6 дней назад
SIEM Engineer (Cybersecurity)
39 249 - 53 102€
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
SIEM Engineer (Cybersecurity): Developing and operating SIEM and Security Data Lake monitoring infrastructure for real-time threat detection with an accent on log collection, normalization, detection engineering, and security architecture. Focus on integrating diverse log sources, tuning detection rules and dashboards, investigating incidents, and supporting compliance audits across cloud-hosted environments.
Location: Lisbon, Portugal. Hybrid work model with time split between the Lisbon office and remote work.
Salary range: €39,249.60–€53,102.40.
Company
is a healthcare and biotechnology organization using technology and digital innovation to support the development of treatments and improve patient outcomes.
What you will do
- Configure and maintain SIEM and Security Data Lake components, including log collection, ingestion, parsing, and normalization.
- Monitor component health and performance, troubleshoot issues, document findings, and escalate complex problems.
- Implement and test log source integrations and approved configuration changes.
- Validate log data quality and develop or tune detection rules, dashboards, and reports.
- Support incident investigations by providing SIEM data and coordinating with source owners and support teams.
- Maintain documentation, support audits, and recommend improvements to monitoring procedures and configurations.
Requirements
- Master’s degree with 1–2 years of relevant experience, bachelor’s degree with 2–3 years, or diploma with 3–4 years in Information Systems or a related field.
- Knowledge of security monitoring, detection engineering, cybersecurity frameworks, technologies, and best practices.
- Strong understanding of security architecture frameworks and principles.
- Strong English communication skills and the ability to work with global virtual teams.
- Ability to analyze problems, manage multiple priorities, work independently, and collaborate effectively.
- Strong presentation and public speaking skills.
Nice to have
- Experience with Splunk Universal Forwarder, Fluentd, Cribl, QRadar, Elastic, ArcSight, Sentinel, or Security Data Lake solutions.
- Experience with network security, endpoint protection, incident response, and cloud-hosted infrastructure.
- Scripting and automation experience with Python or Bash.
- Experience developing and managing AI agents integrated with APIs, data sources, and automation workflows.
- GCDA, GSEC, CompTIA Security+, or CISSP certification.
Culture & Benefits
- Work on technology supporting scientific breakthroughs and patient care.
- Cloud-first, automation-focused, AI-powered technology environment.
- Collaboration across continents in agile, high-impact teams.
- Access to certifications, training, mentorship, and career mobility.
- Comprehensive healthcare, financial, and well-being benefits.
- Hybrid flexibility between the Lisbon office and remote work.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
10 дней назад
Solutions Consultant (Cybersecurity)
12 дней назад
Strategic Project Manager Cybersecurity
8 дней назад
Senior Information Security Engineer (GRC)
10 дней назад
Network Security Engineer (Firewall/WAF)
11 дней назад
Customer Technical Advisor (Cybersecurity)
8 дней назад