HamburgerMenu
hirist

Job Description

Description :

We are looking for a highly skilled and experienced SME IBM QRadar to join our Cyber Security team.

The role involves managing, monitoring, and optimizing IBM QRadar SIEM environments while ensuring effective threat detection, incident response, log management, and security monitoring across enterprise infrastructure.

The ideal candidate should possess strong expertise in SIEM operations, threat analysis, security event correlation, use-case development, and incident investigation with hands-on experience in IBM QRadar platforms.

Key Responsibilities :

SIEM Operations & Security Monitoring :


- Manage and support IBM QRadar SIEM infrastructure and security monitoring operations.


- Monitor, analyze, and investigate security alerts, incidents, and suspicious activities.


- Perform event correlation, log analysis, and threat detection activities.


- Ensure continuous monitoring of enterprise security events and logs.

QRadar Administration & Optimization :


- Configure and maintain IBM QRadar components including log sources, collectors, rules, dashboards, and reports.


- Develop and optimize correlation rules, custom use cases, parsers, and offense management workflows.


- Fine-tune SIEM performance to reduce false positives and improve detection accuracy.


- Perform health checks, upgrades, patching, and troubleshooting of QRadar environments.

Incident Response & Threat Management :


- Support incident response activities including investigation, containment, and remediation.


- Conduct root cause analysis for security incidents and recommend preventive measures.


- Work closely with SOC, IR, and infrastructure teams during security investigations.


- Support threat hunting and proactive security monitoring initiatives.

Compliance & Governance :


- Ensure log management and monitoring processes comply with security standards and regulatory requirements.


- Support audit activities and provide required security reports and evidence.


- Maintain documentation for SIEM architecture, processes, and operational procedures.

Automation & Process Improvement :


- Identify opportunities for automation and process optimization within SOC operations.


- Integrate QRadar with security tools, ticketing systems, and threat intelligence platforms.


- Recommend enhancements for improving security visibility and monitoring capabilities.

Desired Candidate Profile :


- 5 to 9 years of experience in Cyber Security, SOC Operations, or SIEM Administration.


- Strong hands-on experience with IBM QRadar SIEM platform.



- Good understanding of security operations, threat detection, and incident response processes.


- Experience in log source integration, rule creation, offense tuning, and dashboard development.


- Knowledge of network security, firewalls, IDS/IPS, endpoint security, and cloud security concepts.


- Familiarity with MITRE ATT&CK, threat intelligence, and security frameworks preferred.


- Strong analytical, troubleshooting, and communication skills.


- Ability to work in fast-paced and critical security environments.

Preferred Skills :


- IBM QRadar SIEM


- Security Operations Center (SOC)


- Incident Response


- Threat Hunting


- Log Management


- Security Monitoring


- Event Correlation


- Use Case Development


- Cyber Security


- SIEM Administration

info-icon

Did you find something suspicious?

Similar jobs that you might be interested in

Loading chat...