SIEM Support Lead

Accenture Federal ServicesArlington, VA
2d

About The Position

As the SIEM Support Lead, you will be responsible for managing Security Information and Event Management (SIEM) systems within the program to ensure IT service security and integrity. Key duties include designing, deploying, configuring, and maintaining SIEM solutions to monitor and respond to security incidents. The role involves developing and optimizing correlation rules, dashboards, and reports for enhanced threat detection, and conducting regular SIEM assessments. The SIEM Engineer analyzes security events, investigates incidents, and collaborates with security and IT teams to mitigate risks. This person will also help develop and implement security policies, procedures, and best practices, and provide training on SIEM tools and technologies. Successful candidates will be skilled in developing and implementing security policies, procedures, and best practices, and providing training on SIEM tools and technologies. This person will possess a deep understanding of security principles, threat landscapes, and SIEM platforms and demonstrate strong analytical, problem-solving, and communication skills, with practical experience in designing, deploying, configuring, and maintaining SIEM solutions. This person will have a proven track record in developing and optimizing correlation rules, dashboards, and reports for threat detection, as well as conducting regular SIEM assessments.

Requirements

  • Bachelor’s degree in IT, Computer Science, Cybersecurity, or a related field
  • 8 years of experience in security information and event management (SIEM)
  • Experience conducting regular SIEM assessments
  • Experience in analyzing security events, investigating incidents, and collaborating with security and IT teams to mitigate risks
  • Experience leading a team of ten or more
  • Any of the following certifications: CEH(P), GMON, GRID, Cloud+, FITSP-O, GCED, GDSA, GSEC, PenTest+, Security+

Nice To Haves

  • One or more of the following certifications: CISSP, CPMP, CySA+, GICSP

Responsibilities

  • Managing Security Information and Event Management (SIEM) systems within the program to ensure IT service security and integrity.
  • Designing, deploying, configuring, and maintaining SIEM solutions to monitor and respond to security incidents.
  • Developing and optimizing correlation rules, dashboards, and reports for enhanced threat detection
  • Conducting regular SIEM assessments.
  • Analyzing security events, investigating incidents, and collaborating with security and IT teams to mitigate risks.
  • Developing and implementing security policies, procedures, and best practices
  • Providing training on SIEM tools and technologies.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service