Enable job alerts via email!

SIEM Engineer

FNZ Group

City of Edinburgh

On-site

GBP 50,000 - 75,000

Full time

11 days ago

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Start fresh or import an existing resume

Job summary

FNZ Group is seeking an experienced SIEM Engineer to join their Global Information Security team. This role involves managing and enhancing SIEM solutions, ensuring effective response to security incidents while working with cutting-edge technologies in a collaborative environment. The ideal candidate will have significant experience in SIEM administration and a strong understanding of various security frameworks to support a highly distributed environment.

Qualifications

  • 4+ years experience administering/managing SIEM in a large environment.
  • Strong background in data onboarding and schema management.
  • Familiar with various security frameworks.

Responsibilities

  • Manage and enhance the SIEM solutions for FNZ.
  • Support SIEM incident response and collaborate with cross-functional teams.
  • Develop rules and use cases for business incident response.

Skills

SIEM administration
Cloud technologies
Data onboarding
Advanced automation and scripting
Security frameworks

Education

Relevant security certifications (e.g., SSCP, Vendor Certifications)

Tools

Splunk
Microsoft Sentinel
Jira
Confluence
Planner

Job description

Social network you want to login/join with:

At FNZ, our purpose is to make wealth management more accessible, bringing easier, fairer and more inclusive solutions to people worldwide. Here in the Global Information Security team, we work to protect the platforms that support investment solutions for over 20 million people.

We are looking for an experienced SIEM Engineer, reporting to the Cyber Security Engineering Manager (SIEM). You will have a strong background in designing and developing monitoring solutions and will be familiar with onboarding data from varied sources. You will have strong experience of different SIEM architectures and be adaptable in your approach. Your role in FNZ will be to manage and enhance the SIEM solutions for the FNZ Group, supporting the lifecycle of data onboarding, use cases and automating responses.

Specific Role Responsibilities

Support the creation and delivery of the roadmap and architecture for the SIEM solutions in FNZ

Deploy, manage and enhance the SIEM technology in FNZ

Managing the SIEM infrastructure

Rules and Use case development

Schema management

Maintain up-to-date knowledge of emerging security threats and trends and build this into the SIEM strategy

Supporting the Incident Response team in FNZ to identify, manage and respond to incidents

Collaborate effectively with cross-functional teams across different time zones.

Experience required

Primary requirements

Significant (4+ years) experience of design/administering/managing SIEM (Splunk/Sentinel) in a large, distributed environment

Strong experience with Microsoft Sentinel administration

Experience with Splunk Enterprise Security administration

Significant experience of the creation of rules and use cases to support business incident response

Strong experience of data onboarding and schema management

Strong understanding of multiple technologies:

Windows

Network devices (WAF, Firewalls, Switches)

Cloud

Advanced automation and scripting capabilities, with hands-on knowledge of development best practices.

Knowledge of Security Frameworks (NIST, MITRE etc)

Relevant security certifications (e.g., SSCP, Vendor Certifications)

Experience of working with tools likes Jira, Planner and Confluence

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.