> Markdown version of [/jobs/ext/1471696-ibm-certified-associate-analyst-security-qradar-siem](https://www.wearedevelopers.com/jobs/ext/1471696-ibm-certified-associate-analyst-security-qradar-siem). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # IBM Certified Associate Analyst - Security QRadar SIEM - **Company:** Software, Inc. - **Location:** Columbia, SC, United States (Remote available) - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Software System Penetration Testing, Microsoft Azure, Cloud Computing, Cyber Security, Databases, Open Web Application Security, Runbook, Security Information and Event Management, Software Asset Management, Wireshark, Enterprise Software Applications, QRadar, Information Technology, Cybercrime, Windows Security, Vulnerability Analysis - **Published:** July 28, 2026 - **Apply:** https://www.dice.com/job-detail/b2102e06-4960-4bc6-996d-16c9e6fbacd6 ## About the Role This specific Statement of Work is for a Cyber SOC Experienced Analyst to prevent, detect, investigate, and assist in directing remediation to cyber-attacks and threats against organization enterprise applications, networks, and services by investigating indicators of suspicious and malicious activity, and proactively discovering threats to organization. Individual must have at least 7 years' experience in Security with a MINIMUM of 5 years hands on working with a SIEM creating offenses, alerts and grooming logs. Preference is an individual who has experience leading a CSIRT, CERT, SOC or Investigations team. SIEM preference is QRadar or Azure Sentinel. This position requires previous security operational center experience - monitoring, investigating, alerting, and reporting security threats. It also requires previous experience in developing SOPs and documentation., * Currently using SOAR and SIEM technology * Risk and vulnerability assessments * Incident management * Security information event management (siem) tuning of offenses, alerts * Excellent written and verbal communication skills * Threat hunting * Ability to use industry-leading security tools * Demonstrate knowledge of information security principles and practices * Knowledge of common risks and threats for networking, databases, systems, cloud and web operations * IRS Safeguard Computer Security Evaluation Matrix (SCSEM) * Forensics * Experience in projects involving PCI/NIST security implementations and/or audits. * Windows Security, including Cloud * Wireshark * SIEM tuning of log sources * SIEM systems development/configuration * Penetration Testing * Tenable Security Center Administration * OWASP Top 10 remediation techniques Required Education/Certifications: Seven (7) years of experience in security information technology systems or related area, with a minimum of 5 years utilizing SIEM technology. Cloud Certifications Microsoft Certifications, Azure, Security related GCIH, GCTI, GCCC, GCWN, GSEC, CEH, GCIA, GCFA, GCFE, GREM, CCIM, CFCE, CCE, CIFI, CHFI, CCNA, CCNA Cyber Ops ## Description Candidate will be required to explain previous experience in the following: * Developing offenses and alerts in SIEM and Incident Response tools * Oversight and development of Use Cases, Playbooks/Runbooks, SOP. * Impact of their work on improving the security of an organization. * Network vulnerability and compliance scanning * Review and interpretation of the results thereof * Determination of severity and urgency when evaluating risk * Working with system owners to determine if and when corrective action will be taken. You will have a technical role, supporting the SOC Analysts to find the threat actors attempting to attack infrastructure. You will need to be a technical and professional leader, someone who enjoys training and mentoring teammates, and a person who can encourage and elevate the team. Under general supervision, the contractor will serve as an analyst reporting directly to a functional manager. Contractor will be a team member that ensures the stability and integrity of data, and server services through monitoring, maintenance, support, and optimization of all server infrastructure. This individual has 24/7 on-call responsibilities shared with the group. This position can be remote, but we require contractor to report on-site for one week each quarter at vendor's expense., Proactively search for active intrusions in the environment, recognizing potential, successful, and unsuccessful intrusion attempts and compromises thorough reviews and analyses of relevant event detail and summary information * Work closely with escalation points to close out complex investigation * Conducting holistic, investigative analysis and rating the risk associated with observed activity * Review investigation escalations from SOC Analysts to ensure accurate analysis and provide advice/mentorship * Refine and develop dashboards, queries and reports to continuously improve security situational awareness * Maintain SOC documentation, procedures, processes and hardware and software inventory detail * Demonstrate a sound understanding of security technologies and their function within a networked environment * Adhere to corporate information security guidelines and promote information security among coworkers * Develop reports (manual and automated) to support the development, collection, and reporting of Quality Assurance and Performance metrics. * Performs other duties and special projects as assigned. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Kubernetes and Microservices with Multi-Model Databases](https://www.wearedevelopers.com/videos/382-kubernetes-and-microservices-with-multi-model-databases) - [Technical Documentation - How Can I Write Them Better and Why Should I Care?](https://www.wearedevelopers.com/videos/681-technical-documentation-how-can-i-write-them-better-and-why-should-i-care) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Fault Tolerance and Consistency at Scale: Harnessing the Power of Distributed SQL Databases](https://www.wearedevelopers.com/videos/1146-fault-tolerance-and-consistency-at-scale-harnessing-the-power-of-distributed-sql-databases) - [Bridging AI and Nomad: a Go-based MCP Server for Cluster Control](https://www.wearedevelopers.com/videos/2063-bridging-ai-and-nomad-a-go-based-mcp-server-for-cluster-control) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Data Analyst Salary in the UK](https://www.wearedevelopers.com/magazine/278-data-analyst-salary-in-the-uk)