I’m looking for a mid-level Security Engineer to join specialist Security Engineering team within a Tech for good client of ours that are stiving to make a positive impact on the world. The role will focus on developing and managing the Elastic SIEM platform while helping secure AWS, Azure and on-premise environments.
Responsibilities
- Manage, develop and optimise the Elastic SIEM platform.
- Create and tune detection rules, alerts and dashboards.
- Integrate new log sources and improve monitoring coverage.
- Support the secure configuration of AWS, Azure and on-premise systems.
- Assist with security incidents, investigations and remediation.
- Work with Threat Intelligence, Vulnerability Management and Network Operations teams.
- Contribute to the secure design of new systems and services.
Experience required
- Hands-on experience with Elastic Stack or Elastic Security.
- Good knowledge of AWS security and services such as IAM, CloudTrail, GuardDuty or Security Hub.
- Experience with SIEM engineering, log ingestion and detection-rule development.
- Understanding of incident response, cloud security and vulnerability management.
- Strong communication and problem-solving skills.
Experience with Azure, MITRE ATT&CK, Python, PowerShell or Terraform would be beneficial.
#J-18808-Ljbffr…
