DL
SIEM Engineer
Diverse Lynx India
- Location not stated
- 10 months ago
- SIEM
- Splunk
- CrowdStrike
- Microsoft Sentinel
- Azure
- AWS
- CloudWatch
- CloudTrail
- Azure Monitor
- GCP
- JSON
- XML
- Linux
- Unix
- Python
- Bash
- PowerShell
- Perl
- JavaScript
- SQL
- Threat Intelligence
- Incident Response
10 months ago
- 6 - 10 years of mandatory experience in cyber security, including technical engineering, security operations, or infrastructure roles. 5+ years of experience working withlog management/SIEM solutions (e.g., Falcon LogScale, Splunk, Trellix, Chronicle, Exabeam, Sumo Logic, etc) andSOAR (e.g., CrowdStrike Fusion, Palo Alto XSOAR, Splunk, etc.) in a large-scale, distributed environments.
- Deep expertise inCrowdStrike Falcon,Falcon LogScale, andNext-Gen SIEM (NGSIEM) technologies (Highly Preferred).
- Experience with other SIEM platforms such asSplunk, Microsoft Sentinel,Exabeam,QRadar, etc.
- Strong understanding oflog management,query languages, anddata modelling.
- Experience in developingdata connectors oringestion pipelines for SIEM platforms.
- Experience withlog processing tools such asCribl,Splunk Forwarder,Azure Monitoring Agent,LogScale Log Collector, etc.
- Experience withcloud-native logging services: AWS CloudWatch, CloudTrail, Azure Monitor, GCP Logging.
- Strong knowledge ofsecurity event formats: Syslog, CEF, LEEF, JSON, XML.
- Proficiency inLinux/Unix administration andshell scripting.
- Strong programming/scripting skills inPython,Bash,PowerShell,Perl, orJavaScript.
- Experience withregex, field extractions, and key-value parsing.
- Proficiency in writing complex queries usingCQL, SPL,KQL,SQL, etc.
- Experience withMITRE Telecommunication&CK,threat intelligence, andincident response frameworks.
- Excellent communication skills, both oral and written, with various audiences; mature, confident, assertive communication style.
- Attention to detail, but with an ability to understand the big picture view and understand when projects or efforts have conflicting objectives.
- Knowledge of various security methodologies and processes and technical security solutions.
- Excellent organizational skills, ability to prioritize and manage multiple tasks.
- Certifications: Additional certifications in security, cloud, or automation tools are a plus.
SIEM Engineer · Diverse Lynx India