The QRadar Senior Security Engineer will be responsible for the creation of procedures, implementation of process development, and maintenance of security systems across internal and client environments.
The Security Engineer will work closely with Management, Senior Engineers, Threat Analysts, Solution Architects, other Security Engineers, and clients to complete high profile, critical services to existing Managed Security Service clients.
This position will be based in Abu Dubai, UAE and will be responsible for the administration, maintenance, and integration of QRadar platform.
for security operations technical analysis, assessment, and recommendations in areas of real-time security, operational network & identity management system, and applications systems security monitoring.
Deep understanding of QRadar components & health checks, ability to develop custom parsers, dashboards & reports.
Integrating a wide variety of data sources with QRadar.
Engaging with application and infrastructure teams to establish best practices for utilizing QRadar data and visualizations.
Tune and troubleshoot QRadar to deliver optimal performance in high volume enterprise customer environments.
Maintain SIEM and perform upgrades whenever applicable.
Configure and troubleshoot network and security devices, various operating systems, and applications such as web, AWS, Azure, cloud services logging, endpoint log sources, mail, and database services along to bring data to QRadar.
Participate in penetration testing, security audits, and investigations to support business objectives, compliance, and implement best practices on SIEM via administration and content development.
Keep current with evolving security threats and remediation techniques.
Assess customer needs and expectations, design solutions to meet those needs, and then implement the design.
Quickly build and solve a problem using a new technology to determine viability.
Serve as a primary responder for Managed Security customer systems, taking ownership of client configuration issues and tracking through resolution.
Experience and knowledge of QRadar SIEM is essential.
QRadar Admin certification is a must and other certifications against Azure / Cloud Security, Vulnerability assessment (Nessus / Tenable), EDR (Carbon Black) and Firewall related security certifications will be added advantage.
Minimum 6 years of professional experience supporting and maintaining QRadar SIEM System.
5-6 years of experience with advanced tuning of SIEM content.
Knowledge of Linux and Windows Operating Systems.
Professional experience working with networks and network architecture.
College degree or equivalent training with experience working in a Security Operations Center, Managed Security, or client network environment.
Knowledge (and preferably experience) in EDR (Carbon Black), NDR, and Microsoft Azure or any other Cloud Security.
Azure Log analytics, or equivalent big data engine experience preferable.
Experience with various other SIEM security products such as : Splunk, ArcSight, Nitro, or LogRhythm and infrastructure components such as proxies, firewalls, IDS / IPS, and DLP
Experience working with clients in a service delivery function.
Shift flexibility, including the ability to provide after-hours support when needed
Experience working with internal and client ticketing and knowledge base systems for Incident and Problem tracking as well as procedures.
About Us :
Help AG is the cybersecurity arm of e& enterprise (formerly Etisalat Digital) and provides leading enterprise businesses and governments across the Middle East with strategic consultancy combined with tailored information security services and solutions that address their diverse requirements, enabling them to evolve securely with a competitive edge.
Present in the Middle East since 2004, Help AG was strategically acquired by e& (formerly Etisalat Group) in Feb 2020, hence creating a cybersecurity and digital transformation powerhouse in the region.
Help AG has firmly established itself as the region's trusted IT security advisor by remaining vendor-agnostic, trustworthy, independent, and cybersecurity focused.
With best-of-breed technologies from industry-leading vendor partners, expertly qualified service delivery teams and a state-of-the-art consulting practice, Help AG delivers unmatched value to its customers by strengthening their cyber defences and safeguarding their business.