Technology Data & Innovation

DEUTSCHE BANK A.G.
Jacksonville, FL, United States
about 1 month ago
Apply on careers.db.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Compensation
$100,000.0 - $157,000.0
Working hours
Regular working hours
Job source

Tech stack

Cyber Security Security Information and Event Management Software Security Microsoft Sentinel Splunk

Job description

As SIEM Engineering & Operations Lead, you will establish single point accountability for the Bank’s SIEM capability, ensuring operational resilience, regulatory compliance, and delivery of the strategic transformation roadmap across SIEM Engineering and SIEM Operations. You will provide end-to-end ownership and leadership of the Bank’s security monitoring platforms, bringing engineering and operations together under one accountable leader. This role is critical to maintaining platform stability, compliance, and operational effectiveness while the SIEM estate expands through SIEM coverage growth, threat-driven onboarding, regulatory remediation, and AI enablement across Security Operations., * Own SIEM platform roadmap execution, service delivery, and operational outcomes across the SIEM estate

  • Lead SIEM Engineering and SIEM Operations teams, including internal colleagues and strategic vendor resources
  • Ensure platform availability, resilience, scalability, and operational effectiveness for the Bank’s security monitoring capability
  • Drive delivery of strategic initiatives, detection engineering expansion, Application Security Monitoring growth, and onboarding of new log and telemetry sources
  • Manage regulatory, audit, cybersecurity, and operational risk obligations associated with SIEM and security monitoring capabilities
  • Establish governance, operational standards, and performance metrics across SIEM engineering and operations functions

How You’ll Lead

  • Act as the senior stakeholder for SIEM platform engagements with Pillar Architecture, Enterprise Security Architecture, CTO pillars and functions, ISTO, Audit, Risk, regulators, and technology partners
  • Set direction and priorities for engineering and operations teams to balance platform resilience, regulatory commitments, and transformation delivery
  • Build clear governance, ownership, and escalation paths across internal teams and vendor partners to support stable and compliant SIEM operations

Requirements

  • Proven experience leading SIEM engineering, SIEM operations, or large-scale security monitoring capabilities in a complex enterprise environment
  • Strong understanding of Splunk, Microsoft Sentinel or comparable SIEM platforms, including platform resilience, scalability, onboarding, operational support, and service delivery
  • Demonstrated ability to manage audit, regulatory, cybersecurity, and operational risk obligations associated with security monitoring platforms
  • Experience leading multidisciplinary teams, including engineering, operations, internal colleagues, and strategic vendor resources
  • Experience managing budgets, financial planning, and vendor performance for technology or cybersecurity services, including oversight of strategic supplier delivery and commercial commitments

Skills That Will Help You Excel

  • Ability to translate technical platform priorities into clear business, risk, and regulatory outcomes for senior stakeholders
  • Strong communication and stakeholder management skills across technology, operations, audit, risk, architecture, and vendor teams
  • Structured, outcome-focused leadership style with the ability to drive governance, accountability, and performance across distributed teams
  • Familiarity with threat-driven security monitoring, detection engineering practices, cyber resilience expectations, and financial services regulatory requirements
  • Relevant cybersecurity, cloud, risk, or technology leadership certifications are beneficial

Benefits & conditions

  • A diverse and inclusive environment that embraces change, innovation, and collaboration
  • A hybrid working model, allowing for in-office / work from home flexibility, generous vacation, personal and volunteer days
  • Employee Resource Groups support an inclusive workplace for everyone and promote community engagement
  • Competitive compensation packages including health and wellbeing benefits, retirement savings plans, parental leave, and family building benefits
  • Educational resources, matching gift and volunteer programs

About the company

We strive for a culture in which we are empowered to excel together every day. This includes acting responsibly, thinking commercially, taking initiative and working collaboratively. Together we share and celebrate the successes of our people. Together we are Deutsche Bank Group. We welcome applications from all people and promote a positive, fair and inclusive work environment.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on careers.db.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:47 min

Exploring career opportunities and recruitment open positions

Kurt Eder · LIVE

1:30 min

The universal and shared team responsibility of software security

Julia Wilson Julia Wilson +1 · World Congress 2025

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

3:55 min

Establishing blameless dialogue surrounding critical software security vulnerabilities

Chris Heilmann +2 · LIVE

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

Videos

See all

Related articles

See all