Exp 5 to 7 yrs Design, develop and deploy SIEM workflows that automate and streamline the detection, analysis, and response to security events.
Customize workflows to meet specific SIEM requirements to improve operational efficiency.
Ability to develop and maintain SIEM connectors to integrate various data sources, including network devices, servers, applications, and cloud environments.
Ensure reliable data ingestion and normalization across diverse sources to provide comprehensive security monitoring.
Work with ELT (Extract, Load, Transform) frameworks to integrate and process security data from multiple sources.
Leverage technologies such as Kafka, AWS Data Catalog, AWS Glue, and Athena to manage and query large datasets efficiently.
Utilize scripting languages like Python, Bash, JavaScript, or PowerShell to automate tasks, develop custom connectors, and enhance SIEM functionality.
Contribute to the design and architecture of secure, scalable SIEM solutions that align with the organizations security strategy.
Identify and recommend improvements to system design that enhance performance, reliability, and scalability.
Provide strategic recommendations for optimizing security operations, improving system design, and adopting new technologies that align with long-term security goals.
Job Qualifications.
Technical Expertise:.
Strong experience with SIEM platforms and best practices in security operations, threat detection, and incident response.
Proficiency in scripting languages (Python, Bash, JavaScript, PowerShell) for automation and custom development.
Experience with data management tools such as ELT frameworks, Kafka, AWS Data Catalog, AWS Glue, and Athena.
Solid understanding of cloud services, particularly AWS, and experience automating tasks with Boto3- Experience in building FedRAMP compliant systems is a plus.
Strategic And Analytical Skills.
Ability to think strategically and recommend system design improvements to enhance security operations.
Strong analytical skills to assess security threats and optimize SIEM configurations and workflows.
Communication And Collaboration.
Excellent communication skills with the ability to work closely with cross-functional teams.