Cyber Security Engineer – SIEM & SOAR (Specialist, Associate Manager, and Manager) (Manila, Cebu)

Accenture in the Philippines


Date: 8 hours ago
City: Quezon City
Contract type: Full time
Ready to join Accenture’s team of empowered people? We’re looking for candidates with the following skills and experience for this role. Do you fit the profile? If you do, we’d love to hear from you!

In adherence to Accenture’s process of Identity Verification, your resume or CV must include your photo to ensure the accuracy of your application.

Who we are:

Accenture in the Philippines is a pioneer in Accenture’s global delivery network. Over the past 30 years, we have expanded our capabilities to become a powerhouse company providing end-to-end technology and business services. As part of Accenture’s global footprint in over 120 countries, covering 40-plus industries, we have been working with the biggest companies in the country and around the globe.

Innovation, a constant at Accenture, enables us to find new ways to stay ahead of our clients’ challenges. Our inclusive, diverse, and strong culture of equality helps us constantly drive innovation in the workplace. By combining our industry expertise and the deep skills of our people with the latest technologies and our uncompromising high-performance standards, we help organizations grow their business and succeed in the digital age.

What’s in it for you?

At Accenture you will work on meaningful and innovative projects, powered by the latest technologies. You’ll be immersed in industry best practices such as event-driven architectures and domain-driven designs. Accenture will continually invest in your learning and growth. You'll work with Accenture’s certified practitioners, and Accenture will support you in growing your own tech stack and certifications.

Job Summary:

We are looking for an experienced and motivated Cyber Security Engineer specializing in SIEM (Security Information and Event Management) and SOAR (Security Orchestration, Automation, and Response) platforms. In this role, you will be responsible for the design, implementation, and ongoing management of our security monitoring and automated response infrastructure. You will work closely with the Security Operations Center (SOC) team, threat

analysts, and IT stakeholders to enhance threat detection and automate response processes, ensuring a rapid and effective defense against cyber threats.

Key Responsibilities:

SIEM Platform Management:


  • Design, implement, and tune SIEM solutions (e.g., Google SecOps, Splunk, IBM QRadar, Microsoft Sentinel, Elastic Stack, or similar).
  • Create and maintain correlation rules, dashboards, and reports to detect anomalies and security threats.
  • Integrate data sources from various systems (network, endpoints, cloud, applications) into the SIEM.
  • Optimize data ingestion, parsing, and normalization to reduce noise and improve performance.


  • SOAR Platform Integration & Automation:


  • Deploy and manage SOAR platforms (e.g., Google SecOps SOAR, Palo Alto Cortex XSOAR, Splunk SOAR, IBM Resilient, or similar).
  • Design and develop automated playbooks for incident response, threat intelligence enrichment, and alert triage.
  • Collaborate with SOC analysts to streamline workflows and reduce response time through automation.
  • Maintain integrations with ticketing systems, threat intel feeds, and security tools.


  • Security Engineering & Support:


  • Support incident response teams with actionable alerts and automated processes.
  • Perform root cause analysis of recurring security events and develop engineering solutions to prevent them.
  • Collaborate with compliance and audit teams to ensure security controls meet regulatory requirements.
  • Provide training and documentation to SOC and IT teams on the use of SIEM/SOAR tools.


  • Education & Experience:


  • Bachelor’s degree in Cybersecurity, Computer Science, Information Systems, or related field.
  • Minimum of 3 years of experience in cybersecurity, with at least 2 years in SIEM/SOAR administration or engineering.
  • Experience in a Security Operations Center (SOC) environment is preferred.


  • Technical Skills:


  • Strong hands-on experience with at least one major SIEM (e.g., Google SecOps, Splunk, QRadar, Sentinel, ArcSight).
  • Experience with SOAR platforms and playbook development.
  • Proficiency in scripting languages (Python, PowerShell, Bash) for automation and tool integration.
  • Understanding of security frameworks (MITRE ATT&CK, NIST, CIS Controls).
  • Familiarity with EDR/XDR, firewalls, IDS/IPS, threat intelligence platforms, and cloud security tools (AWS, Azure, or GCP).


  • Soft Skills:


  • Excellent problem-solving and analytical skills.
  • Strong written and verbal communication abilities.
  • Ability to work independently and collaborate across cross-functional teams


  • Additional Requirements:


  • Must be willing to work on a shifting schedule and report 3x a week to daily onsite at Cyberpark, Cubao or Cebu


  • What’s in it for you?


  • You will be part of Accenture’s growing community of technology professionals, continually expanding to provide the best services to our clients.
  • At Accenture, you will be working on innovative projects, while being exposed to the latest emerging technologies and industry best-practices.
  • We offer trainings and development programs and courses to help you grow your own tech stack and certifications.


  • What We Believe

    All our leaders are committed to building a better, stronger, and more durable company for future generations to create positive, long-lasting change. Inclusion and diversity are fundamental to our culture and core values. Our rich diversity makes us more innovative and creative, which helps us better serve our clients and our communities.

    Our position as partner to many of the world’s leading businesses, organizations and governments affords us both an extraordinary opportunity and a tremendous responsibility to make a difference. Sustainability is one of our greatest responsibilities, which we embed it into everything we do and for everyone we work with.

    Accenture is committed to providing equal employment opportunities for persons with disabilities. Please let your recruiter know if you require reasonable accommodation to enable your participation in the recruitment process, they will be happy to assist you.

    How to apply

    To apply for this job you need to authorize on our website. If you don't have an account yet, please register.

    Post a resume

    Similar jobs

    Learning & Development Specialist

    Wilcon Depot, Inc., Quezon City
    2 days ago
    Job Overview:The role is responsible for identifying and developing the necessary skills and knowledge profile that every employee should possess, regardless of specialization. This means all employees are provided with essential skills that correlate with the organization's vision, mission, and values (VMV).The role also entails a focus on such training areas as critical and creative thinking, flexibility, ethics in work,...

    Easy Pioneer Account - Nonvoice - Start ASAP

    Caldwell Communications, Quezon City
    3 days ago
    For regular employees, we offer an industry-leading benefits package that includes: Competitive Salary 13th Month Pay HMO with 3 free Beneficiaries on Day One20% ND Maternity/Paternity Leave Opportunity for rapid career growth for Top Performers Retirement/Life Insurance for Qualified Staff Work-life Balance Processes and ProgramsJob Responsibilities Answers phone calls and provides important information/ assistance to clients Checks mail, fax, and...

    Pure chat based - Email Support Representative

    Sapient Global Services, Quezon City
    4 days ago
    Now hiring for Chat Support - Non Voice Account at Metro Manila Sites! We guarantee you an Easy and Fast One-day hiring process and earn up to 25k monthly plus more benefits! This is a limited slot and urgent hiring, so don't miss this career opportunity. Apply now!Responsibilities Manage non-voice account tasks including data entry, email correspondence, and chat support....