Job description:
We are seeking a highly skilled and experienced Google Chronicle SIEM & SOAR Architect/Engineer to lead the design, implementation, and ongoing support of our security information and event management (SIEM) and security orchestration, automation, and response (SOAR) environments. The ideal candidate will have a strong background in security architecture, hands-on experience with Google Chronicle, and the ability to integrate and automate security operations across various platforms.
Key Responsibilities:
• Lead the architecture and design of Google Chronicle SIEM and SOAR solutions to meet the security needs of the organization.
• Collaborate with stakeholders to define requirements and ensure alignment with business objectives.
• Design integration strategies with existing security tools, applications, and data sources.
• Lead the deployment and configuration of Google Chronicle SIEM and SOAR environments.
• Develop and implement data ingestion pipelines, ensuring the effective collection and correlation of security events.
• Implement use cases, detection rules, and response playbooks based on interpersonal security requirements.
• Provide ongoing support for the Google Chronicle SIEM and SOAR environments, including fixing, tuning, and optimization.
• Supervise and maintain the health and performance of the systems, ensuring high availability and reliability.
• Collaborate with security teams to continuously improve detection and response capabilities.
• Develop automation scripts and workflows to streamline security operations and incident response.
• Integrate Google Chronicle with other security tools (e.g., EDR, firewalls, threat intelligence platforms) to improve threat detection and response.
• Build and maintain comprehensive documentation of the architecture, configurations, and processes.
• Provide training and knowledge transfer to internal teams on the use and administration of the SIEM and SOAR environments.
Required Skills:
• Proven experience in security architecture, engineering, or operations.
• Extensive hands-on experience with Google Chronicle SIEM and SOAR platforms.
• Proven experience in crafting and implementing large-scale SIEM and SOAR solutions.
• Experience with scripting languages (e.g., Python) for automation purposes.
• Strong understanding of security concepts, threat intelligence, incident response, and security operations. Develop parsers for log integration within Google Chronicle.
• Proficiency with security technologies and frameworks (e.g., SIEM, SOAR, EDR, IDS/IPS, firewalls).
• Familiarity with cloud environments (e.g., GCP, AWS, Azure) and cloud security standard processes.
• Knowledge of data normalization, correlation, and threat detection techniques.
• Strong problem-solving skills and ability to work independently as well as part of a team.
• Excellent interpersonal skills, both verbal and written, with the ability to convey sophisticated technical information to non-technical team members.
• Ability to work in a fast-paced environment and prioritize.
• Relevant certifications such as Google Cloud Professional Security Engineer, GIAC Security Expert (GSE), CISSP, or equivalent are a plus.
Life at Capgemini
Capgemini supports all aspects of your well-being throughout the changing stages of your life and career. For eligible employees, we offer:
- Flexible work
- Healthcare including dental, vision, mental health, and well-being programs
- Financial well-being programs such as 401(k) and Employee Share Ownership Plan
- Paid time off and paid holidays
- Paid parental leave
- Family building benefits like adoption assistance, surrogacy, and cryopreservation
- Social well-being benefits like subsidized back-up child/elder care and tutoring
- Mentoring, coaching and learning programs
- Employee Resource Groups
- Disaster Relief
About Capgemini
Capgemini is a global business and technology transformation partner, helping organizations to accelerate their dual transition to a digital and sustainable world, while creating tangible impact for enterprises and society. It is a responsible and diverse group of 340,000 team members in more than 50 countries. With its strong over 55-year heritage, Capgemini is trusted by its clients to unlock the value of technology to address the entire breadth of their business needs. It delivers end-to-end services and solutions leveraging strengths from strategy and design to engineering, all fueled by its market leading capabilities in AI, cloud and data, combined with its deep industry expertise and partner ecosystem. The Group reported 2023 global revenues of €22.5 billion.
Get The Future You Want | www.capgemini.com
Disclaimer
Capgemini is an Equal Opportunity Employer encouraging diversity in the workplace. All qualified applicants will receive consideration for employment without regard to race, national origin, gender identity/expression, age, religion, disability, sexual orientation, genetics, veteran status, marital status or any other characteristic protected by law.
This is a general description of the Duties, Responsibilities and Qualifications required for this position. Physical, mental, sensory or environmental demands may be referenced in an attempt to communicate the manner in which this position traditionally is performed. Whenever necessary to provide individuals with disabilities an equal employment opportunity, Capgemini will consider reasonable accommodations that might involve varying job requirements and/or changing the way this job is performed, provided that such accommodations do not pose an undue hardship.
Capgemini is committed to providing reasonable accommodations during our recruitment process. If you need assistance or accommodation, please reach out to your recruiting contact.
Click the following link for more information on your rights as an Applicant http://www.capgemini.com/resources/equal-employment-opportunity-is-the-law
Please be aware that Capgemini may capture your image (video or screenshot) during the interview process and that image may be used for verification, including during the hiring and onboarding process.
Applicants for employment in the US must have valid work authorization that does not now and/or will not in the future require sponsorship of a visa for employment authorization in the US by Capgemini.