Lead the integration of AI security agents with SIEM, SOAR, and XDR systems, ensuring data transformation and optimal agent functionality.
- Lead the integration of AI security agents with existing SIEM, SOAR, and XDR systems and data platforms, ensuring seamless connectivity and data transformation.
- Collaborate with security operations teams to gather requirements and ensure AI agents can effectively utilize security data.
- Design and implement scalable and high-performance data transformation processes to optimize AI agent functionality.
- Develop and maintain data feeds compatible with frameworks like MITRE ATT&CK to enhance threat intelligence.
- Build and organize security information platforms to support the deployment and operation of AI security agents.
- Build and integrate security content to be leveraged by AI security agents
- Extensive experience in developing and integrating SIEM and XDR systems, with hands-on knowledge of products such as IBM QRadar, Splunk, Microsoft Sentinel, Palo Alto Cortex XSOAR/XSIAM, Crowdstrike Falcon, etc.
- Experience with formats leveraged in security operations such as ECS, CIM, OCSF, Sigma, STIX/TAXII, etc.
- Strong background in threat intelligence, detection engineering, and cybersecurity analytics.
- Proficiency in programming with Python and experience with cloud platforms, particularly AWS.
- Proven track record of working closely with security operations centers, threat intelligence teams, and incident response processes.
- Familiarity with machine learning and AI techniques as applied to cybersecurity.
- Willingness to work with clients as necessary
Top Skills
AWS
Crowdstrike Falcon
Ibm Qradar
Microsoft Sentinel
Palo Alto Cortex Xsoar/Xsiam
Python
Splunk
Similar Jobs
Cloud • Information Technology • Productivity • Security • Software • App development • Automation
Lead incident response efforts, coordinate with stakeholders during security incidents, document actions, and enhance incident management capabilities.
Top Skills:
CybersecurityDevsecopsDoraFedrampGdpr
Cloud • Information Technology • Productivity • Security • Software • App development • Automation
The Principal Security Engineer leads penetration testing and code review, builds teams, mentors talent, and improves security processes at Atlassian.
Top Skills:
AWSAzureGCPJava
Artificial Intelligence • Blockchain • Fintech • Financial Services • Cryptocurrency • NFT • Web3
The Offensive Security Engineer will manage the bug bounty program, conduct vulnerability assessments and penetration testing, mentor junior engineers, and enhance security posture.
Top Skills:
Bug Bounty ProgramsGoJavaScriptPenetration TestingPythonRubyWeb2 Security
What you need to know about the Chennai Tech Scene
To locals, it's no secret that South India is leading the charge in big data infrastructure. While the environmental impact of data centers has long been a concern, emerging hubs like Chennai are favored by companies seeking ready access to renewable energy resources, which provide more sustainable and cost-effective solutions. As a result, Chennai, along with neighboring Bengaluru and Hyderabad, is poised for significant growth, with a projected 65 percent increase in data center capacity over the next decade.