Description
Job Summary:
We are seeking a SIEM Engineer QRadar to manage the operation and evolution of IBM QRadar environments, including use case development, rule tuning, integrations, advanced incident investigation, and support for the CSIRT.
Key Highlights:
1. Operation and evolution of IBM QRadar environments.
2. Design and automation of playbooks in IBM SOAR.
3. Advanced incident investigation and threat hunting.
About the Company
At Sourcing Trust, we are committed to delivering innovative, reliable, and customized technology solutions that empower businesses to thrive in a rapidly evolving digital landscape. Focused on excellence, integrity, and collaboration, we build lasting partnerships by understanding each client’s unique needs and providing specialized support across all stages. Our team is dedicated to fostering a positive and inclusive workplace where every employee’s contribution is valued, encouraging continuous growth, learning, and shared success. Join us and become part of a passionate organization driven by innovation and excellence.
About the Role
We are seeking a SIEM Engineer QRadar to manage the operation and evolution of IBM QRadar environments, including use case development, rule tuning, integrations, and advanced incident investigation. The role involves IBM SOAR playbook design, threat hunting, log source integration, technical documentation, and CSIRT support within a mature SOC operation.
Requirements
Mandatory Experience
**5 years with IBM QRadar SIEM (administration + operation):** rules, CRE, tuning, parsing, dashboards, investigations.
**1 year with IBM SOAR:** playbooks, workflows, cases, automations.
**Mandatory Certifications (at least one):**
IBM Certified Analyst – QRadar SIEM
IBM Certified Deployment Professional – QRadar SIEM
IBM Certified Administrator – QRadar SIEM
Main Responsibilities
**QRadar operation and evolution:** use cases, rules, tuning, integrations.
Design and automation of playbooks in IBM SOAR.
Advanced incident investigation and threat hunting.
Integration of new log sources.
Creation of technical documentation and CSIRT support.
Preferred Qualifications
**Microsoft Sentinel:**
KQL / Hunting
Analytic rules
Data connectors
Workbooks
**Cross-functional Skills:**
SOC operations
Incident response
MITRE ATT&CK
Integration and tuning of multiple log sources (EDR, Cloud, Firewalls)
**Preferred Certifications:**
Additional IBM certifications
Microsoft SC-200 / SC-300 / SC-400
CEH, GCIA, GCIH, CySA+, CSA, etc.
Language Requirements
English B2 or higher.
Fluent Portuguese.
**Send your CV to:** with subject line "IT_SiemQ".
**Join us:** SIEM Engineer QRadar | Sourcing Trust
#BecomeATruster
**Original job posting available at:** https://www.itjobs.pt/oferta/511246/siem-engineer-qradar