
SIEM Engineer II
Posted Jul 30

Posted Jul 30
This is a fully remote position, open to applicants in India.
• Oversee the complete implementation or integration of SIEM solutions within a client's environment.
• Analyze client business needs and the relevant threat landscape of their industry to create customized use cases for security and incident monitoring.
• Collaborate with clients to install collectors and agents within their on-premises networks for data gathering and forwarding.
• Partner with clients to design and implement secure data transfer processes into the Securonix cloud, adhering to industry-standard best practices.
• Work alongside service delivery managers, management, engineering, maintenance, and operational support teams to ensure timely project execution.
• Create content, use cases, data models, dashboards, and connectors tailored to meet specific user requirements.
• Diagnose and resolve end-to-end network and infrastructure challenges during the data onboarding process.
• Implement and integrate the Securonix SOAR solution with the client's infrastructure for effective response orchestration.
• Interact with clients and internal product development teams to gather user needs, propose new product features, and enhance existing features.
• Educate and empower clients and partners to ensure successful adoption of the solutions.
• Minimum of 4 years of experience in the fields of information security and SIEM.
• In-depth knowledge of SIEM solutions such as Splunk, Qradar, ArcSight, Logrhythm, and Exabeam.
• Proven experience in deploying SIEM systems across various clients.
• Strong familiarity with MITRE ATT&CK matrices, kill chains, and other attack models.
• Proficient in scripting languages such as Python and Powershell.
• Relevant industry certifications like CISSP, CISM are preferred.
• Preferred qualifications include a BS degree in Computer Science, Information Systems, or Cybersecurity.
• 3-4 years of experience in deploying UEBA systems.
• Practical knowledge of machine learning applications within cybersecurity.
• Familiarity with cloud technologies such as Amazon Web Services, Azure, and Google Cloud.
• Good understanding of log collection methodologies and aggregation techniques, including Syslog-NG, syslog, Nxlog, and Windows Event Forwarding.
• Familiarity with the Hadoop ecosystem and Apache technologies.
• Experience integrating endpoint security and host-based intrusion detection solutions.
• Proficient in network forensics and familiar with toolsets such as Wireshark, PCAP, and tcpdump.
• Health Insurance providing a total sum insured of INR 7,50,000, covering Self, Spouse, 2 children, and dependent parents or parents-in-law.
• Personal Accident insurance offering a total sum insured of INR 10,00,000.
• Term Life Insurance with coverage amounting to 5 times the fixed base pay for employees.
Anduril Industries
Sargent & Lundy
Sargent & Lundy
Get handpicked remote jobs straight to your inbox weekly.