09 Aug
|
Artech Information Systems
|
Markham
09 Aug
Artech Information Systems
Markham
Job Title: SIEM Consultant (MS Sentinel & QRadar)
Location: Remote (Canada)
Duration: 12+ months
Introduction
Our client is seeking an experienced SIEM Consultant to support a critical government cybersecurity initiative with the Canadian Digital Service (CDS). The successful candidate will be responsible for designing, implementing, optimizing, and supporting Security Information and Event Management (SIEM) solutions, with deep expertise in MS Sentinel and IBM QRadar. This role requires a highly skilled cybersecurity professional with solid hands-on experience in enterprise security monitoring, threat detection, incident response, and SIEM engineering within complex environments.
Required Skills & Qualifications
- Extensive hands-on experience with SIEM platforms, specifically MS Sentinel and IBM QRadar.
- Strong understanding of Security Operations Centre (SOC) processes and workflows.
- Experience with security event monitoring, threat detection, and incident response.
- Strong knowledge of SIEM architecture and deployment, log collection and integration, security analytics and correlation rules, threat intelligence integration, security dashboards, and reporting.
- Canadian Government security clearance.
- Experience working with enterprise-scale cybersecurity environments.
- Strong knowledge of cybersecurity frameworks and best practices.
- Ability to analyze complex security events and provide actionable recommendations.
- Excellent communication and documentation skills.
- Prior work experience in government or public sector cybersecurity projects is preferred.
Preferred Skills & Qualifications
- Previous experience supporting government or public sector cybersecurity projects.
- Experience with Azure security services and client security ecosystem.
- Experience with scripting/automation (PowerShell, Python, KQL).
- Familiarity with MITRE ATT&CK; framework and threat hunting methodologies.
Day-to-Day Responsibilities
- Design, configure, and optimize SIEM solutions using MS Sentinel and IBM QRadar.
- Develop and maintain security monitoring capabilities, including detection rules, correlation searches, dashboards, and reporting.
- Perform SIEM onboarding activities, including log source integration, data ingestion, parsing, normalization, and troubleshooting.
- Build and enhance threat detection use cases aligned with cybersecurity best practices.
- Support Security Operations Centre (SOC) activities, including alert triage, investigation, and incident response.
- Analyze security events and provide recommendations to improve detection and response capabilities.
- Develop and maintain automation workflows using tools such as MS Sentinel Playbooks / Logic Apps.
- Assist with threat hunting activities and identify opportunities to improve security posture.
- Collaborate with cybersecurity teams, infrastructure teams, and government stakeholders.
- Provide technical guidance, documentation, and knowledge transfer to internal teams.
For immediate consideration please click APPLY to begin the screening process with Alex.
📌 SIEM Consultant (MS Sentinel & QRadar) (Markham)
🏢 Artech Information Systems
📍 Markham