SIEM Integration Analyst
SIEM Integration Analyst
Hybrid: Duration: Day Rate: £350-£400pd Inside IR35
Role Description:
The SOC/SIEM Integration Analyst supports the onboarding, normalisation, and optimisation of log sources within the SIEM platform to enhance detection, visibility, and operational efficiency for the SOC.
Key Responsibilities
Onboard new log sources and validate ingestion, parsing, and field mappings.
Maintain and update connectors, agents, APIs, and ingestion pipelines.
Support use-case development by ensuring high-quality, actionable data.
Troubleshoot data gaps, parsing failures, and integration issues.
Collaborate with SOC analysts to refine alert quality and reduce false positives.
Maintain documentation and support incident and change processes.
Technical Skills
Experience with SIEM platforms (Sentinel, Splunk, QRadar), log formats, and API integration.