Attiva gli avvisi di lavoro via e-mail!

Cyber Defense Center (CDC) Elastic Engineer

Würth Phoenix

Milano, Bolzano

Ibrido

EUR 45.000 - 65.000

Tempo pieno

30+ giorni fa

Descrizione del lavoro

A leading cybersecurity firm in Milan is seeking an experienced Elastic Engineer to manage the Elastic Stack-based SIEM platform. The ideal candidate will enhance core threat detection capabilities and work with an international team. Candidates should have solid experience with the Elastic Stack and be fluent in Italian. This role offers competitive compensation, flexible working hours, and a dynamic work environment.

Servizi

Flexible working hours
Remote work options
Performance bonuses
Corporate training opportunities
Accident and health insurance
Team events and outings

Competenze

  • Solid experience with Elastic Stack in production environments.
  • Deep understanding of SIEM architectures and security monitoring best practices.
  • Strong command of Linux systems and scripting.

Mansioni

  • Administer and manage the Elastic Stack used as the SOC’s central SIEM platform.
  • Design and optimize Elasticsearch clusters.
  • Collaborate with SOC analysts to integrate new data sources.

Conoscenze

Experience with Elastic Stack
Understanding of SIEM architectures
Log management
Linux systems scripting
Automation tools
Communication skills
Networking skills

Formazione

Bachelor's degree in relevant field

Strumenti

Elastic Stack (Elasticsearch, Logstash, Kibana, Beats)
Ansible
GIT

Descrizione del lavoro

Cyber Defense Center (CDC) Elastic Engineer

With over 1,000 IT specialists across 6 countries, we develop and promote new business models within the Würth Group. We are seeking an Elastic Engineer to join our international Security Operations Center (SOC). The selected candidate will play a strategic role in the management, optimization, and scalability of the Elastic Stack-based SIEM platform, actively contributing to the enhancement of core threat detection and incident response capabilities.

Responsibilities:
  • Administer and manage the Elastic Stack (Elasticsearch, Logstash, Kibana, Beats) used as the SOC’s central SIEM platform.
  • Design and optimize Elasticsearch clusters in distributed and high-availability environments.
  • Develop data ingestion pipelines from heterogeneous sources using Logstash and Beats.
  • Optimize performance, index mappings, and queries to enable efficient search and correlation.
  • Collaborate with SOC analysts and security teams to integrate new data sources and detection use cases.
  • Automate deployment, updates, and backups of the infrastructure.
  • Implement security controls (X-Pack, TLS, RBAC) for the Elastic platform.
  • Write and update technical documentation and operational procedures.
Requirements:
  • Solid experience with Elastic Stack in production environments.
  • Deep understanding of SIEM architectures and security monitoring best practices.
  • Experience with log management, data parsing, and normalization.
  • Familiarity with cybersecurity concepts, threat intelligence, and detection engineering.
  • Strong command of Linux systems and scripting (Bash, Python).
  • Knowledge of automation and CI/CD tools (e.g., Ansible, GitLab CI, Terraform).
  • Basic networking skills and understanding of common logging protocols (e.g., Syslog, JSON, HTTP APIs).
  • Ability to work effectively in international and cross-functional teams.
  • High level of autonomy and strong problem-solving
  • Excellent communication skills, both written and verbal.
  • Fluency in Italian and professional proficiency in English.
Nice to Have:
  • Elastic certifications (e.g., Elastic Certified Engineer) will be considered a strong plus.
What We Offer:
  • A position within a global cybersecurity team focused on protecting critical infrastructure.
  • Collaboration with a highly skilled and motivated team.
  • Opportunities to work on international projects within the Würth Group.
  • Technology partnerships with Atlassian, Elastic, RedHat, Icinga, and Influx.
  • Flexible working hours and remote work.
  • A competitive compensation package, including a company MBO incentive system.
  • A performance bonus convertible into a wide range of welfare services and benefits.
  • Ongoing corporate training and the opportunity to obtain company-funded certifications.
  • Accident insurance and supplementary health coverage.
  • A young and dynamic work environment, with regular team events such as sports activities, informal dinners, cultural outings, and more.

Which area are you particularly interested in??

Software Development System Engineering Consulting Marketing Finance Others

High school diploma Bachelor Master Phd Others

Attach Curriculum Vitae*

Thank you for your inquiry and your interest in our trainings. We would like to point out that the data is not disclosed to third parties and is processed by adopting the security measures prescribed by current legislation in order to guarantee confidentiality and the limits set by the directives of the GDPR.

Yes, I have read the privacy policy and agree to the processing of my personal data.

Ottieni la revisione del curriculum gratis e riservata.
oppure trascina qui un file PDF, DOC, DOCX, ODT o PAGES di non oltre 5 MB.