Enable job alerts via email!

Information Security Lead - Senior SIEM Engineer (Remote)

TE Connectivity Corporation

Middletown (PA)

Remote

USD 131,000 - 197,000

Full time

30+ days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

Join a forward-thinking company as a Senior SIEM Engineer and play a crucial role in enhancing cybersecurity measures. This remote position offers the opportunity to lead the development of innovative detection methods, optimize SIEM processes, and collaborate with a dedicated security team. You'll be at the forefront of protecting the organization from cyber threats while mentoring junior analysts and contributing to strategic initiatives. With a competitive salary and comprehensive benefits package, this role is perfect for those passionate about information security and eager to make a significant impact in a global organization.

Benefits

Health insurance
401(k)
Disability insurance
Life insurance
Employee stock purchase plan
Paid time off
Voluntary benefits

Qualifications

  • 5-7 years of experience in information security with a focus on SIEM.
  • Expert-level knowledge of SIEM architecture and administration.

Responsibilities

  • Design and optimize advanced correlation rules within the SIEM platform.
  • Collaborate with SOC to improve threat detection capabilities.

Skills

Information Security
SIEM Administration
Threat Detection
Scripting (Python, PowerShell)
Log Management
Collaboration
Communication

Education

Bachelor's degree in Computer Science
Equivalent practical experience

Tools

Devo
Splunk
QRadar
Sentinel
ArcSight
AWS
Azure
GCP

Job description

Select how often (in days) to receive an alert:

Information Security Lead - Senior SIEM Engineer (Remote)

At TE, you will unleash your potential working with people from diverse backgrounds and industries to create a safer, sustainable and more connected world.

Job Overview

As a Senior SIEM Engineer, you will be a key member of our collaborative security team, working alongside other security professionals to protect our organization from sophisticated cyberattacks. You will be able to drive innovation in our SIEM program, leveraging your expertise to develop advanced detection methods and improve our overall security posture.

Key Responsibilities:

  1. SIEM Engineering & Development: Design, develop, implement, and optimize advanced correlation rules, use cases, and detection logic within the enterprise SIEM platform.
  2. Log Source Management: Architect and maintain robust log ingestion pipelines from diverse security and IT systems, ensuring comprehensive data collection, normalization, and parsing.
  3. Threat Detection & Analysis: Develop and refine high-fidelity security alerts, dashboards, and reports to enhance threat identification, reduce false positives, and provide actionable insights.
  4. Security Operations Collaboration: Collaborate closely with the Security Operations Center (SOC) to optimize response workflows, improve threat detection capabilities, and provide expert-level support during security incidents.
  5. Threat Intelligence & Proactive Hunting: Maintain expertise in emerging threats, attack techniques, and security best practices. Proactively hunt for advanced threats and develop new detection methods based on threat intelligence and adversary tactics, techniques, and procedures (TTPs).
  6. Automation & Scripting: Automate SIEM tasks, workflows, and integrations using scripting languages (e.g., Python, PowerShell) to improve efficiency and scalability.
  7. Documentation & Knowledge Sharing: Develop and maintain comprehensive SIEM documentation, including system architecture diagrams, data flow diagrams, log source configurations, alert rationale, and incident response procedures. Mentor and provide technical guidance to junior security analysts.
  8. SIEM Architecture & Strategy: Contribute to the long-term vision and roadmap for SIEM and threat detection capabilities. Identify gaps and opportunities for improvement in existing detection strategies and recommend solutions.
  9. Collaboration & Communication: Effectively communicate technical concepts to technical and non-technical audiences. Interface with other IT teams (network, systems, application development, etc.) to ensure security is integrated throughout the infrastructure.
  10. Strategic Planning & Budgeting: Collaborate with leadership on strategic planning, budget forecasting, and resource allocation for SIEM-related initiatives.
What your background should look like:

Required Qualifications:

  1. Bachelor's degree in Computer Science, Information Security, a related field, or equivalent practical experience.
  2. Minimum of 5-7 years of experience in information security, with a strong focus on SIEM administration, engineering, and security operations.
  3. Significant experience with at least one enterprise-grade SIEM platform (e.g., Devo, Splunk, QRadar, Sentinel, ArcSight).
  4. Expert-level knowledge of SIEM architecture, design, implementation, and administration.
  5. Deep understanding of log management principles, log formats, and data normalization techniques.
  6. Proficiency in developing advanced correlation rules, use cases, and detection logic within an SIEM platform.
  7. Experience with scripting languages (e.g., Python, PowerShell, Regular Expressions) for automation and data manipulation.
  8. Familiarity with various operating systems (Windows, Linux, macOS) and cloud platforms (AWS, Azure, GCP).
  9. Knowledge of common security frameworks and standards (e.g., NIST, MITRE ATT&CK, CIS).
  10. Experience with threat intelligence platforms and data feeds.

Preferred Qualifications:

  1. Experience with Devo, Devo SOAR, and/or LogicHub.
  2. Advanced programming/coding in one or more languages (C#, Python, etc.).
  3. Understanding of security concepts, including network security, endpoint security, intrusion detection/prevention systems (IDS/IPS), firewalls, and vulnerability management.
  4. Manufacturing and/or engineering industry experience.
  5. Experience working in a large global organization.

Education Required/Desired:
Undergraduate degree in business, computer science, management information systems, or other equivalent work experience.

COMPENSATION
• Competitive base salary commensurate with experience: $131,100 - $196,700 (subject to change dependent on physical location)
• Posted salary ranges are made in good faith. TE Connectivity reserves the right to adjust ranges depending on the experience/qualification of the selected candidate as well as internal and external equity.
• Total Compensation = Base Salary + Incentive(s) + Benefits
BENEFITS
• A comprehensive benefits package including health insurance, 401(k), disability, life insurance, employee stock purchase plan, paid time off and voluntary benefits.

EOE, Including Disability/Vets

Location: Middletown, PA, US, 17057

City: Middletown

State: PA

Country/Region: US

Travel: Less than 10%

Requisition ID: 129334

Function: Information Technology

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Lead Product Security Engineer

DocuSign

Washington

Remote

USD 170,000 - 252,000

6 days ago
Be an early applicant

Lead Information Security Analyst

Sodexo Group

North Bethesda

Remote

USD 128,000 - 144,000

4 days ago
Be an early applicant

Lead Information Security Analyst

Sodexo

Bethesda

Remote

USD 128,000 - 144,000

6 days ago
Be an early applicant

Lead Security Architect

Circle

New York

Remote

USD 172,000 - 228,000

15 days ago

Security Specialist Lead- Staff (Advanced Phishing Program Manager)

AEP

Ohio

Remote

USD 112,000 - 147,000

4 days ago
Be an early applicant

Principle AI Safety Engineer: Technical Lead

General Motors

Remote

USD 193,000 - 297,000

2 days ago
Be an early applicant

IT Enterprise Applications Security Lead

Berkeley Research Group, LLC

Remote

USD 120,000 - 170,000

Today
Be an early applicant

Lead, ISO (Information Security Officer)(remote)

Humana

Remote

USD 129,000 - 178,000

Today
Be an early applicant

VP, Chief Information Security Officer | Remote, USA

Lensa

Overland Park

Remote

USD 150,000 - 250,000

2 days ago
Be an early applicant