SIEM/SOAR Engineer[Onsite]

SmartIPlaceTampa, FL
Hybrid

About The Position

The SIEM/SOAR Security Engineer will be responsible for designing and implementing engineering solutions, enhancing SIEM and SOAR platforms, and managing security data lakes and warehouses. This role requires a strong understanding of various applications and systems, security risks, and the ability to automate tasks and integrate different systems into SIEM platforms. The engineer will also define platform standards, develop scripts for threat detection, conduct fraud analysis, generate reports, and manage vendor relationships.

Requirements

  • At least 7+ years of experience in technology with emphasis on cyber security.
  • At least 5+ years of experience in SIEM and SOAR products such as Splunk, Elastic, Datadog, Cribl, etc.
  • At least 2+ years of experience in Data Lake and data warehouse using products such as AWS S3, Snowflake, Databricks, etc.
  • Working knowledge in RegEx, Splunk search language, etc. is required.
  • Knowledge and experience in AWS or Azure.
  • Knowledge and experience with programming language to automate tasks (e.g. Python or PowerShell).

Nice To Haves

  • Experience with scripting is highly preferred like Python, Ansible etc.

Responsibilities

  • Design and implement various engineering solutions by working with other stakeholders.
  • Leverage industry trends and market research to adopt the best practices to enhance the SIEM and SOAR platforms.
  • Experience with building and managing Security Data Lake and Data Warehouse.
  • Define SIEM and SOAR platform standards including data schema, modelling, normalization, monitoring and alerting.
  • Define standard patterns to integrate different systems into SIEM platforms.
  • Ability to develop different scripts and products RegEx for configuring policy to detect security alerts as per threat, anomaly, etc.
  • Ability to conduct fraud analysis and threat detection.
  • Generate different types of reports using SIEM & SOAR data.
  • Identify opportunities to enhance the current baseline processes and configuration.
  • Produce engineering, integration and process related documentation.
  • Manage vendor relationships to drive roadmap, solution design, implementation and troubleshooting.
  • Work with key stakeholders of the services to ensure the expectations are meeting the requirements.
  • Knowledge of various applications and systems that include Servers, security platforms, middleware, Clouds (SaaS, PaaS and IaaS), Containers, etc. to come up with the right approach of SIEM integration.
  • Ability to understand security risks and controls, to analyze various methods of controlling information security problems, determine the strengths and weaknesses of each method and implement the best cost-justified solution.
  • Ability to provide technical directions to other peer staff members, and to train new staff on the security team.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service