Accenture Federal Services is seeking a SIEM/SOAR Administrator/Assessor Associate Director to manage, optimize, and evaluate the Security Information and Event Management (SIEM) and Security Orchestration, Automation, and Response (SOAR) systems used in the Network Operations Center (NOC) and Security Operations Center (SOC).
Requirements
- Configure, maintain, and optimize SIEM and SOAR platforms
- Develop and implement use cases, correlation rules, and playbooks
- Troubleshoot and manage issues related to data collection, analysis, and reporting
- Assess the existing and to be state of the NOC and SOC operating environment
- Conduct gap analysis to identify areas for improvement in current toolset
- Integrate SIEM/SOAR systems with other security and network tools
- Ensure proper data flow and communication between different security systems
- Troubleshoot integration issues and work with vendors to resolve problems
- Create and maintain dashboards for real-time visibility into security events
- Review and assess existing security business processes
- Identify inefficiencies, redundancies, or gaps in current processes
- Recommend process improvements to enhance security operations
- Ensure SIEM/SOAR configurations meet compliance requirements
- Prepare documentation and evidence for security audits
- Assist in developing and maintaining policies and procedures related to SIEM/SOAR usage
- Provide technical support during security incidents
- Work closely with NOC, SOC, and other IT teams to align SIEM/SOAR capabilities with operational needs
- Participate in cross-functional projects related to security improvements
Benefits
- 401k Matching
- Retirement Plan
- Generous Paid Time Off
- Tuition Reimbursement
- Relocation Assistance