At a Glance
- Tasks: Support clients by developing log migration and detection strategies for Cortex XSIAM.
- Company: Entelligence, a leader in IT solutions with a focus on collaboration.
- Benefits: Competitive salary, health insurance, vacation time, and a matching 401(k) programme.
- Why this job: Join a dynamic team and make a real impact in cybersecurity.
- Qualifications: 3+ years of SIEM experience and strong communication skills required.
- Other info: Opportunity for travel and professional growth in a supportive environment.
The predicted salary is between 36000 - 60000 £ per year.
Entelligence is seeking an Engineer to support our Palo Alto's clients. The successful candidate must be able to work in a cross-functional environment and interact with representatives from Entelligence, Palo Alto Networks, and the end-user. As an Engineer for Cortex XSIAM, you will be responsible for assisting with the log migration and detection strategy of our customers. You will work closely with the technical lead to ensure that all of the relevant log sources are onboarded and ingested into XSIAM in accordance with industry best practices and customer requirements. You will then work to determine a suitable detection strategy, helping to protect customers from threats, by designing and implementing correlation rules.
RESPONSIBILITIES:
- Work with technical lead to develop log ingestion strategy
- Contribute to detection strategy based on industry best practices
- Detail step by step process to ingest high quality log sources
- Perform log source monitoring and optimization
- Create high quality correlation rules
- Tune log sources and correlation rules
- Be an SME for SIEM, Correlation and Log Source Ingestion
- Recognize opportunities where automation can improve analyst alert handling
- Collaborate with internal and external teams to ensure product adoption
- Create technical documentation detailing SIEM aspects of the engagement
- Travel to customer meetings and workshops as needed (10%)
JOB REQUIREMENTS:
- Strong communication (written and verbal) and presentation skills, both internally and externally
- Fluent English is a requirement - Any other language is a plus
- 3+ years of deploying and integrating (SIEM) to enterprise to large enterprise-level
- Coordinating and conducting event collection, log management, event management, compliance automation, and identity monitoring activities using (SIEM) platforms
- The ability to create and develop correlation and detection rules, within a (SIEM) to support alerting capabilities
- Experience working with and deploying a variety of SIEM technologies (i.e Splunk, IBM QRadar)
- A proven ability to offer suggestions on detection strategy based on customer requirements
- Ability to understand logs, locating and understanding 3rd party documentation where needed
- Familiarity with reports on the status of the SIEM to include metrics on items such as number of logging sources - log collection rate, and other performance metrics
- Knowledge of Security Analysis & Response a plus, including both endpoint, network & cloud-based environments
- 3 years experience with Security Operation Centers tooling and processes
- Relevant bachelor's degree or industry recognized qualifications (CISSP, GIAC, SIEM Vendor Qualification etc)
- Ability to read and understand technical design documentation
- Ability to create technical design documentation
BENEFITS:
- Competitive base salary
- Medical, dental, vision and life insurance
- Vacation, sick time and paid holidays
- Matching 401(k) program
ENTELLIGENCE. ALWAYS READY. Since 1997, Entelligence has provided mission critical project delivery capacity for uninterrupted growth and long-term market leadership to the industry's biggest enterprise IT brands. Our commitment to close working partnerships and a proven approach for sustainable success is why Entelligence is Always Ready to help the world's technology leaders quickly deliver their most advanced IT solutions to their most important customers.
XSIAM Consultant in Newcastle upon Tyne employer: Entelligence
Contact Detail:
Entelligence Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land XSIAM Consultant in Newcastle upon Tyne
✨Tip Number 1
Network like a pro! Get out there and connect with people in the industry. Attend meetups, webinars, or even just grab a coffee with someone who works at Entelligence or Palo Alto Networks. You never know who might have the inside scoop on job openings!
✨Tip Number 2
Show off your skills! If you’ve got experience with SIEM technologies, create a portfolio showcasing your projects or any correlation rules you've developed. This will give potential employers a tangible sense of what you can bring to the table.
✨Tip Number 3
Prepare for interviews by brushing up on your communication skills. Practice explaining complex technical concepts in simple terms. Remember, you’ll be working with cross-functional teams, so being able to communicate effectively is key!
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining the team at Entelligence.
We think you need these skills to ace XSIAM Consultant in Newcastle upon Tyne
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the XSIAM Consultant role. Highlight your experience with SIEM technologies and any relevant projects you've worked on. We want to see how your skills match what we're looking for!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about this role and how your background makes you a perfect fit. We love seeing enthusiasm and a personal touch!
Showcase Your Communication Skills: Since strong communication is key for this role, make sure your written application reflects that. Keep it clear, concise, and professional. We appreciate well-structured applications that are easy to read!
Apply Through Our Website: Don't forget to apply through our website! It’s the best way for us to receive your application and ensures you’re considered for the role. We can’t wait to see what you bring to the table!
How to prepare for a job interview at Entelligence
✨Know Your SIEM Inside Out
Make sure you brush up on your knowledge of various SIEM technologies like Splunk and IBM QRadar. Be ready to discuss your experience with deploying and integrating these systems, as well as how you've developed correlation and detection rules in the past.
✨Showcase Your Communication Skills
Since strong communication is key for this role, practice articulating your thoughts clearly. Prepare to explain complex technical concepts in a way that’s easy to understand, as you'll need to interact with both technical leads and end-users.
✨Prepare for Scenario-Based Questions
Expect questions that ask you to solve hypothetical problems related to log ingestion and detection strategies. Think through your past experiences and be ready to share specific examples of how you’ve tackled similar challenges.
✨Highlight Your Collaborative Spirit
This role requires working closely with various teams, so be prepared to discuss how you've successfully collaborated in cross-functional environments before. Share examples of how you’ve contributed to team success and product adoption.