Advertisement
in-feed
Atos is seeking a Google SecOps Security Architect to lead the administration, architecture, and optimization of Google SecOps, including Chronicle SIEM and SOAR.
Roles & Responsibilities
- Lead administration, architecture, and optimization of Google SecOps (Chronicle SIEM & SOAR).
- Manage SIEM onboarding, parser development, UDM mapping, correlation rules, dashboards, and automation.
- Support migration, integration, and coexistence of SIEM platforms including ArcSight, QRadar, Splunk, Sentinel, and LogRhythm with Google SecOps.
- Design and implement detection use cases aligned with MITRE ATT&CK.
- Lead log source onboarding, normalization, troubleshooting, and data quality management.
- Develop and optimize YARA-L rules, SOAR playbooks, and threat detection content.
- Manage platform health, performance tuning, upgrades, and vendor coordination.
- Drive security monitoring, threat hunting, incident response, and root cause analysis activities.
- Manage RBAC, IAM integration, access governance, and compliance requirements.
- Provide technical leadership and mentoring to SOC analysts and engineers.
- Support audit, compliance, reporting, and continuous improvement initiatives.
Skills
- Google SecOps (Chronicle SIEM & SOAR)
- SIEM architecture and administration
- YARA-L/KQL rule development
- UDM mapping and parsing using Regex
- Detection engineering and use-case management
- Threat hunting and incident response
- Windows and Linux administration
- Azure, AWS, and GCP security
- MITRE ATT&CK Framework
- API integrations and automation
SIEM Knowledge
Experience in one or more of Microsoft Sentinel, ArcSight, Splunk, IBM QRadar, or LogRhythm is mandatory.
Preferred Certifications
- Google SecOps Certification (mandatory)
- Splunk/Sentinel Certified Administrator
Atos is committed to diversity and inclusion and to a fair work environment.