Siem/soc Expert

2 weeks ago


Jakarta, Indonesia Saddleback Solutions, Inc. Full time

**Professional Services Consultant - Cortex XSIAM**

**Our Mission**

At Palo Alto Networks® everything starts and ends with our mission:
Being the cybersecurity partner of choice, protecting our digital way of life.

Our vision is a world where each day is safer and more secure than the one before. We are a company built on the foundation of challenging and disrupting the way things are done, and we’re looking for innovators who are as committed to shaping the future of cybersecurity as we are.

**Your Career**

As a SIEM Engineer for Cortex XSIAM, you will play a pivotal role in assisting our customers with seamless log migration and effective detection strategies. Working closely with the technical lead, you will ensure the successful onboarding and ingestion of relevant log sources into XSIAM, adhering to industry best practices and meeting customer-specific requirements. Your responsibilities will also involve devising suitable detection strategies to fortify our customers' defenses against threats, encompassing the design and implementation of correlation rules.

**Your Impact**
- Collaborate with the technical lead to devise a comprehensive log ingestion strategy
- Contribute to the development of detection strategies based on industry best practices
- Articulate a step-by-step process to ensure the ingestion of high-quality log sources
- Monitor and optimize log sources for optimal performance
- Create meticulous and effective correlation rules
- Fine-tune log sources and correlation rules to enhance system efficiency
- Serve as a trusted advisor to end customers, offering consultative guidance and expertise in optimizing the utilization of Cortex XSIAM
- Leverage your in-depth knowledge of SIEM and SOC practices to assess customer needs, provide tailored recommendations, and assist in the formulation of effective security strategies
- Collaborate closely with customers to understand their unique challenges and objectives, translating them into actionable steps that enhance their security posture
- Identify opportunities to enhance analyst alert handling through automation
- Foster collaboration with internal and external teams to drive product adoption
- Produce technical documentation detailing SIEM aspects of the engagement
- Occasionally travel to customer meetings and workshops (up to 10% of the time)

**Your Experience**
- Exceptional written and verbal communication and presentation skills, for both internal and external interactions
- 2+ years of hands-on experience in deploying and integrating SIEM solutions within enterprise to large enterprise-level environments
- Proficiency in coordinating and conducting event collection, log management, event management, compliance automation, and identity monitoring using SIEM platforms
- Ability to conceive and develop correlation and detection rules in SIEM systems to enable effective alerting
- Proven experience in providing consultative services to end customers within the realm of cybersecurity, particularly in SIEM and SOC domains
- Demonstrated ability to comprehend customer requirements, analyze complex security environments, and deliver strategic recommendations that align with their goals
- Strong expertise in Regular Expressions (Regex)
- Skill in understanding logs and locating relevant third-party documentation when required
- Knowledge of generating reports on SIEM status, including metrics like logging source count, log collection rate, and other performance indicators
- Understanding of Security Analysis & Response, encompassing endpoint, network, and cloud-based environments is a plus
- Proficient in comprehending and creating technical design documentation
- 2+ years of experience with Security Operations Centers (SOC) tooling and processes
- 2+ years of hands-on experience in deploying and integrating endpoint security solutions within enterprise to large enterprise-level environments.
- Relevant bachelor's degree or equivalent military experience or industry-recognized qualifications (CISSP, GIAC, SIEM Vendor Qualification, etc.), is a plus

**The Team**

Our professional services team is critical to our success and mission. As part of this team, you enable customer success by providing support to clients post-sale. Our dedication to our customers doesn’t stop once they sign - it evolves.

As threats and technology evolve, we stay in step to accomplish our mission. You’ll be involved in implementing new products, transitioning from old products to new, and will fix integrations and critical issues as they are raised. But you won’t wait for them to be raised, you’ll seek them out, too. We fix and identify technical problems, with a pointed focus of providing the best customer support in the industry.
- Salary shall be agreed upon._

**Job Type**: Contract
Contract length: 12 months

Application Question(s):

- Do you have SIEM/SOC Experience? Please explain.

Expected Start Date: 07/01/2025



  • Jakarta, Jakarta, Indonesia PT Metrocom Global Solusi Full time 1,000,000 - 1,200,000 per year

    WE'RE HIRING – L1 & L2 Security Operation Center (SOC) Engineer Jakarta | Contract Kamu punya passion di dunia Cyber Security dan tertarik menghadapi ancaman siber secara langsung? Saat ini, Metrocom Global Solusi, PT. (MGS) membuka kesempatan bergabung untuk anak perusahaannya, PT Permata Anugerah Abadi (PAA), pada posisi:L1 & L2 Security Operation...

