SIEM Application Engineer

1 Days Old

Rubicon Consulting is currently recruiting for an SIEM Application Engineer on a 6 month rolling contract based in West Midlands.
Role Summary
· SIEM Solution Development
o Collaborate with security analysts and architects to design and implement SIEM solutions using Elasticsearch.
o Optimize SIEM rules, alerts, and dashboards for efficient threat detection.
· Collaboration:
o Collaborate effectively with others to drive forward key security objectives
o Presentation and documentation writing (to both technical and business audiences)
· Query Optimization and Performance Tuning:
o Write efficient Elasticsearch queries to retrieve relevant security events.
o Monitor and manage the performance of the SIEM infrastructure.
· Security Engineering:
o Contribute to security engineering projects, transitions, and transformations.
o Work closely with security operations and associated security incident response systems
o Stay informed about emerging threats and security best practices.
Requirements:
Essential: · Security and Compliance with Elastic Security
o Set up access controls, authentication, and encryption using Elastic Security features.
o Ensure compliance with data protection regulations.
· Detection Rule Development:
o Ability to create, test, and optimise detection rules to identify suspicious activities and potential threats based on the MITRE ATT&CK Framework
· Performance Tuning with Elasticsearch and Logstash:
o Fine-tune query performance using Elasticsearch indices and mappings.
o Monitor Logstash pipelines and optimize resource utilization.
· Kibana Visualization and Monitoring:
o Leverage Kibana for data visualization, dashboards, and real-time monitoring.
o Create custom visualizations to track data quality metrics and system performance.
· Bachelor’s/Master’s degree in Computer Science, Information Systems, Engineering, or other related fields
· 5+ years of engineering experience in delivering cybersecurity solutions
· Experience in key cyber technologies such as SIEM technologies (Elastic preferred), vulnerability management, access management and other commonly used Enterprise security controls. Ideally from both a development and operational perspective.
Our Company
Rubicon Consulting is a Talent management consultancy which helps you to optimise business performance and competitive advantage by choosing the right people first time
Location:
West Midlands
Job Type:
FullTime
Category:
Engineering