Назад
Company hidden
обновлено 10 дней назад

Lead Security SIEM Engineer

Формат работы
onsite
Тип работы
fulltime
Грейд
lead
Английский
b2
Страна
Romania
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Lead Security SIEM Engineer (SIEM/Cybersecurity): Designing, implementing, and optimizing SIEM capabilities for threat detection and log analysis across IT, OT, and R&D environments with an accent on scalable detection, security automation, and operational resilience. Focus on integrating SIEM with SOAR, EDR, NDR, and threat intelligence platforms, developing detection logic, and applying ICS/SCADA security frameworks.

Location: Bucharest, Romania; a valid visa and work permit to work in Romania are required

Company

hirify.global develops secure connectivity and edge processing solutions for embedded applications in the semiconductor industry.

What you will do

  • Design, implement, maintain, and optimize SIEM solutions across IT, OT, and R&D environments.
  • Aggregate, normalize, and correlate security events while improving detection logic, alert fidelity, dashboards, and use cases.
  • Integrate SIEM with SOAR, EDR, NDR, and threat intelligence platforms to automate security workflows.
  • Develop SOC playbooks, orchestration, incident response automation, and exposure management workflows.
  • Implement data retention strategies and support compliance with organizational and regulatory requirements.
  • Collaborate with SOC analysts, threat hunters, security architects, engineering teams, and R&D teams on security strategy.

Requirements

  • 7+ years of cybersecurity experience focused on SIEM blue teaming and cyber defense.
  • At least 3 years of experience with the CrowdStrike NGSIEM platform.
  • At least two certifications from the listed certification options.
  • Foundational IT and OT security expertise, including ICS, SCADA, and industrial cyber threats.
  • Experience securing R&D environments, embedded systems, proprietary technologies, and intellectual property.
  • Knowledge of MITRE ATT&CK Enterprise and ICS, NIST 800-82, IEC 62443, Zero Trust, cloud security, and hybrid security architectures.

Nice to have

  • Experience with OT environments and manufacturing systems.
  • Certifications such as GSEC, CISSP, CCSP, CompTIA Security+, CompTIA CySA+, AWS Certified Security, or Microsoft SC-200.

Culture & Benefits

  • Permanent full-time contract with a bonus plan.
  • Flexible work hours and a work-from-home policy.
  • 25 vacation days, lunch vouchers, and the option to buy company shares at a 15% discount.
  • Online and offline learning opportunities.
  • On-site cafeteria, restaurant, relaxation areas, and employee social activities.

Hiring process

  • Submit an online application with a CV and motivation letter in English.
  • Complete an initial phone or video conversation with a Talent Acquisition Consultant after CV screening.
  • Participate in several business interviews.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →