Consulting Systems Engineer, Managed Secops - Emea Mssp & Service Provider
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+2 more
Job description
Senior Consulting Systems Engineer - NOC/SOC, SIEM/SOAR (MSSP & Service Provider) EMEA Location: EMEA (remote) ¡ Travel: up to 20% ¡ Team: CSE Solutions EMEA - SP/MSSP About the role EMEA Service Providers and MSSPs need to turn security operations into a profitable, productized service line not just another cost centre.Fortinetâs SOC platform (FortiSIEM, FortiSOAR, FortiAnalyzer, FortiSOC) gives them the multi-tenant, predictable-economics foundation to do it.Weâre hiring a builder-operator for this.Someone who sees a gap in how MSSPs monetize SOC services, builds the working answer in the lab, and is on stage three weeks later showing partners across EMEA how it works.The person who canât not build, and has strong opinions worth putting in front of a room.Youâll operate with autonomy.There is no playbook waiting for you - youâll create it, ship it, and tell the story.Youâll join a team of ~20 peers across EMEA with a collaborative, peer-led culture: clear domain ownership, decisions made close to the work, and real voice in how the team operates.What youâll own Build the proof, then show it.Stand up working demo environments, multi-tenant PoCs, and reference deployments end-to-end.Detection content, SOAR playbooks, integration glue, hunting queries, all written by you.Then take the work on stage: keynotes at Fortinet events and partner conferences, technical blogs, recorded demos, customer briefings.Productize SOC outcomes.Co-design managed NOC/SOC, MDR, and threat-hunting offerings with MSSP partners, mapping SIEM/SOAR/AI capabilities to service tiers, SLAs, and scalable commercial models.Bring the entrepreneurial lens: what would you productize if this were your business?Augment whatâs already selling.Existing managed services, managed SD-WAN, uniSASE, are prime ground for SOC-led upsell.Design the SecOps wrap that turns these into stickier, higher-margin offerings: managed detection on top of SD-WAN telemetry, automated response inside SASE policy enforcement, SOC-as-a-service tiers layered on uniSASE deployments.Win the technical bar.Lead architecture deep-dives, PoVs, and competitive displacements against major competitors, at the whiteboard, in the lab, and on stage.Enable at depth.Workshops, certification paths, and hands-on labs for Fortinet SEs, partner SOC analysts, and MSSP architects.Close the product loop.Be the SP/MSSP voice into Fortinet on multi-tenancy, AI-driven detection, and SecDevOps requirements, backed by what youâve actually built.What you bring 10+ years in security engineering, pre-sales architecture, or SOC operations, with real time spent inside or alongside an MSSP/MSP/SOC, building production systems.Deep, hands-on expertise with a major SIEM and a SOAR platform, including detection engineering, parser development, and playbook authoring.Strong scripting/automation skills (Python, REST APIs, IaC) and comfort with detection-as-code, CI/CD for SOC content, and AI-assisted triage.Working fluency in threat hunting, MITRE ATT&CK, incident response, and modern SecDevOps practices.Comfortable in front of a room with strong opinions worth listening to.Track record of conference talks, customer keynotes, or executive briefings.Because you have something to show, not because you enjoy the spotlight.Entrepreneurial instinct.You spot opportunities, build the proof yourself, and drive things to outcome without waiting for permission.Youâd rather ship something imperfect than wait for the perfect plan.Fluent English; a second major EMEA language is a strong plus NSE4 certification is highly desirable (or similarv including another vendor cert) if you donât already have this, you will have to complete it as part of the interview process.(voucher provided) #LI-NC1
Requirements
What you bring 10+ years in security engineering, pre-sales architecture, or SOC operations, with real time spent inside or alongside an MSSP/MSP/SOC, building production systems. Deep, hands-on expertise with a major SIEM and a SOAR platform, including detection engineering, parser development, and playbook authoring. Strong scripting/automation skills (Python, REST APIs, IaC) and comfort with detection-as-code, CI/CD for SOC content, and AI-assisted triage. Working fluency in threat hunting, MITRE ATT&CK, incident response, and modern SecDevOps practices. Comfortable in front of a room with strong opinions worth listening to. Track record of conference talks, customer keynotes, or executive briefings. Because you have something to show, not because you enjoy the spotlight. Entrepreneurial instinct. You spot opportunities, build the proof yourself, and drive things to outcome without waiting for permission. Youâd rather ship something imperfect than wait for the perfect plan. Fluent English; a second major EMEA language is a strong plus NSE4 certification is highly desirable (or similarv including another vendor cert) if you donât already have this, you will have to complete it as part of the interview process.
About the company
Barcelona, EspaĂąa
Senior Consulting Systems Engineer - NOC/SOC, SIEM/SOAR (MSSP & Service Provider) EMEA Location: EMEA (remote) ¡ Travel: up to 20% ¡ Team: CSE Solutions EMEA - SP/MSSP About the role EMEA Service Providers and MSSPs need to turn security operations into a profitable, productized service line not just another cost centre. Fortinetâs SOC platform (FortiSIEM, FortiSOAR, FortiAnalyzer, FortiSOC) gives them the multi-tenant, predictable-economics foundation to do it. Weâre hiring a builder-operator for this. Someone who sees a gap in how MSSPs monetize SOC services, builds the working answer in the lab, and is on stage three weeks later showing partners across EMEA how it works. The person who canât not build, and has strong opinions worth putting in front of a room. Youâll operate with autonomy. There is no playbook waiting for you - youâll create it, ship it, and tell the story. Youâll join a team of ~20 peers across EMEA with a collaborative, peer-led culture: clear domain ownership, decisions made close to the work, and real voice in how the team operates. What youâll own Build the proof, then show it. Stand up working demo environments, multi-tenant PoCs, and reference deployments end-to-end. Detection content, SOAR playbooks, integration glue, hunting queries, all written by you. Then take the work on stage: keynotes at Fortinet events and partner conferences, technical blogs, recorded demos, customer briefings. Productize SOC outcomes. Co-design managed NOC/SOC, MDR, and threat-hunting offerings with MSSP partners, mapping SIEM/SOAR/AI capabilities to service tiers, SLAs, and scalable commercial models. Bring the entrepreneurial lens: what would you productize if this were your business? Augment whatâs already selling. Existing managed services, managed SD-WAN, uniSASE, are prime ground for SOC-led upsell. Design the SecOps wrap that turns these into stickier, higher-margin offerings: managed detection on top of SD-WAN telemetry, automated response inside SASE policy enforcement, SOC-as-a-service tiers layered on uniSASE deployments. Win the technical bar. Lead architecture deep-dives, PoVs, and competitive displacements against major competitors, at the whiteboard, in the lab, and on stage. Enable at depth. Workshops, certification paths, and hands-on labs for Fortinet SEs, partner SOC analysts, and MSSP architects. Close the product loop.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on www.buscojobs.com.esGood distractions
Talks and stories from around this role â technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
9 Ways to Make Money Hacking
Why Upskilling And Reskilling is Important For Developers
How to Answer the Interview Question: âWhy Do You Want to Be a Software Engineer?â
Is Software Engineering Over-Saturated?