Security Architect (m/f/d)

EPAM Systems

Germany (OH)

On-site

USD 120,000 - 160,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

EPAM Systems is seeking a seasoned Security Architect to lead the design and deployment of SIEM solutions. The ideal candidate will possess over 10 years of experience in Cyber Security with a focus on SIEM engineering. You will collaborate closely with SOC teams to detect and respond to security events, ensuring seamless integration of various security tools.

Responsibilities include optimizing SIEM performance and mentoring junior staff. A Bachelor's degree and expertise in platforms like Splunk or QRadar are required. Opportunity to work within a regulated environment focused on finance and insurance.

Qualifications

  • At least 10 years of experience in Cyber Security specializing in SIEM solutions.
  • Expertise in SIEM engineering with knowledge of security frameworks like MITRE ATT&CK and regulatory compliance.
  • Experience in cloud environments like AWS, Azure, or GCP.

Responsibilities

  • Lead the design and deployment of SIEM solutions.
  • Plan and execute SIEM migrations, including rule/alert migration.
  • Collaborate with SOC teams for further use case creation.

Skills

SIEM engineering and architecture
Collaboration with cybersecurity teams
Integration of log sources
Communication of technical concepts

Education

Bachelor’s degree in computer science or related field

Tools

Splunk
QRadar
Azure Sentinel

Job description

EPAM is seeking a seasoned Security Architect with a strong SIEM (Security Information and Event Management) deployment and migration background. The ideal candidate will have good experience in architecture, design, implementation, migration and optimization of modern SIEM solutions in highly regulated environments like finance and insurance, among others. The ideal candidate should also have a background working within an Enterprise SOC with proven hands‑on experience in detection and response to security events and incidents. The architect will work closely with the client to understand the current and target state of the SIEM solutions. The most successful candidate will be a strong technologist with a practical approach to designing SIEM solutions within large enterprises. This candidate must be able to effectively collaborate with the client’s cybersecurity teams and SOCs to deliver optimal results. In addition, the SIEM Architect must be able to clearly and successfully communicate with a demonstrated understanding of the business and technical requirements of the client.

Responsibilities
  • Lead the design, deployment and configuration of SIEM solutions, ensuring seamless integration with various security tools, systems and log sources
  • Plan and execute SIEM migration projects, including data transfer, log source integration, rule/alert migration and configuration tuning
  • Develop, customise and fine‑tune SIEM use cases, correlation rules, dashboards and reports to effectively detect threats and suspicious activities
  • Integrate diverse log sources such as firewalls, IDS/IPS, antivirus, cloud services, applications and operating systems into the SIEM for comprehensive monitoring
  • Collaborate with the SOC (Security Operations Center) team to support further use case creation and finetuning following SOC team requirements
  • Regularly review and optimise SIEM performance to ensure efficient log collection, storage, processing and alerting
  • Maintain comprehensive documentation for SIEM configurations, integrations, client and migration processes, providing regular reports on SIEM performance
  • Train and mentor junior security engineers and SOC analysts on SIEM use, best practices and troubleshooting
  • Work closely with IT, security and network teams to ensure the SIEM platform aligns with security strategies and goals
Requirements
  • At least 10 years of experience in Cyber Security, most of which specialized in engineering SIEM solutions and working in a SOC
  • Bachelor’s degree in computer science, Information Security or a related field (or equivalent experience)
  • Expertise in SIEM engineering and architecture, with a focus on at least Splunk or any other leading SIEM solutions like QRadar, ArcSight, LogRhythm and Azure Sentinel among others
  • Experience in managing the full delivery lifecycle for SIEM enhancements and automation including working on converged SIEM solutions that include SOAR and XDR solutions within it
  • Proficiency in integrating log sources and developing correlation rules, alerts and dashboards
  • Experience working in cloud environments (AWS, Azure, GCP) and integrating cloud logs into SIEM solutions
  • Understanding security frameworks (MITRE ATT&CK, NIST, ISO 27001) and regulatory compliance (GDPR, PCI‑DSS)
  • Knowledge of network protocols, firewalls, IDS/IPS, endpoint security and threat intelligence
  • Ability to understand the client’s needs, their specific security challenges and the regulatory landscape to provide tailored solutions
  • Ability to manage stakeholders at various levels, from technical staff to senior executives and effectively communicate complex technical concepts to clients
  • To work effectively with teams from different departments within large organizations and enterprises
Nice to have
  • Proven experience with multiple SIEM solutions
  • Hands‑on experience with SIEM migration projects, including planning, execution and troubleshooting
  • Familiarity with scripting languages (Python, PowerShell, Bash) for automation and data parsing
  • SIEM‑specific certifications such as Splunk Certified Architect, IBM QRadar Certification or ArcSight Certified Security Analyst
  • Security certifications such as CISSP, CEH, CompTIA CASP+ or GIAC are an advantage
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior SIEM Architect: Migration & Detection Leader
Senior SIEM Architect: Migration & Detection Leader

EPAM Systems • Germany (OH)

On-site
USD 120,000 - 160,000
Sr. Security Engineer - SIEM, Automation & Elastic Security
Sr. Security Engineer - SIEM, Automation & Elastic Security

Red Lobster, Inc. • Orlando (FL)

On-site
USD 90,000 - 130,000
Security Engineer
Security Engineer

Liberty Personnel Services, Inc. • Feasterville-Trevose

Hybrid
USD 90,000 - 120,000
Information Security Analyst
Information Security Analyst

Cisive • Maryland

Hybrid
USD 80,000 - 110,000
Security Solutions Architect - SIEM, AI & Incident Response
Security Solutions Architect - SIEM, AI & Incident Response

Elastic • Germany (OH)

Hybrid
USD 120,000 - 191,000
Competitive pay
Health coverage for family
Flexible locations and schedules
+4
SIEM Engineer
SIEM Engineer

Request Technology, LLC • Austin (TX)

On-site
USD 90,000 - 140,000
SIEM Engineer
SIEM Engineer

Request Technology, LLC • Chicago (IL)

On-site
USD 90,000 - 130,000
XSIAM Consultant - EMEA 2
XSIAM Consultant - EMEA 2

Entelligence • Germany (OH)

On-site
USD 80,000 - 120,000
Competitive base salary
Medical, dental, vision, and life insurance
Vacation, sick time, and paid holidays
+1
Security Analyst
Security Analyst

The Phoenix Group • New York (NY)

On-site
USD 65,000 - 95,000
Splunk SIEM Security Engineer/Architect
Splunk SIEM Security Engineer/Architect

WaveStrong, Inc. • Los Angeles (CA)

On-site
USD 100,000 - 130,000