Attiva gli avvisi di lavoro via e-mail!

Cyber Defense Center (CDC) Elastic Engineer

Würth Phoenix

Frosinone

Ibrido

EUR 40.000 - 60.000

Tempo pieno

2 giorni fa
Candidati tra i primi

Descrizione del lavoro

A global cybersecurity company in Italy is seeking an Elastic Engineer to manage and optimize their Elastic Stack-based SIEM platform. You will play a key role in enhancing threat detection and incident response capabilities, collaborating closely with security teams. Candidates should have solid experience with the Elastic Stack and strong problem-solving skills. This role offers flexible working hours, competitive compensation, and opportunities for professional growth.

Servizi

Flexible working hours
Remote work
Company training and certifications
Health coverage
Performance bonuses

Competenze

  • Solid experience with Elastic Stack in production environments.
  • Deep understanding of SIEM architectures and security monitoring best practices.
  • Experience with log management, data parsing, and normalization.
  • Familiarity with cybersecurity concepts, threat intelligence, and detection engineering.
  • Ability to work effectively in international teams.

Mansioni

  • Administer and manage the Elastic Stack used as the SOC’s central SIEM platform.
  • Design and optimize Elasticsearch clusters in distributed environments.
  • Develop data ingestion pipelines using Logstash and Beats.
  • Collaborate with SOC analysts to integrate new data sources.

Conoscenze

Elastic Stack
SIEM architectures
Log management
Linux systems
Scripting (Bash, Python)
CI/CD tools (Ansible, GitLab CI, Terraform)
Networking skills
Communication skills
Problem-solving
Fluency in Italian
Professional proficiency in English

Formazione

High school diploma
Bachelor's degree

Strumenti

Elasticsearch
Logstash
Kibana
Beats

Descrizione del lavoro

Cyber Defense Center (CDC) Elastic Engineer

With over 1,000 IT specialists across 6 countries, we develop and promote new business models within the Würth Group. We are seeking an Elastic Engineer to join our international Security Operations Center (SOC). The selected candidate will play a strategic role in the management, optimization, and scalability of the Elastic Stack-based SIEM platform, actively contributing to the enhancement of core threat detection and incident response capabilities.

Responsibilities :

  • Administer and manage the Elastic Stack (Elasticsearch, Logstash, Kibana, Beats) used as the SOC’s central SIEM platform.
  • Design and optimize Elasticsearch clusters in distributed and high-availability environments.
  • Develop data ingestion pipelines from heterogeneous sources using Logstash and Beats.
  • Optimize performance, index mappings, and queries to enable efficient search and correlation.
  • Collaborate with SOC analysts and security teams to integrate new data sources and detection use cases.
  • Automate deployment, updates, and backups of the infrastructure.
  • Implement security controls (X-Pack, TLS, RBAC) for the Elastic platform.
  • Write and update technical documentation and operational procedures.

Requirements :

  • Solid experience with Elastic Stack in production environments.
  • Deep understanding of SIEM architectures and security monitoring best practices.
  • Experience with log management, data parsing, and normalization.
  • Familiarity with cybersecurity concepts, threat intelligence, and detection engineering.
  • Strong command of Linux systems and scripting (Bash, Python).
  • Knowledge of automation and CI / CD tools (e.g., Ansible, GitLab CI, Terraform).
  • Basic networking skills and understanding of common logging protocols (e.g., Syslog, JSON, HTTP APIs).
  • Ability to work effectively in international and cross-functional teams.
  • High level of autonomy and strong problem-solving
  • Excellent communication skills, both written and verbal.
  • Fluency in Italian and professional proficiency in English.
  • Nice to Have :

  • Elastic certifications (e.g., Elastic Certified Engineer) will be considered a strong plus.
  • What We Offer :

  • A position within a global cybersecurity team focused on protecting critical infrastructure.
  • Collaboration with a highly skilled and motivated team.
  • Opportunities to work on international projects within the Würth Group.
  • Technology partnerships with Atlassian, Elastic, RedHat, Icinga, and Influx.
  • Flexible working hours and remote work.
  • A competitive compensation package, including a company MBO incentive system.
  • A performance bonus convertible into a wide range of welfare services and benefits.
  • Ongoing corporate training and the opportunity to obtain company-funded certifications.
  • Accident insurance and supplementary health coverage.
  • A young and dynamic work environment, with regular team events such as sports activities, informal dinners, cultural outings, and more.
  • Which area are you particularly interested in??

    Software Development System Engineering Consulting Marketing Finance Others

    High school diploma Bachelor Master Phd Others

    Attach Curriculum Vitae

    Thank you for your inquiry and your interest in our trainings. We would like to point out that the data is not disclosed to third parties and is processed by adopting the security measures prescribed by current legislation in order to guarantee confidentiality and the limits set by the directives of the GDPR.

    Yes, I have read the privacy policy and agree to the processing of my personal data.

    J-18808-Ljbffr

    Ottieni la revisione del curriculum gratis e riservata.
    oppure trascina qui un file PDF, DOC, DOCX, ODT o PAGES di non oltre 5 MB.