[YO676] - DATA-DRIVEN CYBERSECURITY SOLUTIONS SPECIALIST

Bebeecybersecurity


Cyber Security Data Engineer Role This is a challenging opportunity to manage the design, implementation, and testing of our Security Information and Event Management (SIEM) system with a focus on integrating and analyzing data from critical operational technology (OT)/industrial control systems (ICS) environments. Key Responsibilities: - Design SIEM and Security Orchestration Automation and Response (SOAR) solutions tailored for OT environments, considering the unique challenges and protocols involved. - Integrate multiple OT data sources into the SIEM platform, including intrusion detection systems (IDS), endpoint detection and response (EDR) systems, control system logs, and network traffic from industrial protocols. - Maintain custom parsers, normalizers, and correlation rules to analyze OT-specific logs and events within the SIEM. - Collaborate with OT operations and engineering teams to understand their systems, data sources, and security monitoring requirements. - Configure and optimize the SIEM platform for performance, scalability, and stability in an OT context. - Maintain OT-focused dashboards and reports within the SIEM to provide actionable insights into security posture and potential threats. Required Skills and Qualifications: - Bachelor's degree in engineering or any other field with equivalent experience. - Demonstrated experience working with SIEM platforms and understanding of their architecture, configuration, and rule development. - Understanding of OT protocols, industrial control systems, and their logging mechanisms. - 5+ years of experience parsing and normalizing complex log formats, including those specific to OT devices and applications. - Specific experience integrating OT data sources with enterprise SIEM platforms. - Knowledge of security frameworks and standards relevant to OT. - Experience with scripting languages for SIEM automation and data manipulation. - Relevant certifications such as GICSP, GRID, CISSP, or SIEM-specific certifications. Benefits: - Comprehensive mindfulness programs. - Volunteer Paid Time off available after 6 months of employment. - Company volunteer and donation matching program. - Employee Assistance Program. - Personalized wellbeing programs through our OnTrack program. - On-demand digital course library for professional development. Seniority Level and Employment Type: Mid-Senior level, Full-time Job Function and Industry: Information Technology, Automation Machinery Manufacturing

trabajosonline.net © 2017–2021
Más información