Lead SIEM Consultant

Lead SIEM Consultant Job Description Template

Our company is looking for a Lead SIEM Consultant to join our team.


  • Technical scoping of customer requirements;
  • Creating high and low level technical documentation for customer consultancy engagements;
  • Delivery of SIEM design scoping workshops;
  • 3rd line technical support;
  • SIEM technical consultancy covering install, configuration, upgrades and health checks;
  • Providing technical pre-sales support by attending meetings, conference calls, providing technical web demonstrations and in any other way required;
  • Work closely across all internal departments;
  • Lead the continued development of the managed SIEM platform;
  • Assist in the design, creation and maintenance of a library of SIEM use cases;
  • Provide pre-sales support including RFP responses;
  • Lead your own SIEM Consultancy team, motivating, training and providing guidance;
  • Work directly with clients in order to assess their requirements, deployment and integration within the SOC;
  • Map event findings and create use cases;
  • Review security events, assess risk and initiate necessary action.


  • Awareness of National and International security standards;
  • Expert knowledge in SIEM technologies;
  • Project management experience – Prince2 / PMI / MSP;
  • Strong academic record including a relevant undergraduate (Bachelors) degree achieving a 2:1 or above;
  • Must have extensive experience within Logrythm;
  • Experience in Financial Services, Government Organisations or Military;
  • Pre-Sales experience is highly advantageous;
  • Experience managing security risks and vulnerabilities;
  • Scripting or programming experience is beneficial;
  • High level of expertise in Cyber Threat Intelligence;
  • High level of network security expertise;
  • Knowledge of IPS / IDS, Firewall, AWS / Azure;
  • Team leadership skills;
  • Relevant certifications including Splunk Certified Architect / Consultant;
  • Knowledge of big data management / data science is advantageous.