Hi,
One of our clients is looking for Senior IT Security / IAM / SIEM-SOAR Production Support Engineer in Chandler, Arizona, or Charlotte, North Carolina (Hybrid)
Title: Senior IT Security / IAM / SIEM-SOAR Production Support Engineer
Location: Chandler, Arizona, or Charlotte, North Carolina (Hybrid)
Duration: 6 to 12 Months
Only W2
Hybrid Position - 3 Days a Week Onsite
Please share strong W2 candidates with 5+ years of hands-on Splunk/SIEM-SOAR + IAM/Access Management experience, including MFA, production support, incident response, Linux/Windows, SQL/Oracle, and scripting. Banking/FinTech experience and Charlotte/Chandler local candidates are highly preferred; candidate must be comfortable with 3 days onsite.
Job Description:
- We are looking for an experienced IT Security professional with 5+ years of hands-on expertise in SIEM/SOAR to join our team. In this role, an ideal candidate will manage and optimize Splunk for advanced threat detection, automation, and incident response.
- Will collaborate IT teams to build detection rules, automation playbooks, and dashboards that strengthen our security posture in a fast-paced FinTech environment.
- Manage, configure, and optimize SIEM/SOAR platforms (primarily Splunk).
- Develop detection rules, dashboards, and automation playbooks.
- Monitor and analyze security events to identify threats and reduce response times.
- This position is expected to deliver above and beyond services to our internal customers to facilitate business continuity with a meet or exceed SLAs.
- This includes monitoring, incident response, problem engagement during triage, service restoral, identification of root cause, and facilitation and co-ordination for a permanent fix - in accordance with agreed best practices.
- The Ideal candidate will have over 10 years of hands on experience within the realm of IAM (identity and Access Management) space. Well conversant with the tools and applications employed within the highly regulated FinTech industry.
- SME with expert level hands-on knowledge of Access management and Entitlement technologies. Must have expert level experience in Windows OS, RedHat Linux, SQL queries, SQL/Oracle other flavors of databases. Well versed with RedHat Linux OpenShift containers, Atlassian JIRA Horizon platforms, GitHub, Ansible, Jenkins, ITSM Remedy, Splunk, Dynatrace, PowerShell/Unix Scripting, cloud experience including other CI/CD DevOps tools.
- Well conversant with 5 C's of cyber security - Change, Compliance, Cost, Continuity and Coverage
- Passionate about cybersecurity and automation, a SIEM/SOAR expert to help us strengthen our cyber resilience, turning Splunk skills into impact
- Use Splunk skills to fight threats and keep financial services secure
- 5+ years of experience in SIEM/SOAR administration and security operations.
- Strong hands-on knowledge of Splunk (searches, dashboards, alerts, playbooks).
- Solid understanding of cybersecurity frameworks, threat detection, and incident response.
- 5+ years of production support experience with expert level knowledge of MFA technologies, Splunk. Window OS, SQL/Oracle DB Unix/Linux.
- Excellent knowledge of Identity, Authentication and Access Management (IAM) domain including SRE and DevOps space.
- Must have senior level production support experience and troubleshooting skills in SIEM/SOAR space, Splunk and IAM technologies.
- Must be able to comply with bank regulatory and compliance policies
- Must have expert level of Linux experience and must be well versed in Splunk queries.
- Well versed with ITIL framework
- Excellent Communication Skills lateral and vertical - be able to clearly explain issues, their impact and how to address them
- Must be a great team player - be able to collaborate with other team members within or outside the group
- Must be available for on-call coverage and willing to work off hours as and when needed.
- Must be willing to work on-site 3 days a week as per current bank policies
- Demonstrate a strong work ethics and takes pride in accomplishment.
- Must be able to handle and work under pressure and stress
- Attention to detail - able to evaluate smallest details
- Problem-solving - be able to address complex challenges in creative ways
- CISSP or other equivalent Information Security domain certificates will be added value
- Go getter exhibiting strong motivation and drive for results and success.
- Persists in the face of significant difficulties, does not give up easily.
- Tower, BladeLogic
- Strong understanding of network technologies
Interested candidates, please send your updated resume to:
Know someone who would be a great fit? Feel free to tag them or share this opportunity!