About this role
Senior SIEM Systems Engineer to design and implement enterprise SIEM architectures, build data lakes/warehouses on AWS, and develop standards for SIEM/SOAR platforms across hybrid environments.
Key Responsibilities
- Design, implement and operate enterprise SIEM architectures
- Define SIEM/SOAR platform standards
- Integrate on-prem, cloud, SaaS, containers
- Create dashboards and executive reports
- Manage vendor relationships
Technical Overview
Stack includes Splunk, Cribl, AWS-based data pipelines (S3, Snowflake, Databricks); uses Regex, Splunk SPL, KQL; scripting with Python/Ansible; hybrid-cloud environment.
Ideal Candidate
The ideal candidate is a mid-to-senior security engineer with 5+ years in cybersecurity and 3+ years SIEM/SOAR experience, proficient with Splunk and Cribl, and experienced with AWS-based data pipelines (S3, Snowflake, Databricks). Strong scripting (Python, Ansible) and cloud experience are essential.
Must-Have Skills
At least 5+ years of experience in technology with emphasis on cyber security.At least 3+ years of experience in SIEM and SOAR products such as SplunkElasticDatadogCribletc.At least 1+ years of experience in Data Lake and data warehouse using products such as AWS S3SnowflakeDatabricksetc.Experience with scripting is highly preferred like PythonAnsible etc.Working knowledge in RegExSplunk search languageetc. is required.Knowledge and experience operating in a hybrid-cloud environment.Knowledge and experience in AWS or AzureKnowledge and experience with programming language to automate tasks (e.g. Python or PowerShell)
Nice-to-Have Skills
Blazor WASM or .NET 6+ WebAPI experienceEntity FrameworkWCF / service-oriented architecture backgroundGitHub Actions / CI-CD pipeline experienceAgile / Jira workflow experience
Tools & Platforms
SplunkCriblAWSSnowflakeDatabricksKustoS3Elastic
Required Skills
SIEMSOARCribl Stream / EdgeSplunkRegexPythonAnsiblePowerShellAWSData LakesData WarehousesKQLS3SnowflakeDatabricks
Hard Skills
SIEMSOARSplunkCribl Stream / EdgeCriblS3SnowflakeDatabricksRegexPythonAnsibleKusto Query Language (KQL)Splunk SPL
Soft Skills
CommunicationTeamworkProblem-solvingAnalytical thinkingDocumentation
Certifications
Required
Certified Information Systems Security Professional (CISSP)Certified Information Systems Manager (CISM)Certified Information System Auditor (CISA)Certified Ethical Hacker (CEH)
Keywords for Your Resume
siemsoarcribl stream / edgesplunksplunk splregexpythonansiblepowershellawsamazon web servicess3snowflakedatabricksdata lakesdata warehouseskqlcriblhybrid-clouddata pipelineci/cdcis spcispcisspcismcisacehSIEMSplunkCribl Stream / EdgeSOARS3SnowflakeDatabricksKQLPythonAnsible
Deal Breakers
Lack of SIEM/SOAR experience, No AWS/Azure experience, Less than 5 years of technology experience
Get matched to jobs like this
Luna finds roles that fit your skills and career goals — no endless scrolling required.
Create a Free Profile