Senior Security Engineer
Doha, Doha Municipality, Qatar · Full Time
Be the first to apply
- Experience
- 8+ yrs
- Salary
- —
- Openings
- 1
- Posted
- 20 hours ago
- Work mode
- In office
- Education
- Bachelor's degree
- Resume
- Required to apply
Where you'll work
Sign in to tell us what does and doesn't work for you here — it sharpens every match we show you.
Job description
Role Overview
We are seeking a seasoned Security Information and Event Management (SIEM) specialist to take charge of implementing, configuring, managing, and enhancing SIEM platforms. This role demands a hands-on expert capable of integrating log sources, engineering detection methods, crafting correlation rules, fine-tuning alerts, improving threat visibility, and collaborating closely with Security Operations Center (SOC) and Incident Response (IR) teams.
Key Responsibilities
- Deploy, configure, administer, and sustain SIEM platforms including Splunk, IBM QRadar, ArcSight, or LogRhythm.
- Integrate diverse log sources from infrastructure, applications, endpoints, network devices, security solutions, and cloud environments.
- Design and manage custom parsers, field extractions, and log normalization for precise event analysis.
- Create, validate, fine-tune, and enhance detection rules, correlation logic, use cases, and security alerts.
- Build detection mechanisms based on threat models, attack vectors, and organizational risk profiles.
- Collaborate with SOC and IR teams to elevate threat visibility, alert accuracy, and investigation procedures.
- Identify and mitigate false positives while preserving monitoring coverage and threat detection capabilities.
- Develop automation scripts utilizing Python, PowerShell, or equivalent scripting languages.
- Produce and maintain customized SIEM dashboards, reports, and monitoring visualizations.
- Continuously improve SIEM system performance, detection efficiency, data integrity, and operational workflows.
Qualifications and Experience
- Bachelor's degree in Computer Science, Information Technology, or closely related fields.
- At least 8 years of relevant experience in SIEM, cybersecurity, security operations, or allied domains.
Preferred Certifications
- Splunk Certified Architect
- GIAC Certified Intrusion Analyst (GCIA)
- Other relevant certifications in SIEM, cybersecurity, or security operations.
Level
Senior
Minimum education
Bachelor's Degree