Job Description: Security Operations Specialist – SIEM & SOAR
Iron Mountain
At Iron Mountain we know that work, when done well, makes a positive impact for our customers, our employees, and our planet. That’s why we need smart, committed people to join us. Whether you’re looking to start your career or make a change, talk to us and see how you can elevate the power of your work at Iron Mountain.
We provide expert, sustainable solutions in records and information management, digital transformation services, data centers, asset lifecycle management, and fine art storage, handling, and logistics. We proudly partner every day with our 225,000 customers around the world to preserve their invaluable artifacts, extract more from their inventory, and protect their data privacy in innovative and socially responsible ways.
Are you curious about being part of our growth story while evolving your skills in a culture that will welcome your unique contributions? If so, let's start the conversation.
**Job Description: Security Operations Specialist – SIEM & SOAR**
**Location: Remote India**
**Job Type: Full-Time**
**Department: Information Security / Security Operations**
**Job Summary**
**We are seeking a** **Security Operations Specialist – SIEM & SOAR** **to manage and optimize** **Security Information and Event Management (SIEM)** **and** **Security Orchestration, Automation, and Response (SOAR)** **platforms. The ideal candidate will oversee the operation of** **Splunk, Google Chronicle, Siemplify, and Palo Alto XSOAR** **, ensuring effective** **log ingestion, parser development, playbook automation, and anomaly detection** **. This role is critical in** **identifying unusual behavior, enhancing security visibility, and providing actionable insights to executives** **.**
**Key Responsibilities** **1. SIEM Operations & Log Management**
+ **Manage and maintain** **SIEM platforms (Splunk, Google Chronicle)** **to ensure** **optimal log ingestion and processing** **.**
+ **Develop and fine-tune** **log parsers** **for structured and unstructured data.**
+ **Ensure** **data normalization, enrichment, and correlation** **to improve threat detection.**
**2. Threat Detection & Anomaly Analysis**
+ **Continuously** **monitor security events** **to identify unusual behavior and potential threats.**
+ **Create** **custom detections, alerts, and dashboards** **for advanced threat visibility.**
+ **Investigate suspicious activities and escalate incidents as needed.**
**3. SOAR Automation & Playbook Development**
+ **Design and implement** **automation playbooks** **in** **Siemplify and Palo Alto XSOAR** **to streamline security operations.**
+ **Automate** **threat response, triage, and remediation workflows** **to reduce response times.**
+ **Integrate** **SIEM, threat intelligence feeds, and incident response tools** **for enhanced security operations.**
**4. Security Insights & Executive Reporting**
+ **Generate** **security analytics and reports** **for leadership, highlighting trends and risks.**
+ **Provide** **executive-level insights** **on security events, response effectiveness, and operational improvements.**
+ **Track and improve** **key security metrics and operational efficiencies** **.**
**Qualifications & Skills** **Required:**
+ **3+ years of experience in** **SIEM, SOAR, or Security Operations** **.**
+ **Hands-on experience with** **Splunk, Google Chronicle, Siemplify, Palo Alto XSOAR** **.**
+ **Strong knowledge of** **log ingestion, parsing, and security event correlation** **.**
+ **Experience in** **developing custom detections, queries, and dashboards** **.**
+ **Ability to** **design and automate security playbooks** **for incident response.**
+ **Strong analytical and communication skills to present** **security insights to executives** **.**
**Preferred:**
+ **Certifications such as** **Splunk Certified Admin, Chronicle Security Engineer, CISSP, or GIAC Security Operations (GCIA, GMON)** **.**
+ **Experience with** **threat intelligence integration and UEBA (User and Entity Behavior Analytics)** **.**
+ **Knowledge of** **cloud security logging (AWS, GCP, Azure)** **and compliance frameworks.**
Category: Information Technology
Iron Mountain is a global leader in storage and information management services trusted by more than 225,000 organizations in 60 countries. We safeguard billions of our customers’ assets, including critical business information, highly sensitive data, and invaluable cultural and historic artifacts. Take a look at our history here.
Iron Mountain helps lower cost and risk, comply with regulations, recover from disaster, and enable digital and sustainable solutions, whether in information management, digital transformation, secure storage and destruction, data center operations, cloud services, or art storage and logistics. Please see our Values and Code of Ethics for a look at our principles and aspirations in elevating the power of our work together.
If you have a physical or mental disability that requires special accommodations, please let us know by sending an email to accommodationrequest@ironmountain.com. See the Supplement to learn more about Equal Employment Opportunity.
Iron Mountain is committed to a policy of equal employment opportunity. We recruit and hire applicants without regard to race, color, religion, sex (including pregnancy), national origin, disability, age, sexual orientation, veteran status, genetic information, gender identity, gender expression, or any other factor prohibited by law.
To view the Equal Employment Opportunity is the Law posters and the supplement, as well as the Pay Transparency Policy Statement, CLICK HERE
**Requisition:** J0087335
Por favor confirme su dirección de correo electrónico: Send Email