ArcSight SIEM Analyst

ennovators LLC - Qatar - Doha

Job Overview: We are seeking a skilled and experienced ArcSight SIEM Analyst to join our cybersecurity team. The ideal candidate will be responsible for the configuration, management, and monitoring of our ArcSight SIEM solution to ensure the detection and mitigation of security threats. This role requires a deep understanding of cybersecurity, incident response, and the ability to analyze and interpret security events. 


Responsibilities: 

  1. ArcSight SIEM Configuration: Configure and maintain ArcSight SIEM to collect and analyze security event data from various sources, including logs from servers, network devices, and applications. 
  2. Incident Detection and Response: Monitor ArcSight alerts and logs to detect and respond to security incidents in real-time. Investigate and analyze security events to identify potential threats and vulnerabilities. 
  3. Rule and Content Development: Develop and maintain ArcSight correlation rules, filters, and content to improve the accuracy and efficiency of security event detection. 
  4. Integration: Collaborate with other cybersecurity and IT teams to integrate ArcSight with other security tools and systems, ensuring seamless communication and data flow. 
  5. Threat Intelligence Integration: Incorporate threat intelligence feeds into ArcSight to enhance the SIEM's ability to detect and respond to the latest cybersecurity threats. 
  6. Documentation: Create and maintain documentation related to ArcSight SIEM configuration, incident response procedures, and other relevant processes. 
  7. Training and Awareness: Provide training to other team members and stakeholders on the use of ArcSight SIEM, best practices, and incident response procedures. 
  8. Continuous Improvement: Stay current with industry trends, emerging threats, and new ArcSight features. Implement continuous improvement initiatives to enhance the effectiveness of the SIEM solution. 


Qualifications: 

  1. Bachelor's degree in Computer Science, Information Security, or a related field. 
  2. Proven experience in configuring and managing ArcSight SIEM. 
  3. Solid understanding of cybersecurity concepts, threat landscape, and incident response. 
  4. Experience with scripting languages (e.g., Python, PowerShell) for automation and customization. 
  5. Relevant certifications such as ArcSight Certified Security Analyst (ACSA) or similar. 
  6. Strong analytical and problem-solving skills. 
  7. Excellent communication and collaboration skills. 
  8. Ability to work in a fast-paced and dynamic environment. 

 


Preferred Skills: 

  1. Experience with other cybersecurity tools and technologies. 
  2. Familiarity with regulatory compliance standards (e.g., PCI DSS, HIPAA). 
  3. Knowledge of network protocols and security architecture. 


Post date: 15 January 2025
Publisher: LinkedIn
Post date: 15 January 2025
Publisher: LinkedIn