Назад
Company hidden
6 дней назад

SIEM Engineer (Cybersecurity)

39 249 - 53 102€
Формат работы
hybrid
Тип работы
fulltime
Грейд
junior/middle
Английский
b2
Страна
Portugal
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
SIEM Engineer (Cybersecurity): Developing and operating SIEM and Security Data Lake monitoring infrastructure for real-time threat detection with an accent on log collection, normalization, detection engineering, and security architecture. Focus on integrating diverse log sources, tuning detection rules and dashboards, investigating incidents, and supporting compliance audits across cloud-hosted environments.

Location: Lisbon, Portugal. Hybrid work model with time split between the Lisbon office and remote work.

Salary range: €39,249.60–€53,102.40.

Company

hirify.global is a healthcare and biotechnology organization using technology and digital innovation to support the development of treatments and improve patient outcomes.

What you will do

  • Configure and maintain SIEM and Security Data Lake components, including log collection, ingestion, parsing, and normalization.
  • Monitor component health and performance, troubleshoot issues, document findings, and escalate complex problems.
  • Implement and test log source integrations and approved configuration changes.
  • Validate log data quality and develop or tune detection rules, dashboards, and reports.
  • Support incident investigations by providing SIEM data and coordinating with source owners and support teams.
  • Maintain documentation, support audits, and recommend improvements to monitoring procedures and configurations.

Requirements

  • Master’s degree with 1–2 years of relevant experience, bachelor’s degree with 2–3 years, or diploma with 3–4 years in Information Systems or a related field.
  • Knowledge of security monitoring, detection engineering, cybersecurity frameworks, technologies, and best practices.
  • Strong understanding of security architecture frameworks and principles.
  • Strong English communication skills and the ability to work with global virtual teams.
  • Ability to analyze problems, manage multiple priorities, work independently, and collaborate effectively.
  • Strong presentation and public speaking skills.

Nice to have

  • Experience with Splunk Universal Forwarder, Fluentd, Cribl, QRadar, Elastic, ArcSight, Sentinel, or Security Data Lake solutions.
  • Experience with network security, endpoint protection, incident response, and cloud-hosted infrastructure.
  • Scripting and automation experience with Python or Bash.
  • Experience developing and managing AI agents integrated with APIs, data sources, and automation workflows.
  • GCDA, GSEC, CompTIA Security+, or CISSP certification.

Culture & Benefits

  • Work on technology supporting scientific breakthroughs and patient care.
  • Cloud-first, automation-focused, AI-powered technology environment.
  • Collaboration across continents in agile, high-impact teams.
  • Access to certifications, training, mentorship, and career mobility.
  • Comprehensive healthcare, financial, and well-being benefits.
  • Hybrid flexibility between the Lisbon office and remote work.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →