Associate – Siem/soar Engineering

PwC UK

Hybrid
1–3 years of experience in siem technologies
Expertise with splunk arcsight azure sentinel
Building use cases based on nist mitre att&ck
The role focuses on protecting organizations from cyber threats through advanced technologies and strategies to identify vulnerabilities and develop secure systems

Job Summary

  • The role focuses on protecting organizations from cyber threats through advanced technologies and strategies to identify vulnerabilities and develop secure systems.
  • Candidates are expected to apply a broad understanding of cybersecurity principles to address diverse security challenges effectively while maintaining client data protection.
  • PwC offers a high-performance culture with global leadership development and a supportive environment for career growth within the Advisory Acceleration Center.

Matching Summary

The role focuses on protecting organizations from cyber threats through advanced technologies and strategies to identify vulnerabilities and develop secure systems.

Skills & Requirements

Must-have

  • 1–3 years of experience in SIEM technologies
  • Expertise with Splunk ArcSight Azure Sentinel
  • Building use cases based on NIST MITRE ATT&CK
  • Proficiency in SPL KQL for complex correlation
  • Implementation of SOAR workflows using Logic Apps

Nice-to-have

  • Basic understanding of User Entity Behavior Analytics
  • Scripting skills in Python
  • Assisting in administration and optimization of Splunk
  • Integration of log sources with Sentinel via REST API
  • Knowledge of cloud and hybrid environments including Azure

Key Requirements

  • 1–3 years of experience in Information Security
  • Experience building use cases based on NIST frameworks
  • Proficiency in SPL/KQL for data correlation
  • Familiarity with SIEM architectural components
  • Knowledge of Azure services and Defender ATP

Work Rights

Not specified

Tailored Resume

Cover Letter