Job Search and Career Advice Platform

Aktiviere Job-Benachrichtigungen per E-Mail!

Security Engineer (m/f/d) - SIEM & Log Management

GULP – experts united

Wiesbaden

Vor Ort

EUR 60.000 - 80.000

Vollzeit

Vor 30+ Tagen

Erstelle in nur wenigen Minuten einen maßgeschneiderten Lebenslauf

Überzeuge Recruiter und verdiene mehr Geld. Mehr erfahren

Zusammenfassung

A well-known insurance company in Wiesbaden is seeking a Security Engineer to lead cyber defense initiatives. The ideal candidate must have experience with SIEM platforms and log management on Linux. This position offers an attractive salary, flexible working models, and opportunities for professional development. Proficiency in German and English is essential.

Leistungen

Permanent contract
Attractive salary
Flexible working time models
Professional development support
Crisis-proof employer

Qualifikationen

  • At least 3 years of experience in the IT security environment with a relevant degree.
  • At least 5 years of experience with completed IT training.
  • Proficient in administering SIEM platforms and log management on Linux.

Aufgaben

  • Manage and optimize the central IT security infrastructure.
  • Focus on SIEM and data pipelining.
  • Coordinate with external SOC for optimal performance.
  • Implement regulatory requirements in SIEM.

Kenntnisse

SIEM platform administration
Log management
Vulnerability management
Networking knowledge
Data architecture
Regulatory compliance
Software development
Linux administration

Ausbildung

Degree in Computer Science or Business Informatics
IT training as IT Specialist

Tools

Cisco Splunk
Cribl
Linux (RHEL)
Tenable
HCL BigFix
Jobbeschreibung

On behalf of our client, a well-known company from the insurance industry based in Wiesbaden, we are looking for a Security Engineer (m / f / d) as the technical backbone for the cyber defense strategy.

Here’s what our clients offer
  • A permanent contract with a crisis-proof employer.
  • An attractive, collectively agreed salary with extensive social benefits (e.g. company pension scheme).
  • Flexible working time models and the option of mobile working.
  • A modern working environment and targeted support for your professional development.
  • A responsible position at the heart of the Cyber Defense strategy.
Your tasks

In this central role, you will be responsible for the SIEM platform (Cisco Splunk) and the data pipelines (Cribl) that process all security-relevant information.

Important: You are not part of the 24 / 7 monitoring team (this is handled by an external SOC). Your task is to provide this SOC with the best possible technical platform and database for the analysis and to manage the collaboration.

Your core tasks
  • Administration, further development and documentation of the central IT security infrastructure
  • Focus on Security Information & Event Management (SIEM) with Cisco Splunk
  • Responsibility for log management and data pipelining with Cribl
  • Operation, hardening and optimization (security, network, performance) of the underlying Linux servers (RHEL)
  • Control of vulnerability & patch management (Tenable / HCL BigFix)
  • Technical coordination and control of the external Security Operations Center (SOC)
  • Close coordination with internal specialist departments (e.g. network, cloud)
  • Technical implementation of regulatory requirements (e.g. DORA) within the SIEM platform
Your strength

You are the "data architect" for security logs and understand how to derive the necessary monitoring requirements from architecture plans (DMZ, ZeroTrust).

Your profile
  • Completed studies in computer science, business informatics (or similar) and at least 3 years of professional experience in the IT security environment OR
  • Completed IT training (e.g. IT specialist) and at least 5 years of professional experience in the IT security environment.
  • Sound experience in the administration and engineering of SIEM platforms (ideally Splunk) and log management solutions (ideally Cribl) based on Linux (RHEL)
  • Experience in vulnerability management (e.g. Tenable)
Contextual knowledge

You do not need to administer the following systems yourself, but understand how to tap into and interpret their data :

  • Firewall & VPN (Check Point / Forcepoint)
  • Network Access Control (Forescout) Virtual Network Environments (VMware NSX)
  • Cloud platforms (Hyperscaler)
  • Very good knowledge of German (written and spoken)
  • Good knowledge of English (written and spoken)
Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.
eine PDF-, DOC-, DOCX-, ODT- oder PAGES-Datei bis zu 5 MB per Drag & Drop ablegen.