Security Engineer ensuring clients' cybersecurity through effective management of SIEM platforms and onboarding processes. Supporting the development of Managed Sentinel SIEM service with a global team focus.
Responsibilities
Support Intake process including coverage for Eastern Standard Time Business Hours
Assist with day-to-day administration, health monitoring, and maintenance of the SIEM platform
Onboard new log source by following standard operating procedures: (validate connectivity, ensure correct parsing, and confirm events are visible and searchable in SIEM)
Implement and maintain basic SIEM content, including searches, dashboards, alerts, and reports, under guidance from senior engineers or team leads.
Monitor SIEM alerts and dashboards to identify notable events, perform initial triage, and escalate potential security incidents to the appropriate teams with clear documentation.
Help maintain and improve SIEM use cases by documenting false positives, data quality issues, and providing feedback to senior engineers for tuning.
Contribute to documentation (runbooks, standard operating procedures, onboarding checklists) for SIEM operations and use cases.
Follow change management processes for SIEM configuration changes and assist with testing in lower environments when applicable.
Stay current on SIEM best practices, logging standards, and relevant security trends; participate in internal training and knowledge‑sharing sessions.
Utilize tools and analytical skills to investigate the root cause of issues across technologies.
Requirements
Diploma or bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or related field.
Two years of experience in IT security, IT operations, or SOC environment, with working knowledge of SIEM.
Basic understanding of operating systems and standard server/application logs, networking fundamentals (TCP/IP, ports, protocol, firewalls, proxies), and core security concepts (common attack types, authentication/authorization)
Familiarity with at least one SIEM (Splunk, CS NG-SIEM, Palo Alto XSIAM)
Basic query or scripting skills (KQL, SPL, PowerShell, Python)
Strong analytical and problem-solving skills with attention to detail.
Practical written and verbal communication skills for both technical and non-technical audiences
Understanding of the MITRE ATT&CK framework
Experience within a MSSP environment & customer-facing.
Any relevant security certifications or training, such as Security+, SC-200, Splunk/CS NG-SIEM/Palo Alto XSIAM, or similar.
Senior Full Stack Developer specializing in GenAI/ML at Hitachi Energy. Focused on building AI - driven solutions for real‑world cybersecurity challenges.
Senior Security Engineer developing security strategies for QuantumScape's lithium - metal battery technology. Leading incident response and orchestrating threat intelligence initiatives in a high - tech environment.
Principal Threat Assessment Engineer at Salesforce addressing environmental threat assessments and mentoring junior analysts. Engaging with stakeholders to enhance security posture within global infrastructure.
Intern Cyber Security supporting Houston operations of Geosyntec. Engaging in real - world applications of information technology with learning opportunities.
Técnico de Segurança do Trabalho elaborando e acompanhando documentos de segurança na Dossel Ambiental. Focando em conformidade e treinamento para garantir a segurança de trabalhadores.
Security Engineer supporting cybersecurity initiatives at ButcherBox. Collaborating with engineering leadership and cross - functional teams to enhance security operations in cloud infrastructure.
Cybersecurity Solutions Lead responsible for driving business development and delivering security solutions at Quento Technologies. Combines expertise in cybersecurity with commercial awareness to protect digital assets.
Senior Manager of Demand Generation at Nagomi Security building integrated campaigns to drive pipeline growth. Collaborating across teams to connect execution and influence revenue generation.
Director of Information Security leading LiveEO’s global ISMS for compliance and risk governance. Overseeing critical infrastructure security and ensuring adherence to international standards.
Senior Information Security Specialist securing government IT systems in AWS while implementing security measures and providing guidance. Collaborating with teams to enhance security infrastructure and processes.