{"id":1318594,"url":"https://alion.io/job/cmcglobal-cyber-security-engineer-siemsoc","title":"Cyber Security Engineer (SIEM/SOC)","company":{"id":3827704,"name":"CMC Global","domain":"cmcglobal.com.vn","url":"https://alion.io/company/cmcglobal","size_band":"201-500","is_staffing_agency":false,"employer_type":"staffing","is_intermediary":false,"listed_via":null,"ats_vendor":"Career site","truth_index":null},"role":"Security","role_family":"Security","seniority":null,"employment_type":null,"work_mode":"on_site","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":["Vietnam"],"countries":["VN"],"hiring_countries":[],"hiring_countries_total":0,"salary":null,"salary_estimate":{"min_usd":36000,"max_usd":96000,"period":"year","method":null,"sample_n":2443},"experience_years_min":null,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"DLP","optional":false},{"name":"SIEM","optional":false},{"name":"AWS","optional":true},{"name":"Azure","optional":true},{"name":"GCP","optional":true},{"name":"PowerShell","optional":true},{"name":"Python","optional":true},{"name":"Red Teaming","optional":true},{"name":"Splunk","optional":true}],"status":"live","first_seen_at":"2026-03-01T07:25:00Z","employer_posted_date":"2026-09-26","last_verified_at":"2026-09-26T23:32:15Z","board_verified":true,"closed_at":null,"days_open":209,"trust":{"level":"ghost","repost_count":0,"flags":["stale","company_stale"],"days_open":209},"description":"JOB DESCRIPTION\nWe are seeking to expand our Cyber Security capabilities and are looking for an experienced Cyber Defense Center (CDC) Subject Matter Expert (SME) with expertise in SIEM, threat detection engineering, incident response, and data loss prevention. The ideal candidate will have a comprehensive understanding of various cybersecurity domains and will play a critical role in enhancing our cybersecurity posture. This role requires hands-on experience in detecting and responding to security threats, configuring detection tools, and collaborating with cross-functional teams to prevent cyber incidents.\nWe are looking for the mix of following skills and experience:\nSIEM:\nManage and configure SIEM to collect, analyze, and visualize security data.\nDesign and implement SIEM searches, alerts, and dashboards to detect suspicious activities and improve threat visibility.\nWork with IT and security teams to integrate SIEM with other security tools and platforms.\nThreat Detection Engineering:\nDevelop, tune, and optimize threat detection mechanisms to identify potential threats in real-time.\nDesign custom detection rules, signatures, and use cases for various attack techniques and indicators of compromise (IoCs).\nPerform ongoing monitoring and analysis of threat trends, utilizing threat intelligence to enhance detection strategies.\nIncident Response:\nLead incident response efforts by identifying, investigating, and responding to security incidents.\nPerform root cause analysis and implement corrective actions to prevent future occurrences.\nWork closely with IT and business teams to communicate the impact of security incidents and coordinate recovery efforts.\nData Loss Prevention (DLP):\nImplement and manage DLP solutions to monitor and prevent unauthorized access to sensitive data.\nDevelop and enforce DLP policies, ensuring compliance with industry standards and regulations.\nInvestigate DLP alerts and coordinate with teams to resolve data leakage incidents.\nCybersecurity Expertise Across Domains:\nProvide guidance and expertise across multiple cybersecurity domains such as networksecurity, application security, identity and access management, and cloud security.\nStay updated on the latest security trends, vulnerabilities, and regulatory requirements.\nParticipate in risk assessments, security audits, and compliance activities.\nCollaboration and Mentorship:\nCollaborate with other cybersecurity and IT teams to ensure integrated security defensesacross the organization.\nProvide mentorship and training to junior staff members, fostering a culture of continuous learning and improvement within the cybersecurity team.\nThreat Hunting:\nProactively search for and identify cyber threats and malicious activities that evadetraditional detection methods.\nAnalyze security data and intelligence to uncover advanced persistent threats (APTs)and unknown threat patterns.\nDevelop and execute threat hunting playbooks and techniques using advanced tools and methodologies.\nCollaborate with security analysts and engineers to strengthen detection and prevention strategies based on threat-hunting insights.\nREQUIREMENTS\nQualifications:\nEducation: Bachelor’s degree in Computer Science, Information Security, or a related field (or equivalent work experience).\nExperience: hands-on experience in cybersecurity roles, with a focus on SIEM, threatdetection engineering, incident response, and DLP.\nHands on: Fundamental understanding how security tools work instead of knowingwhich button to push.\nCertifications (not necessary, but nice to have):\nGIAC Certified Incident Handler (GCIH)\nSplunk Certified Architect\nRequired Skills:\nGeneral understanding of at least one SIEM architecture, queries, dashboarding, andalerting.\nKnowledge of threat detection techniques, SIEM solutions, and security operations.\nHands-on experience with incident response, root cause analysis, and forensic investigations.\nFamiliarity with DLP techniques for preventing data breaches.\nExcellent problem-solving skills, with the ability to make decisions under pressure during incidents.\nStrong communication skills to effectively collaborate with technical and non-technical stakeholders.\nPreferred Skills:\nKnowledge of cloud security (AWS, Azure, GCP).\nFamiliarity with automation and scripting (e.g., Python, PowerShell).\nUnderstanding link between vulnerability management, penetration testing, and red teaming.\nBENEFITS\nPackage: 14 salary months + Project bonus (If any) + Extra package: 16M/year + Allowances shift working\nYoung and dynamic working environment.\nContinuous development of hard and soft skills through work and professional trainings.\nOpportunity to approach newest technology trends\nExciting leisure: sport and art events (football club, family day…)\nCompany’s labor policy completely pursuant to Vietnamese labor legislation plus other benefits offered by the company (Company trip, Holiday, etc.)\nHOW TO APPLY\nPlease send your application via email: \n*By submitting your application to , you acknowledge that you have read, understood, and agreed to CMC Global’s REGULATIONS ON THE PROTECTION OF CANDIDATES’ PERSONAL INFORMATION.\nThe post Cyber Security Engineer (SIEM/SOC) appeared first on CMC Global.","description_format":"text","description_chars":5270,"description_truncated":false,"requirements":{"experience_years_min":null,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":{"level":"bachelor","optional":true},"security_clearance":false,"languages":[]},"benefits":["Continuous learning"],"hiring_locations":[],"hiring_excludes":[],"relocation_offered":false,"industries":["Cybersecurity","Information Security","Incident Response","Security Operations"],"lifecycle":[{"event":"open","at":"2026-09-26T20:13:45Z"}],"liveness":{"score":4,"band":"cold","label":"Long shot","p_open":1,"p_active":0.127,"p_room":0.28,"age_days":209,"expected_fill_days":33,"reasons":["conf:5","ghost","win:tail","crowd:brand"],"computed_at":"2026-09-27T05:18:48Z"},"pay":null,"html_url":"https://alion.io/job/cmcglobal-cyber-security-engineer-siemsoc","json_url":"https://alion.io/job/cmcglobal-cyber-security-engineer-siemsoc.json","meta":{"generated_at":"2026-09-27T05:18:48Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":4660,"day_limit":5000,"remaining_today":340,"minute_limit":60,"resets_at":"2026-09-28T00:00:00Z"}}}