Key Responsibilities
- Design, develop, and deploy SIEM workflows that automate and streamline the detection, analysis, and response to security events
- Customize workflows to meet specific SIEM requirements and improve operational efficiency
- Develop and maintain SIEM connectors to integrate various data sources, including network devices, servers, applications, and cloud environments
- Ensure reliable data ingestion and normalization across diverse sources to provide comprehensive security monitoring
- Work with ELT (Extract, Load, Transform) frameworks to integrate and process security data from multiple sources
- Leverage technologies such as Kafka, AWS Data Catalog, AWS Glue, and Athena to manage and query large datasets efficiently
- Utilize scripting languages like Python, Bash, JavaScript, or PowerShell to automate tasks, develop custom connectors, and enhance SIEM functionality
- Contribute to the design and architecture of secure, scalable SIEM solutions aligned with the organization's security strategy
- Identify and recommend improvements to system design to enhance performance, reliability, and scalability
- Provide strategic recommendations for optimizing security operations, improving system design, and adopting new technologies that align with long-term security goals
Job Qualifications
Technical Expertise
Strong experience with SIEM platforms and best practices in security operations, threat detection, and incident responseProficiency in scripting languages (Python, Bash, JavaScript, PowerShell) for automation and custom developmentExperience with data management tools such as ELT frameworks, Kafka, AWS Data Catalog, AWS Glue, and AthenaSolid understanding of cloud services, particularly AWS, and experience automating tasks with Boto3Experience in building FedRAMP-compliant systems is a plusStrategic and Analytical Skills
Ability to think strategically and recommend system design improvements to enhance security operationsStrong analytical skills to assess security threats and optimize SIEM configurations and workflowsCommunication and Collaboration
Excellent communication skills with the ability to work closely with cross-functional teamsSkills Required
Javascript, Powershell, Bash, Python