Attiva gli avvisi di lavoro via e-mail!

Cyber Defense Center (CDC) Elastic Engineer

Würth Phoenix

Campania

Ibrido

EUR 40.000 - 65.000

Tempo pieno

7 giorni fa
Candidati tra i primi

Descrizione del lavoro

A global cybersecurity team is seeking an Elastic Engineer to manage and optimize the Elastic Stack for their Security Operations Center. The ideal candidate should have expertise in SIEM platforms and experience with log management and cybersecurity concepts. The role offers flexible working hours, competitive compensation, and opportunities to work on international projects with a motivated team.

Servizi

Flexible working hours
Remote work options
Performance bonus
Health coverage
Corporate training opportunities
Regular team events

Competenze

  • Solid experience with Elastic Stack in production environments.
  • Deep understanding of SIEM architectures and security monitoring best practices.
  • Experience with log management, data parsing, and normalization.
  • Knowledge of automation and CI/CD tools is desired.
  • Strong scripting skills in Bash and Python.

Mansioni

  • Administer and manage the Elastic Stack used as the SOC’s central SIEM platform.
  • Design and optimize Elasticsearch clusters.
  • Develop data ingestion pipelines using Logstash and Beats.
  • Collaborate with SOC analysts to integrate new data sources.

Conoscenze

Elastic Stack expertise
SIEM architectures knowledge
Log management
Cybersecurity concepts familiarity
Linux systems
Scripting (Bash, Python)
CI/CD tools knowledge
Networking skills
Problem-solving skills
Communication skills
Fluency in Italian
Professional proficiency in English

Formazione

High school diploma
Bachelor's degree
Master's degree
PhD

Strumenti

ElasticSearch
Logstash
Kibana
Beats
Ansible
GitLab CI
Terraform

Descrizione del lavoro

Cyber Defense Center (CDC) Elastic Engineer

With over 1,000 IT specialists across 6 countries, we develop and promote new business models within the Würth Group. We are seeking an Elastic Engineer to join our international Security Operations Center (SOC). The selected candidate will play a strategic role in managing, optimizing, and scaling the Elastic Stack-based SIEM platform, actively contributing to enhancing core threat detection and incident response capabilities.

Responsibilities :

  • Administer and manage the Elastic Stack (Elasticsearch, Logstash, Kibana, Beats) used as the SOC’s central SIEM platform.
  • Design and optimize Elasticsearch clusters in distributed and high-availability environments.
  • Develop data ingestion pipelines from heterogeneous sources using Logstash and Beats.
  • Optimize performance, index mappings, and queries for efficient search and correlation.
  • Collaborate with SOC analysts and security teams to integrate new data sources and detection use cases.
  • Automate deployment, updates, and backups of the infrastructure.
  • Implement security controls (X-Pack, TLS, RBAC) for the Elastic platform.
  • Write and update technical documentation and operational procedures.

Requirements :

  • Solid experience with Elastic Stack in production environments.
  • Deep understanding of SIEM architectures and security monitoring best practices.
  • Experience with log management, data parsing, and normalization.
  • Familiarity with cybersecurity concepts, threat intelligence, and detection engineering.
  • Strong command of Linux systems and scripting (Bash, Python).
  • Knowledge of automation and CI / CD tools (e.g., Ansible, GitLab CI, Terraform).
  • Basic networking skills and understanding of common logging protocols (e.g., Syslog, JSON, HTTP APIs).
  • Ability to work effectively in international and cross-functional teams.
  • High level of autonomy and strong problem-solving skills.
  • Excellent communication skills, both written and verbal.
  • Fluency in Italian and professional proficiency in English.
  • Nice to Have :

  • Elastic certifications (e.g., Elastic Certified Engineer) are a strong plus.
  • What We Offer :

  • A position within a global cybersecurity team focused on protecting critical infrastructure.
  • Collaboration with a highly skilled and motivated team.
  • Opportunities to work on international projects within the Würth Group.
  • Technology partnerships with Atlassian, Elastic, RedHat, Icinga, and Influx.
  • Flexible working hours and remote work options.
  • A competitive compensation package, including a company MBO incentive system.
  • A performance bonus convertible into various welfare services and benefits.
  • Ongoing corporate training and opportunities to obtain company-funded certifications.
  • Accident insurance and supplementary health coverage.
  • A young and dynamic work environment with regular team events such as sports activities, dinners, cultural outings, and more.
  • Additional Information :

    We invite you to specify which area you are particularly interested in :

    Software Development, System Engineering, Consulting, Marketing, Finance, Others

    Educational qualifications :

    High school diploma, Bachelor, Master, PhD, Others

    Attach Curriculum Vitae

    We assure that your data will be processed securely and confidentially, in compliance with GDPR regulations.

    By submitting, you agree to our privacy policy and data processing practices.

    Thank you for your interest in our position.

    J-18808-Ljbffr

    Ottieni la revisione del curriculum gratis e riservata.
    oppure trascina qui un file PDF, DOC, DOCX, ODT o PAGES di non oltre 5 MB.