
LogRhythm SIEM Deployment Engineer
- Riyadh
- Permanent
- Full-time
- Lead end-to-end deployment of LogRhythm SIEM platform, including planning, architecture design, installation, configuration, and tuning.
- Integrate log sources from various platforms (Windows, Linux, firewalls, routers, endpoint protection, etc.).
- Develop custom parsers and log normalization rules.
- Build correlation rules, alerts, dashboards, and reports based on customer requirements.
- Conduct use case development, threat detection tuning, and optimization of false positives.
- Collaborate with SOC teams to ensure effective threat monitoring and incident detection.
- Document implementation procedures, configuration guides, and troubleshooting steps.
- Provide knowledge transfer and training to internal teams or clients.
- Ensure compliance with industry standards (e.g., NCA ECC, SAMA CSF, ISO 27001).
- Bachelor’s degree in Computer Science, Cybersecurity, or related field.
- 3–7 years of experience in SIEM deployment and cybersecurity.
- Proven experience with LogRhythm SIEM deployment in enterprise environments.
- Strong understanding of log analysis, incident response, and threat detection.
- Familiarity with log source integration: Windows Event Logs, Syslog, NetFlow, etc.
- Scripting experience (PowerShell, Python, etc.) is a plus.
- Knowledge of cybersecurity frameworks (MITRE ATT&CK, NIST, etc.) is an advantage.
- LogRhythm certifications (e.g., LogRhythm Deployment Fundamentals, LogRhythm Analyst) are a strong plus.
- LogRhythm Certified Deployment Engineer
- CompTIA Security+ / CySA+
- GIAC (GCIA, GCIH)
- CEH or equivalent