SIEM Engineer - Build, Onboard & Optimize Telemetry

Source Technology Limited

Wien

Vor Ort

EUR 65.000 - 90.000

Vollzeit

14 Tage+

Erhalte mehr Antworten von Arbeitgebern

Versende in nur wenigen Minuten einen passgenauen Lebenslauf.

Zusammenfassung

Source Technology Limited in Vienna is seeking an experienced SIEM Engineer to design, deploy, operate, and optimize our security information and event management platform across the enterprise.

You will onboard logs from identity, endpoints, network, cloud, and applications; build reliable data pipelines; monitor telemetry health; and support detection engineering, incident response, and forensics with end-to-end ownership.

Qualifikationen

  • Experience in SIEM engineering, security monitoring, or log management.
  • Hands-on with enterprise SIEM (MS Ignite Sentinel preferred; Splunk/QRadar/Elastic/Google SecOps also relevant).
  • Experience onboarding logs and troubleshooting across Windows, Linux, cloud, network, and endpoints.
  • Proficiency in KQL, SPL, SQL, or similar query languages.
  • Knowledge of syslog, APIs, agents, collectors, event streaming, parsing, normalization, and enrichment.
  • Scripting or automation using PowerShell, Python, REST APIs, Git, CI/CD, or infrastructure-as-code.
  • Understanding of detection engineering, incident response, forensics, networking, and data protection.
  • Strong analytical, documentation, stakeholder communication and end-to-end ownership; professional English.

Aufgaben

  • Engineer, configure, maintain, and monitor the SIEM platform, collectors, connectors, and supporting infrastructure.
  • Onboard security-relevant logs from identity, endpoint, network, cloud, business applications, databases, and other environments.
  • Design reliable data pipelines; develop parsing, normalization, transformation, timestamp handling, and contextual enrichment.
  • Monitor telemetry health and resolve missing sources, ingestion delays, volume anomalies, schema changes, and connector failures.
  • Support detection engineering with required fields, correlation logic, threat intelligence, MITRE ATT&CK mapping, and testing.
  • Optimize ingestion, storage tiers, retention, query performance, licensing, and cost without reducing required security visibility.
  • Maintain architecture diagrams, log-source inventory, onboarding standards, runbooks, ownership, and configuration records.
  • Support SOC investigations, threat hunting, incident response, forensic data extraction, audits, and major incident resolution.
  • Coordinate logging requirements and remediation with IT, Cloud, Network, IAM, Application, OT, vendors, and service providers.

Kenntnisse

SIEM engineering
Security monitoring
Log management
Security platform engineering
Microsoft Sentinel
Splunk
QRadar
Elastic
Google SecOps
KQL
SPL
SQL
PowerShell
Python
REST APIs
Git
CI/CD
Infrastructure-as-code
Incident response
Digital forensics

Tools

PowerShell
Python
REST APIs
Git
CI/CD
Infrastructure-as-code

Jobbeschreibung

Source Technology Limited in Vienna is seeking an experienced SIEM Engineer to design, deploy, operate, and optimize our security information and event management platform across the enterprise.

You will onboard logs from identity, endpoints, network, cloud, and applications; build reliable data pipelines; monitor telemetry health; and support detection engineering, incident response, and forensics with end-to-end ownership.

Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.
oder ziehe deine Datei hierhin.
Similar jobs

Ähnliche Jobs, die dir auch gefallen könnten

SIEM Engineer
SIEM Engineer

Source Technology Limited • Wien

Vor Ort
EUR 65.000 - 90.000
Infrastructure Security Engineer - Hybrid, SIEM & Hardening
Infrastructure Security Engineer - Hybrid, SIEM & Hardening

Vienna Biocenter • Wien

Vor Ort
EUR 59.000 - 72.000
Flexible work hours
Up to 2 days home office per week
Cafeteria
+2
Security Operations Analyst – SIEM/XDR, Flexible & Growth
Security Operations Analyst – SIEM/XDR, Flexible & Growth

OMICRON electronics GmbH • Gemeinde Klaus

Vor Ort
EUR 55.000 - 85.000
Flexible working models
Learning & development opportunities
International environment with English
+3
Remote Azure Data Engineer for Cybersecurity & SIEM
Remote Azure Data Engineer for Cybersecurity & SIEM

Jobgether • Österreich

Vor Ort
EUR 70.000 - 100.000
Remote work from anywhere
Security Operations Analyst: SIEM/XDR & Incident Response
Security Operations Analyst: SIEM/XDR & Incident Response

OMICRON Lab • Gemeinde Klaus

Vor Ort
EUR 65.000 - 95.000
Flexible work
Learning & development
International environment
+3
Infrastructure Security Engineer - Hardening, SIEM & Cloud
Infrastructure Security Engineer - Hardening, SIEM & Cloud

IMP - Research Institute of Molecular Pathology • Wien

Hybrid
EUR 59.000 - 72.000
Flexible working hours
Up to 2 days home office per week
Public transport subsidy
SIEM, SOC & MDR Architect | Threat Detection & Automation
SIEM, SOC & MDR Architect | Threat Detection & Automation

EY • Klagenfurt am Wörthersee

Hybrid
Flexibilität im Alltag
Übernahme der Kosten für öffentliche Verkehrsmittel
Regelmäßige Feedbackgespräche
+4
Security Operations Analyst – SIEM/XDR/SOAR
Security Operations Analyst – SIEM/XDR/SOAR

OMICRON electronics GmbH • Feldkirch

Hybrid
EUR 55.000 - 75.000
Flexible Arbeitsmodelle
Vielfältige Weiterentwicklung
Internationales Umfeld
+3
Windows Systems Administrator: Performance & Stability Expert
Windows Systems Administrator: Performance & Stability Expert

Jobtailor • Wien

Vor Ort
EUR 60.000 - 90.000
Senior SecOps Solutions Architect & Presales Leader
Senior SecOps Solutions Architect & Presales Leader

Zoomcar • Wien

Vor Ort
EUR 100.000 - 150.000