SIEM Application Engineer

Rubicon Consulting
Hemel Hempstead, United Kingdom
6 days ago

Role details

Contract type
Temporary contract
Employment type
Part-time (≤ 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Senior
Compensation
£ 75K

Job location

Hemel Hempstead, United Kingdom

Tech stack

Query Performance
User Authentication
Computer Security
Information Systems
Data Visualization
Elasticsearch
Identity and Access Management
Performance Tuning
Query Optimization
Logstash
Security Information and Event Management
Software Vulnerability Management
Mitre Att&ck
Information Technology
Kibana

Job description

o Collaborate with security analysts and architects to design and implement SIEM solutions using Elasticsearch. o Optimize SIEM rules, alerts, and dashboards for efficient threat detection. · Collaboration: o Collaborate effectively with others to drive forward key security objectives o Presentation and documentation writing (to both technical and business audiences) · Query Optimization and Performance Tuning: o Write efficient Elasticsearch queries to retrieve relevant security events. o Monitor and manage the performance of the SIEM infrastructure. · Security Engineering: o Contribute to security engineering projects, transitions, and transformations. o Work closely with security operations and associated security incident response systems o Stay informed about emerging threats and security best practices.

Requirements

Essential: · Security and Compliance with Elastic Security o Set up access controls, authentication, and encryption using Elastic Security features. o Ensure compliance with data protection regulations. · Detection Rule Development: o Ability to create, test, and optimise detection rules to identify suspicious activities and potential threats based on the MITRE ATT&CK Framework · Performance Tuning with Elasticsearch and Logstash: o Fine-tune query performance using Elasticsearch indices and mappings. o Monitor Logstash pipelines and optimize resource utilization. · Kibana Visualization and Monitoring: o Leverage Kibana for data visualization, dashboards, and real-time monitoring. o Create custom visualizations to track data quality metrics and system performance. · Bachelor's/Master's degree in Computer Science, Information Systems, Engineering, or other related fields · 5+ years of engineering experience in delivering cybersecurity solutions · Experience in key cyber technologies such as SIEM technologies (Elastic preferred), vulnerability management, access management and other commonly used Enterprise security controls. Ideally from both a development and operational perspective.

About the company

Rubicon Consulting is a Talent management consultancy which helps you to optimise business performance and competitive advantage by choosing the right people first time!

Apply for this position