- Minimum 5 - 10 years of hands-on experience in SIEM & SOAR administration implementation and solution design .
- Strong expertise in SIEM architecture deployment configuration log source onboarding parser development correlation rules dashboards reporting and performance tuning .
- Hands-on experience with SOAR administration including playbook development automation incident workflows API integrations and ITSM/EDR/NDR integrations.
- Experience with platforms such as FortiSIEM/FortiSOAR Splunk QRadar Sentinel or similar enterprise SIEM/SOAR solutions .
- Design end-to-end SOC/security monitoring architecture including sizing HA DR EPS storage retention collectors and integrations.
- Solid understanding of SOC operations MITRE ATT&CK; incident response threat detection UEBA EDR NDR firewalls Windows/Linux databases and cloud security logs .
- Lead technical troubleshooting solution optimization security use-case development and SIEM/SOAR fine-tuning.
- Work with customers OEMs SOC teams and infrastructure teams for requirement gathering HLD/LLD preparation implementation UAT handover and technical governance .