Lead SOC engineering initiatives including SOC automation, SIEM–IT Service Management (ITSM) integration, and threat framework mapping and adoption (e.g., MITRE ATT&CK). * Own data ingestion workflows for the Security Information and Event Management (SIEM) system and ensure high-quality, reliable telemetry. * Strong understanding of log structures (JSON, CloudTrail, VPC Flow Logs, Syslog) and schema normalization. * Experience automating data validation, log onboarding, and pipeline health checks.
mehr