IT Security Expert creating and managing SIEM solutions to strengthen Europe's defence capabilities. Collaborating in a small elite team to solve significant security challenges rapidly.
Responsibilities
Design, build, and operate a centralised Security Information and Event Management (SIEM) platform to aggregate and analyse security logs across infrastructure, networks, and applications.
Own security log analysis, vulnerability management and incident investigation: establish baselines, create alerting rules for critical security events, and drive rapid incident investigation through log correlation.
Perform security hardening on systems and applications: define hardening standards, implement configurations, and audit compliance.
Investigate security incidents through log analysis and become the on-call responder when something breaks or looks suspicious.
Collaborate closely with Information Security Management to ensure compliance with security policies, regulations (Cyber Essentials, DEF STAN 05-138, ISO 27001, Grundschutz++), and customer requirements.
Build and maintain comprehensive documentation of SIEM architecture, hardening standards, incident response procedures, and security controls for auditors and team.
Requirements
3+ years hands-on SIEM deployment & log analysis (preferably ELK Stack, Opensearch, Wazuh, Microsoft Defender); production incident investigation experience.
Deep knowledge of Linux & Windows system hardening; hands-on experience with CIS Benchmarks, STIGs, or similar frameworks.
Strong scripting for security automation, log parsing, and alerting rule development.
Experience working in compliance-driven environments.
Ability to design security controls that balance operational friction with security posture.
Security-minded by default: you think in access control, threat detection, and audit-ability.
High autonomy and good judgement. You can investigate incidents end-to-end and escalate appropriately.
Practical operator, not a perfectionist. You prioritise getting secure systems in place and improving iteratively.
Benefits
A mission-driven environment with direct impact on Europe's defence capability and sovereign security.
Ownership and autonomy: you own SIEM deployment, hardening standards, and incident response. No micromanagement, just clear objectives and accountability for outcomes.
Daily collaboration with top experts across engineering, operations, and defence leadership.
A fast-paced environment where good ideas are implemented quickly, and your security work directly improves company resilience.
A culture that values clarity, integrity, and excellence, and supports people who take initiative and push boundaries responsibly.
Competitive compensation and real share options aligned to responsibility and impact, not tenure or hierarchy.
OT Cybersecurity Engineer deploying and managing security solutions for operational technology environments at Solventum. Collaborates with teams to improve security posture and provide user support.
Principal Cybersecurity role at AT&T focusing on cloud security feature design and implementation. Leading innovative security solutions in conjunction with modern cloud technologies and Agile methodologies.
Cloud Security Vulnerability Management Program Specialist ensuring secure configurations of cloud workloads. Focused on vulnerability management, monitoring, and risk remediation across environments at Bank of America.
Security Architect delivering secure solutions for Defence and National Security at SiXworks. Supporting agile teams in technical projects like Kubernetes and security risk management.
CIS Security Manager responsible for EID’s information security strategy and compliance. Ensuring protection of information assets and promoting security culture across the organization.
Cyber Security Subject Matter Expert at CACI supporting a new DoD contract. Working on cloud security with an emphasis on system security engineering and risk management.
Cybersecurity Engineer developing solutions for complex security challenges protecting data and networks. Implementing next generation security solutions for government and commercial clients in hands - on roles.
Information Security Manager responsible for security governance and risk management. Engaging with technical teams for compliance with security standards and best practices.
Security Access Control Specialist at AMERICAN SYSTEMS managing database queries, document processes, and security measures. Supporting federal government programs through effective security operations in McLean, VA.