SIEM Engineer
Core
Design, implement, maintain, and optimize the organization's Security Information and Event Management (SIEM) platform to support Security Operations, including developing detection use cases, integrating log sources, and enhancing incident response capabilities.
Role type
Senior IC SIEM Engineer
Builds
Enterprise SIEM platforms, detection rules, dashboards, and automated workflows for cyber defense
Domain
Cybersecurity, Security Operations Center (SOC), Cloud Security
Deliverable
production ML models | product features | dashboards & analysis | infrastructure
Required skills
SIEM platform engineering, log ingestion and normalization, correlation rule development, threat hunting, incident response support, automation scripting, compliance reporting
Preferred skills
Financial services domain knowledge, Purple Team collaboration, SOAR integration
Technologies
Microsoft Sentinel, Splunk, QRadar, LogRhythm, Elastic Security, CrowdStrike NG-SIEM, Cribl, KQL, PowerShell, Python, SQL
Responsibilities
Manage and maintain enterprise SIEM platforms; develop and tune detection rules aligned with MITRE ATT&CK; support SOC operations and assist incident responders; automate SIEM administration and monitoring tasks; produce security metrics and executive reporting
Seniority
Senior, hands-on IC