Description
Summary:
Seeking an experienced Security Infrastructure Engineer with a focus on Google SecOps, SIEM, SOAR, and security automation to support enterprise security.
Highlights:
1. Architect and manage telemetry ingestion across diverse environments
2. Design and develop SOAR playbooks using Python and visual workflow builders
3. Automate incident response, enrichment, and containment activities
**WE ARE HIRING – Security Infrastructure Engineer – Sentinel**
**Location: Qatar**
**Experience: 3–5 Years**
**Focus: Google SecOps \| SIEM \| SOAR \| Security Automation**
We are looking for an experienced Security Infrastructure Engineer – Sentinel to join our team and support enterprise security infrastructure, SIEM/SOAR operations, security automation, and security data ingestion.
**Key Responsibilities**
* Architect and manage telemetry ingestion from GCP, AWS, Azure \& on\-premises environments
* Develop and troubleshoot custom parsers for UDM normalization
* Monitor ingestion rates, latency, data quality, and data drops
* Design and develop SOAR playbooks using Python and visual workflow builders
* Build API integrations with Firewalls, EDR, IAM \& Ticketing systems
* Configure RBAC, threat intelligence integrations, and case management workflows
* Tune YARA/YARA\-L rules in collaboration with SOC teams
* Automate incident response, enrichment, evidence gathering, and containment activities
* Collaborate with Cloud, Infrastructure, and Network teams to troubleshoot connectivity and ingestion issues
**Required Skills**
✅ Google SecOps / Chronicle – Mandatory
✅ 1–2\+ years of hands\-on Google SecOps experience
✅ Strong SIEM/SOAR experience – Splunk, Microsoft Sentinel, QRadar, etc.
✅ Advanced Python scripting and API integration
✅ Hands\-on GCP experience – IAM, Cloud Logging, VPC Service Controls
✅ SQL / BigQuery, YARA/YARA\-L \& Bash
✅ Knowledge of MITRE ATT\&CK \& NIST Cybersecurity Framework
✅ Git, Terraform, Docker/Kubernetes
✅ Strong knowledge of JSON, Protobuf, Regex \& log parsing
Qualifications
* Bachelor’s degree in Computer Science, IT, Cybersecurity, or equivalent
* SIEM certification preferred
* Security\+, CySA\+, CEH, CISSP, or GCIH are an advantage
Pay: QAR10,000\.00 \- QAR13,000\.00 per month
Work Location: In person