обновлено 10 дней назад
Lead Security SIEM Engineer
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Lead Security SIEM Engineer (SIEM/Cybersecurity): Designing, implementing, and optimizing SIEM capabilities for threat detection and log analysis across IT, OT, and R&D environments with an accent on scalable detection, security automation, and operational resilience. Focus on integrating SIEM with SOAR, EDR, NDR, and threat intelligence platforms, developing detection logic, and applying ICS/SCADA security frameworks.
Location: Bucharest, Romania; a valid visa and work permit to work in Romania are required
Company
develops secure connectivity and edge processing solutions for embedded applications in the semiconductor industry.
What you will do
- Design, implement, maintain, and optimize SIEM solutions across IT, OT, and R&D environments.
- Aggregate, normalize, and correlate security events while improving detection logic, alert fidelity, dashboards, and use cases.
- Integrate SIEM with SOAR, EDR, NDR, and threat intelligence platforms to automate security workflows.
- Develop SOC playbooks, orchestration, incident response automation, and exposure management workflows.
- Implement data retention strategies and support compliance with organizational and regulatory requirements.
- Collaborate with SOC analysts, threat hunters, security architects, engineering teams, and R&D teams on security strategy.
Requirements
- 7+ years of cybersecurity experience focused on SIEM blue teaming and cyber defense.
- At least 3 years of experience with the CrowdStrike NGSIEM platform.
- At least two certifications from the listed certification options.
- Foundational IT and OT security expertise, including ICS, SCADA, and industrial cyber threats.
- Experience securing R&D environments, embedded systems, proprietary technologies, and intellectual property.
- Knowledge of MITRE ATT&CK Enterprise and ICS, NIST 800-82, IEC 62443, Zero Trust, cloud security, and hybrid security architectures.
Nice to have
- Experience with OT environments and manufacturing systems.
- Certifications such as GSEC, CISSP, CCSP, CompTIA Security+, CompTIA CySA+, AWS Certified Security, or Microsoft SC-200.
Culture & Benefits
- Permanent full-time contract with a bonus plan.
- Flexible work hours and a work-from-home policy.
- 25 vacation days, lunch vouchers, and the option to buy company shares at a 15% discount.
- Online and offline learning opportunities.
- On-site cafeteria, restaurant, relaxation areas, and employee social activities.
Hiring process
- Submit an online application with a CV and motivation letter in English.
- Complete an initial phone or video conversation with a Talent Acquisition Consultant after CV screening.
- Participate in several business interviews.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
4 дня назад
Senior SOC Analyst, Security Operations (AWS/Elastic)
10 дней назад
Research Engineer I - Python & Security (Cybersecurity)
3 дня назад
DevSecOps Adoption Practitioner
14 дней назад
Senior Consultant Automotive & Product Security
12 дней назад
Senior Security Engineer II (Cloud Security)
149 000 - 235 000$
13 дней назад