Enable job alerts via email!

SIEM Engineer

FNZ

City of Edinburgh

On-site

GBP 40,000 - 80,000

Full time

30+ days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

An innovative firm is seeking a skilled SIEM Engineer to join their Global Information Security team. In this role, you'll design and enhance SIEM solutions, ensuring robust security for investment platforms serving millions. With your expertise in tools like Splunk and Microsoft Sentinel, you'll manage data onboarding, automate responses, and collaborate with cross-functional teams to tackle emerging security threats. This position offers a unique opportunity to contribute to a forward-thinking organization dedicated to making wealth management accessible and secure. If you're passionate about cybersecurity and ready to make an impact, this role is for you.

Qualifications

  • 4+ years of experience in managing SIEM solutions in large environments.
  • Strong knowledge of Windows, Linux, and network devices.

Responsibilities

  • Support the roadmap and architecture for SIEM solutions.
  • Deploy and enhance SIEM technology and manage the infrastructure.

Skills

SIEM Management
Data Onboarding
Incident Response
Automation and Scripting
Threat Intelligence Integration
Security Frameworks Knowledge

Education

Relevant Security Certifications

Tools

Splunk
Microsoft Sentinel
Jira
Confluence
Planner

Job description

Role Description

At FNZ, our purpose is to make wealth management more accessible, bringing easier, fairer and more inclusive solutions to people worldwide. Here in the Global Information Security team, we work to protect the platforms that support investment solutions for over 20 million people.

We are looking for an experienced SIEM Engineer, reporting to the Cyber Security Engineering Manager (SIEM). You will have a strong background in designing and developing monitoring solutions and will be familiar with onboarding data from varied sources. You will have strong experience of different SIEM architectures and be adaptable in your approach. Your role in FNZ will be to manage and enhance the SIEM solutions for the FNZ Group, supporting the lifecycle of data onboarding, use cases and automating responses.

Specific Role Responsibilities

  • Support the creation and delivery of the roadmap and architecture for the SIEM solutions in FNZ.
  • Deploy, manage and enhance the SIEM technology in FNZ
    • Managing the SIEM infrastructure
    • Log onboarding
    • Rules and Use case development
    • Schema management
    • Threat Intelligence integration
  • Maintain up-to-date knowledge of emerging security threats and trends and build this into the SIEM strategy.
  • Supporting the Incident Response team in FNZ to identify, manage and respond to incidents.
  • Collaborate effectively with cross-functional teams across different time zones.

Experience Required

Primary Requirements

  • Significant (4+ years) experience of design/administering/managing SIEM (Splunk/Sentinel) in a large, distributed environment.
  • Strong experience with Microsoft Sentinel administration.
  • Experience with Splunk Enterprise Security administration.
  • Significant experience of the creation of rules and use cases to support business incident response.
  • Strong experience of data onboarding and schema management.
  • Strong understanding of multiple technologies:
    • Windows
    • Linux
    • Network devices (WAF, Firewalls, Switches)
    • Cloud
    • Application Logging
  • Advanced automation and scripting capabilities, with hands-on knowledge of development best practices.
  • Knowledge of Security Frameworks (NIST, MITRE etc).
  • Relevant security certifications (e.g., SSCP, Vendor Certifications).
  • Experience of working with tools like Jira, Planner and Confluence.
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.