About this role
• Deploy, configure, administer, and optimize SIEM, SOAR, and UEBA platforms. • Onboard log sources, security tools, identity sources, and business applications into the security ecosystem. • Develop and maintain correlation rules, behavioral analytics, dashboards, reports, automation playbooks, and custom integrations. • Investigate complex security incidents, perform threat hunting, and conduct root cause analysis. • Develop and optimize parsers, connectors, APIs, and automation workflows to improve SOC efficiency. • Fine-tune detection rules, behavioral models, and risk scoring to minimize false positives. • Ensure platform availability, performance optimization, upgrades, backup, and overall system health. • Support compliance, audit requirements, use case development, documentation, and provide technical guidance to L1 analysts.