Cybersecurity SIEM Engineer
Core
Architect, implement, and administer SIEM platforms to ensure security and integrity of cloud-based systems, focusing on threat detection, incident response, and automation.
Role type
Senior Security Information and Event Management (SIEM) Engineer
Builds
Cloud-based SIEM infrastructure, threat detection rules, security dashboards, and automated response playbooks
Domain
Cybersecurity, Cloud Security, SIEM
Deliverable
production ML models | product features | dashboards & analysis | infrastructure
Required skills
SIEM platform architecture, cloud security (AWS/Azure), incident response, log analysis, threat hunting, automation scripting (Python/Bash), SOAR, Infrastructure as Code, CI/CD pipelines
Preferred skills
Master's in Cybersecurity, SANS GIAC GCSA, Splunk certifications, AWS Certified Security Specialty, penetration testing, vulnerability management
Technologies
Splunk, Elastic, AWS, Azure, Python, Bash, PowerShell, Git, Wireshark, Metasploit, Nmap, Burp Suite, ZAP
Responsibilities
Design and maintain scalable SIEM infrastructure in AWS; onboard and normalize data sources; develop threat detection rules and correlation searches; create security dashboards and reports; implement SOAR playbooks for incident response; conduct cloud security hardening and threat modeling; participate in security audits and compliance assessments.
Seniority
Senior, hands-on IC
