On behalf of our client, a well-known company from the insurance industry based in Wiesbaden, we are looking for a Security Engineer (m / f / d) as the technical backbone for the cyber defense strategy.
In this central role, you will be responsible for the SIEM platform (Cisco Splunk) and the data pipelines (Cribl) that process all security-relevant information.
Important: You are not part of the 24 / 7 monitoring team (this is handled by an external SOC). Your task is to provide this SOC with the best possible technical platform and database for the analysis and to manage the collaboration.
You are the "data architect" for security logs and understand how to derive the necessary monitoring requirements from architecture plans (DMZ, ZeroTrust).
You do not need to administer the following systems yourself, but understand how to tap into and interpret their data :