Security Architect - FortiSIEM/Fortisoar
Location: Bangalore
Experience: 8 to 15 Years
Job Summary
We are seeking an experienced Security Architect with strong expertise in FortiSIEM and FortiSOAR to design, implement, and optimize enterprise cybersecurity monitoring, detection, and response solutions. The ideal candidate will have hands-on experience in SIEM/SOAR architecture, security operations, use case development, incident response, and security automation.
Key Responsibilities
- Design, implement, and maintain enterprise-scale FortiSIEM and FortiSOAR solutions.
- Lead SIEM/SOAR architecture discussions and provide technical guidance to SOC teams.
- Develop and optimize security monitoring use cases, correlation rules, dashboards, and reports.
- Design automated incident response workflows, playbooks, and orchestration capabilities.
- Integrate FortiSIEM/FortiSOAR with security tools such as EDR, IAM, firewalls, vulnerability scanners, ticketing systems, and threat intelligence platforms.
- Perform log source onboarding, parsing, normalization, and event correlation.
- Conduct threat hunting, incident investigations, and root cause analysis.
- Ensure alignment with security frameworks such as MITRE ATT&CK, NIST, and Cyber Kill Chain.
- Drive security architecture reviews and recommend improvements to strengthen detection and response capabilities.
- Support SOC maturity initiatives and security automation strategies.
- Provide mentorship and technical leadership to engineers and analysts.
Required Skills
- 8+ years of cybersecurity experience with expertise in SIEM and SOAR technologies.
- Strong hands-on experience with FortiSIEM administration, deployment, and use case development.
- Experience with FortiSOAR playbook creation, integrations, and workflow automation.
- Knowledge of security monitoring, incident response, threat detection, and threat hunting.
- Experience integrating security tools such as:
- EDR/XDR solutions
- Firewalls
- IAM platforms
- Vulnerability management tools
- Threat Intelligence Platforms
- Strong understanding of TCP/IP, network security, Windows, Linux, and cloud security.
- Proficiency in scripting (Python, PowerShell, or REST APIs) for automation.
- Experience with log management, event correlation, and security analytics.
Preferred Skills
- Experience with MITRE ATT&CK framework.
- Knowledge of cloud platforms (Azure, AWS, GCP).
- Experience with Fortinet security products.
- Security certifications such as CISSP, GCIH, GCIA, CEH, Fortinet NSE/FCP/FCS certifications.
Education
- Bachelor's degree in Computer Science, Information Security, or a related field.