Principal SIEM Security Engineer
UltraViolet CyberFull Time
Expert & Leadership (9+ years)
Candidates should possess 5+ years of professional experience managing and maintaining SIEM systems, along with 2-3 years of experience working with networks and network architecture. They should also have at least 1 year of experience writing SIEM content specifically for Splunk, and demonstrate expert-level knowledge of Splunk Enterprise Security. Strong skills in dealing with complex technical problems, managing Unix and Linux operating systems, and writing complex regular expressions (Regex) are required. Experience with building threat detections and in-depth knowledge of security logging for Linux, Windows, major EDRs, Firewalls, and Active Directory are also necessary.
The Senior SIEM Engineer will lead the Splunk team by prioritizing client work requests, projects, and service tasks, working closely with Management, Service Delivery, and Principal Engineers to define processes and procedures. They will analyze and identify areas of improvement in existing processes, assist in team development by defining strategies and responsibilities, and develop internal training methods. The role also involves acting as a point of escalation for Junior SIEM Engineers, providing guidance and mentorship, assisting with client activation and onboarding, explaining and demonstrating SIEM products, implementing and configuring SIEM software, developing and deploying content, and interacting appropriately with clients and partners. Additionally, they will perform knowledge transfers, train clients, and provide remote consulting services.
Cybersecurity advisory and solutions provider
Optiv helps businesses manage and reduce cyber risks by providing advisory services and solutions tailored to their specific needs. Their services cover the entire cybersecurity lifecycle, including strategy development, technology validation, and implementation of security measures. They serve nearly 6,000 clients across various industries, such as retail, manufacturing, and healthcare, ensuring that sensitive information is protected and digital systems remain secure. Unlike many competitors, Optiv focuses on customized solutions and ongoing support, adapting to the evolving cybersecurity landscape. Their goal is to empower organizations to secure their operations effectively and prepare for future challenges in technology, such as AI and IoT.