About The Role
The SIEM engineer will architect, implement, and maintain various SIEM solutions for our customers to support our security analysts. This role will primarily setup, maintain, and enhance various SIEMs.
- Configure and administer the SIEM to support the needs of SOC.
- Responsible for maintaining the health of the SIEM tool and ensuring agreed uptime of the respective platform.
- Perform regular patching and version upgrades on the SIEM platform.
- Configure respective parsers, forwarders (engage principal vendors if needed) to integrate various log sources with SIEM platform for log monitoring.
- Research, build, and maintain detection capabilities for the latest threats across SIEM, log analytic, and security tool platforms.
- Ensure real time data and Configuration replication between Primary and DR sites.
- Integrate data feeds (logs) into SIEM/Splunk from on-premises and cloud de...