Location: Wokingham Job Type: Contract Industry: Digital Workspace Job reference: BBBH426226_1761302477 Posted: about 11 hours ago
SIEM ENGINEER
6 Months
Hybrid 60% on site in Wokingham
£440
MUST HAVE ACTIVE SC CLEARENCE
Key Responsibilities
1. SIEM Deployment & Management - Set up, configure, and maintain SIEM tools like Sentinel, Elastic.
2. EDR deployment, configuration & management - experience with tools like Tanium, Trellix, FireEye, Defender, Elastic EDR
3. Threat Detection & Analysis - Monitor security logs, detect anomalies, and investigate potential threats.
4. Experience configuring Syslog servers and maintaining and configuring syslog feeds
5. Log ingestion Creation for Sentinel - Deploy OOTB integrations & develop & deploy custom integrations for various log source types.
6. Collaboration - Work with IT and security teams to improve overall cybersecurity posture.
Required Skills & Qualifications
7. Technical expertise. Strong knowledge & experience in security engineering with SIEM & EDR platforms, network security, and understanding of cybersecurity frameworks.
8. Certifications - CISSP, CEH, GIAC, or vendor-specific SIEM certifications, AZ-500, SC-100,etc.
9. Programming & Scripting - Familiarity with Python, PowerShell,?KQL (Kusto query language), KQL (Kibana Query Language)?or other scripting languages.
10. Analytical Thinking & problem solving - Ability to analyze large datasets and identify threats, mitigations, misconfigurations, etc.
11. Communication Skills - Ability to document findings and communicate effectively with stakeholders