  • IT SOC Engineer

    6 days ago


    Jakarta, Jakarta, Indonesia AbiShar Consulting Services Full time 120,000,000 - 180,000,000 per year

    IT SOC EngineerWe are looking for an IT SOC Engineer to join our cybersecurity team. The role is responsible for monitoring, analyzing, and responding to security events to ensure the protection of company systems and data. You will work with SIEM, EDR, and other security tools to detect threats, investigate incidents, and support remediation...


  • Jakarta, Jakarta, Indonesia PT Metrocom Global Solusi Full time 3,000,000 - 6,000,000 per year

    Job DescriptionsIncident Response & InvestigationMelakukan investigasi mendalam terhadap insiden keamanan, menganalisis alert, dan menyusun incident report.Menganalisis event keamanan dari berbagai sumber (SIEM, IDS, firewall, antivirus, dll).Threat Detection & AnalysisMengidentifikasi dan mengklasifikasikan ancaman berdasarkan tingkat keparahan &...

  • soc

    6 days ago


    Jakarta, Jakarta, Indonesia AbiShar Consulting Services Full time 15,000,000 - 30,000,000 per year

    About the RoleWe are looking for aSecurity Operations Center (SOC) Analystto support security monitoring and incident handling within the IT environment at ACC. This role is suited for candidates with hands-on experience in SOC operations or IT security monitoring.Responsibilities:Monitor security events through SIEM / EDR / Firewall monitoring toolsPerform...

  • soc

    7 hours ago


    Jakarta, Jakarta, Indonesia AbiShar Consulting Services Full time

    Job Description:Melakukan monitoring security alerts secara real-time melalui SIEM tools.Melakukan initial triage dan analisis dasar terhadap incident/security events.Meng-escalate incident ke level selanjutnya sesuai SOP.Membantu pembuatan incident report, log review, dan dokumentasi harian.Melakukan threat monitoring, pengecekan anomali, dan basic...

  • Junior SIEM Admin

    6 days ago


    Jakarta Metropolitan Area, Indonesia Sumber Solusi Hebat - Member of Gan Kapital Full time 1,200,000 - 3,600,000 per year

    Key Skills:Deep hands-on expertise in SIEM administration (e.g., QRadar, Splunk, ArcSight, Sentinel).Strong understanding of security architecture, log management, and data correlation.Proficient in use case development, custom rule creation, and fine-tuning correlation logic.Solid scripting ability for automation and data parsing (Python, Regex, PowerShell,...

  • soc l1

    4 days ago


    Jakarta, Jakarta, Indonesia PT Clarus Innovace Teknologi Full time 3,000,000 - 9,000,000 per year

    Requirement :Education: Bachelor's degree (D3/S1) in Computer Science or related fieldFresh graduates are welcome; 1 year of experience in SOC or IT is a plusUnderstanding of basic networking (TCP/IP), operating systems (Windows/Linux), and cybersecurityFamiliarity with SIEM, IDS/IPS, firewall, antivirus, endpoint detection, proxy, and tools (UBA, EDR,...

  • SOC Analyst

    6 days ago


    Jakarta, Jakarta, Indonesia AbiShar Consulting Services Full time 8,000,000 - 12,000,000 per year

    Job Description:Melakukan monitoring security alerts secara real-time melalui SIEM tools.Melakukan initial triage dan analisis dasar terhadap incident/security events.Meng-escalate incident ke level selanjutnya sesuai SOP.Membantu pembuatan incident report, log review, dan dokumentasi harian.Melakukan threat monitoring, pengecekan anomali, dan basic...

  • SOC Analyst

    7 hours ago


    Jakarta, Jakarta, Indonesia PT Dinamika Sistem Integrasi Solusi Full time

    About the RoleWe are seeking a highly skilled SOC Analyst - Layer 3 (Senior Level) to join our Cyber Security team. This role is critical in leading security forensics, advanced threat detection, incident response, and proactive security operations. As a senior member of the SOC team, you will handle complex security incidents, guide junior analysts, and...

  • SOC Engineer

    6 days ago


    Jakarta, Indonesia ITConnexion Full time

    **Education** - Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or related field (preferred but not always required) **Certifications (Highly Regarded)** - **CompTIA Security+** - foundational security knowledge - **Certified SOC Analyst (CSA)** - role-specific SOC training - **Certified Ethical Hacker (CEH)** - for offensive...