PwC

Cybersecurity

SeniorAssociate-SIEMImplementationEngineer

$85–135k Toronto, Ontario, Canada FULL TIME Remote Friendly
Market Sentiment
HIGH DEMAND

Neural analysis suggests this role is
optimal for Senior Associate candidates.

The Brief

“Senior Associate-SIEM Implementation Engineer at PwC. Skills: SIEM Implementation, Microsoft Sentinel, Google SecOps, Cybersecurity. Lead technical deliverables for SIEM implementation. Lead technical deliverables for SIEM operations”

Industry & Context.

Cybersecurity
Problems you'll solve

Analytical skills; Problem-solving skills; Troubleshooting

What They're Looking For.

Must Have

Hands-on experience with Microsoft Sentinel, Hands-on experience with Google SecOps, Hands-on experience with Palo Alto XSIAM, Hands-on experience with Devo, Hands-on experience with Splunk, Understanding of SIEM architecture, Understanding of SIEM implementation, Understanding of SIEM integration, Understanding of log management, Understanding of threat detection methodologies, Experience developing security use cases, Experience tuning security use cases, Experience developing security alerts, Experience tuning security alerts, Proficiency in Python, Proficiency in PowerShell, Proficiency in Bash, Experience with Azure, Experience with GCP, Experience with AWS, Familiarity with REST APIs, Familiarity with JSON, Experience integrating third-party security tools, Experience with SOAR platforms, Experience with playbook development, Understanding of cyber-attacks, Understanding of threat vectors, Understanding of risk management, Understanding of incident management, Experience deploying SIEM content through CI/CD, Experience managing security data pipelines, Experience managing ingestion workflows, Understanding of AI concepts, Understanding of AI tools

Nice to Have

Knowledge of data pipeline tools including Cribl, Understanding of AI concepts applied in security-oriented use cases

What You'll Do.

Lead technical deliverables for SIEM implementation

Lead technical deliverables for SIEM operations

Perform Proof of Concept engagements

Perform Proof of Value engagements

Conduct SIEM assessments

Recommend SIEM improvements

Align SIEM with security best practices

Develop data pipelines for log ingestion

Develop data pipelines for log normalization

Develop data pipelines for log enrichment

Integrate log sources using connectors

Integrate log sources using custom scripts

Integrate log sources using parsers

Build use cases aligned with NIST

Build use cases aligned with MITRE ATT&CK

Implement detection rules using SPL/KQL

Develop dashboards for security monitoring

Develop alerts for security monitoring

Develop workbooks for security monitoring

Implement SOAR workflows

Perform SIEM health checks

Perform SIEM optimization

Create architecture diagrams

Create onboarding guides

Collaborate with SOC teams

Collaborate with threat hunters

Collaborate with infrastructure teams

Collaborate with cloud teams

Support SIEM delivery

Ensure quality standards

Deploy SIEM content through CI/CD

Implement detection use cases

Perform operational readiness activities

Develop custom integrations to SIEM platforms

Develop scripts for SIEM integration

Develop APIs for SIEM integration

Develop parsers for SIEM integration

Develop data transformation logic for SIEM

Manage SIEM data pipeline activities

Apply AI capabilities in security

Improve detection engineering

Improve content optimization

Improve operational efficiency

Improve analytical outcomes

How You'll Work.

Team & Collaboration

Cross-functional teams; SOC teams; Threat hunters; Infrastructure teams; Cloud teams

Communication Scope

Client engagement skills

Process & Methodology

CI/CD practices, Version control, Peer review, Change tracking

Full Job Description

**Line of Service** Advisory **Industry/Sector** Not Applicable **Specialism** Cybersecurity & Privacy **Management Level** Senior Associate **Job Description & Summary** At PwC, our people in cybersecurity focus on protecting organisations from cyber threats through advanced technologies and strategies. They work to identify vulnerabilities, develop secure systems, and provide proactive solutions to safeguard sensitive data. As a cybersecurity generalist at PwC, you will focus on providing comprehensive security solutions and experience across various domains, maintaining the protection of client systems and data. You will apply a broad understanding of cybersecurity principles and practices to address diverse security challenges effectively. **The Opportunity:** As a Senior Associate-SIEM Implementation Engineer, unlock your potential and embrace the chance to drive meaningful outcomes that’ll elevate your career. Your role will include, but isn’t limited to: * Lead technical deliverables for SIEM implementation and operations including Microsoft Sentinel, Google SecOps, Palo Alto XSIAM, and Devo. * Perform Proof of Concept (PoC) and Proof of Value (PoV) engagements to evaluate SIEM capabilities and demonstrate value to stakeholders. * Conduct SIEM assessments to identify gaps, recommend improvements, and align with security best practices. * Develop and maintain data pipelines for log ingestion, normalization, and enrichment across cloud and on-prem environments. * Integrate log sources using connectors, custom scripts, and parsers to ensure complete visibility and compatibility with SIEM platforms. * Build use cases aligned with NIST and MITRE ATT&CK frameworks to enable detection at various stages of a cyber-attack. * Implement detection rules using SPL/KQL with complex correlation across different data sources. * Develop dashboards, alerts, and workbooks for security monitoring and reporting. * Implement SOAR workflows using Logic Apps, Phantom, Demisto, and X

Free ATS check

Applying for this Senior Associate-SIEM Implementation Engineer role?

Most applicants get filtered before a human reads their resume. See if yours makes the cut.

How to Apply on Workday

  • Workday has a multi-step form — save your progress after every section.
  • "Apply With LinkedIn" can fail or lose data; manual entry is more reliable.
  • Watch for the "Submit for Review" final step — hitting "Save" alone does not submit.
  • Job requisition numbers are useful when following up with HR by email.

ANONYMOUS · UNFILTERED

What do employees actually say about PwC?

Real rants from real employees. Read before you apply.

Read Company Rants →