Design, develop, and deploy SIEM workflows that automate and streamline the detection, analysis, and response to security events
Customize workflows to meet specific SIEM requirements and improve operational efficiency
Develop and maintain SIEM connectors to integrate various data sources, including network devices, servers, applications, and cloud environments
Ensure reliable data ingestion and normalization across diverse sources to provide comprehensive security monitoring
Work with ELT (Extract, Load, Transform) frameworks to integrate and process security data from multiple sources
Leverage technologies such as Kafka, AWS Data Catalog, AWS Glue, and Athena to manage and query large datasets efficiently
Utilize scripting languages like Python, Bash, JavaScript, or PowerShell to automate tasks, develop custom connectors, and enhance SIEM functionality
Contribute to the design and architecture of secure, scalable SIEM solutions aligned with the organization's security strategy
Identify and recommend improvements to system design to enhance performance, reliability, and scalability
Provide strategic recommendations for optimizing security operations, improving system design, and adopting new technologies that align with long-term security goals
Job Qualifications
Technical Expertise
Strong experience with SIEM platforms and best practices in security operations, threat detection, and incident response
Proficiency in scripting languages (Python, Bash, JavaScript, PowerShell) for automation and custom development
Experience with data management tools such as ELT frameworks, Kafka, AWS Data Catalog, AWS Glue, and Athena
Solid understanding of cloud services, particularly AWS, and experience automating tasks with Boto3
Experience in building FedRAMP-compliant systems is a plus
Strategic and Analytical Skills
Ability to think strategically and recommend system design improvements to enhance security operations
Strong analytical skills to assess security threats and optimize SIEM configurations and workflows
Communication and Collaboration
Excellent communication skills with the ability to work closely with cross-functional teams