SIEM Data Engineer
Role details
Job location
Tech stack
Job description
Design and maintain scalable SIEM and security telemetry pipelines across hybrid and multi-cloud environments Lead onboarding of security telemetry from cloud, network, endpoint, identity, application, SaaS, and infrastructure platforms Build and optimize data pipelines using Splunk, Databricks, Cribl Stream, and related technologies Validate data quality, improve log fidelity, and optimize telemetry performance and cost Automate deployment, monitoring, and operational support using CI/CD and Infrastructure as Code Collaborate with Security Operations, Detection Engineering, Data Science, Infrastructure, and Cloud teams to enhance cyber defense capabilities
Requirements
8+ years of experience in SIEM Engineering, Cybersecurity Data Engineering, or Security Platform Engineering Strong hands-on expertise with Splunk, Cribl Stream, and SIEM/log analytics platforms Experience with Databricks, SQL, Spark SQL, Python, PySpark, and cloud-native telemetry pipelines Strong knowledge of DevOps, DataOps, DevSecOps, CI/CD, and Infrastructure as Code Excellent troubleshooting, mentoring, documentation, and stakeholder management skills