer teams to successfully operate SIEM/SOAR platforms.
• Produce clear documentation including workflows, detection logic, and configurations.
• Present technical information to both technical and non-technical stakeholders.
Your Experience
• 6+ years deploying and integrating SIEM platforms in enterprise environments.
• Strong experience with SIEM technologies such as Splunk or IBM QRadar.
• Ability to build detection logic, correlation rules, and log ingestion pipelines.
• Experience with automation platforms, SOAR tools, and Python scripting.
• Background in SOC environments, security analysis, and threat detection.
• Strong communication and documentation skills.
• Familiarity with Linux/Unix, networking, IDS/IPS, and endpoint solutions.
- • Preferred certifications: CISSP, GIAC, GCIA, CEH, Security+.
#XDR #XSOAR #Paloalto #Socmanager #scottAFB
group id: 10430981