Security Information and Event Management Engineer

  • location: Philadelphia, PA
  • type: Contract
  • salary: $53 per hour
easy apply

job description

Security Information and Event Management Engineer

job summary:
Summary

This position is best suited for an experienced Security Information and Event Management Engineer with a proven understanding of enterprise security. The successful candidate will possess deep technical knowledge on a number of security technologies; have a solid understanding of information security and networking, and extensive experience interacting with customers. The SIEM Engineer is responsible for delivery of client specific SIEM management solutions. The SIEM Engineer serves as an escalation point for critical and complex client issues, performs configuration and testing of products, assists with developing and documenting work processes and trains other members of the team. The primary focus for this role is to act as a Subject Matter Expert for SIEM and User and Entity Behavior Analytics (UEBA) technology and be able to configure, manage, operate and administrate the platforms.

 
location: Philadelphia, Pennsylvania
job type: Contract
work hours: 8am to 5pm
education: Bachelors
 
responsibilities:
Essential Duties and Responsibilities

  • Enrolling log sources, administration, content development and working with SIEM customers and stakeholders across the globe
  • Build new capabilities and installation of new applications from the app exchange to extend functionality
  • Monitor the impact of deploying new content to the health and performance of the SIEM
  • Creation and improvement of security policies, processes and procedures and other SIEM related documentation
  • Lead logging enrollments from multi-tier applications into the enterprise logging platforms
  • Modify existing parsers, as well as implement and test custom parsers and log source extensions in order to capture and correlate events from non-standard log sources
  • Evaluate deployment to identify flaws and key areas for improvement in effort to maintain an optimal SIEM operating environment
  • Comprehend error logs and act as escalation point for underlying event collection and correlation components
  • Experience with Linux (CentOS or RHEL nice to have)
  • Understanding of regular expressions (Regex) and Python scripting
  • Knowledge in the following areas is a plus: Perl and shell scripting, Docker, ELK, Hadoop
  • Ability to isolate problems between hardware and software and provide information to appropriate development team(s)
  • Highly developed, process-oriented skills for troubleshooting, problem solving, and problem resolution
  • Superior written and verbal communication skills are a must
  • Must be able to work in a fast-paced technical environment and sophisticated cyber-security products with frequent product releases and updates
 
qualifications:
Core Competencies Desired

  • Investigates, interprets, and responds to technical and complex IT security data
  • Demonstrated ability to work with matrixed resources in a team environment
  • Must have excellent oral and written communication skills
  • Ability to ensure activities are in alignment with the business objectives and risk management framework
  • Strong technical skills, which may include experience with Linux and Window operating systems and scripting languages like Python
  • Ability to anticipate, recognize, and resolve technical (hardware, software, application or operational) problems
  • Working knowledge of Linux, LDAP, TCP/IP networking stack, and regular expressions
 
skills: Qualifications

Bachelors degree in Computer Science or a related discipline, at least eight, typically twelve or more years of solid, diverse work experience in IT, or the equivalent in education and work experience. Emphasis on security operations, incident management, intrusion detection, firewall deployment and security event analysis. Three or more years with SIEM and UEBA technologies such as Qradar and Exabeam

One or more of the following certifications is preferred: CISSP, CCNA Security +, AWS Security, CCNP Security, CCIE, CCSP, CCIE, CCA, ITIL, plus some SANS training.

CCIE

CCNA

CCNP

CCSP

CISSP


Equal Opportunity Employer: Race, Color, Religion, Sex, Sexual Orientation, Gender Identity, National Origin, Age, Genetic Information, Disability, Protected Veteran Status, or any other legally protected group status.

easy apply

get jobs in your inbox.

sign up
{{returnMsg}}

related jobs

    Security DevOps Engineer

  • location: Philadelphia, PA
  • job type: Contract
  • salary: $60 - $65 per hour
  • date posted: 2/12/2019

    Sr Information Architect

  • location: Philadelphia, PA
  • job type: Contract
  • salary: $60 - $80 per hour
  • date posted: 2/14/2019

    Application Manager

  • location: Philadelphia, PA
  • job type: Contract
  • salary: $77 per hour
  • date posted: 1/23/2019