SIEM Application Engineer

1 Days Old

Rubicon Consulting is currently recruiting for an SIEM Application Engineer on a 6 month rolling contract based in West Midlands.

Role Summary

· SIEM Solution Development

o Collaborate with security analysts and architects to design and implement SIEM solutions using Elasticsearch.

o Optimize SIEM rules, alerts, and dashboards for efficient threat detection.

· Collaboration:

o Collaborate effectively with others to drive forward key security objectives

o Presentation and documentation writing (to both technical and business audiences)

· Query Optimization and Performance Tuning:

o Write efficient Elasticsearch queries to retrieve relevant security events.

o Monitor and manage the performance of the SIEM infrastructure.

· Security Engineering:

o Contribute to security engineering projects, transitions, and transformations.

o Work closely with security operations and associated security incident response systems

o Stay informed about emerging threats and security best practices.

Requirements:

Essential: · Security and Compliance with Elastic Security

o Set up access controls, authentication, and encryption using Elastic Security features.

o Ensure compliance with data protection regulations.

· Detection Rule Development:

o Ability to create, test, and optimise detection rules to identify suspicious activities and potential threats based on the MITRE ATT&CK Framework

· Performance Tuning with Elasticsearch and Logstash:

o Fine-tune query performance using Elasticsearch indices and mappings.

o Monitor Logstash pipelines and optimize resource utilization.

· Kibana Visualization and Monitoring:

o Leverage Kibana for data visualization, dashboards, and real-time monitoring.

o Create custom visualizations to track data quality metrics and system performance.

· Bachelor’s/Master’s degree in Computer Science, Information Systems, Engineering, or other related fields

· 5+ years of engineering experience in delivering cybersecurity solutions

· Experience in key cyber technologies such as SIEM technologies (Elastic preferred), vulnerability management, access management and other commonly used Enterprise security controls. Ideally from both a development and operational perspective.

Our Company

Rubicon Consulting is a Talent management consultancy which helps you to optimise business performance and competitive advantage by choosing the right people first time
Location:
Birmingham
Job Type:
FullTime
Category:
Engineering

We found some similar jobs based on your search