Enable job alerts via email!

Senior SIEM Engineer

Rockwell Automation

Cleveland (OH)

On-site

USD 90,000 - 130,000

Full time

16 days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

A leading technology company seeks an IT Security professional to enhance security measures and lead the deployment of Microsoft Sentinel. The role involves collaboration across teams and requires a Bachelor's degree along with significant experience in Information Security. The position offers a flexible work schedule and a comprehensive benefits package.

Benefits

Health Insurance including Medical, Dental and Vision
401k
Paid Time off
Parental and Caregiver Leave
Flexible Work Schedule

Qualifications

  • 5+ years of experience in Information Security.
  • Experience with SIEM and UEBA solutions.
  • Strong knowledge of programming or scripting languages.

Responsibilities

  • Lead deployment of Microsoft Sentinel for security monitoring.
  • Integrate data sources for comprehensive security analysis.
  • Collaborate with teams for seamless security coverage.

Skills

Information Security
Computer Networking
Security Information and Event Management (SIEM)
Proactive Threat Hunting
Incident Response

Education

Bachelor's Degree or Equivalent

Tools

Microsoft Sentinel
Splunk
LogRhythm
Elastic
AWS
Azure
GCP

Job description

Milwaukee, Wisconsin, United States
Ohio, United States
Houston, Texas, United States

Rockwell Automation is a global technology leader focused on helping the world's manufacturers be more productive, sustainable, and agile. With more than 28,000 employees who make the world better every day, we know we have something special. Behind our customers - amazing companies that help feed the world, provide life-saving medicine on a global scale, and focus on clean water and green mobility -our people are energized problem solvers that take pride in how thework we do changes the world for the better.

We welcome all makers, forward thinkers, and problem solvers who are looking for a place to do their best work. And if that's you we would love to have you join us!

Job Description

You will be an important contributor to the IT organization. You will have a demonstrated understanding of Information Security, Computer Networking, the Software Development Life Cycle (SDLC) and experience working with customers. You have Security Information and Event Management (SIEM) expertise and be willing to train on our company platform and products. You will report to Manager Cyber Threat Intelligence. You will work Hybrid in Milwaukee, WI, United States.

Primary Responsibilities

  • Lead the deployment and configuration of Microsoft Sentinel to monitor security events across a diverse infrastructure.
  • Integrate and onboard different data sources (e.g., firewalls, servers, endpoints, cloud platforms) into Microsoft Sentinel for comprehensive security monitoring.
  • Oversee the collection, parsing, and normalization of logs for security event analysis, ensuring comprehensive and accurate data ingestion.
  • Develop alerts, reports, data models, dashboards, and connectors to support custom user requirements and continuous security monitoring.
  • Build and optimize playbooks within Microsoft Sentinel to automate common security workflows and incident response procedures.
  • Use Microsoft Sentinel's capabilities to conduct proactive threat hunting, identifying latest attack patterns, and building custom detection rules.
  • Collaborate with Incident Response, Threat Intelligence, Threat Hunting, Infrastructure, and Cloud teams to ensure comprehensive and seamless security coverage across all environments, both on-premises and in the cloud.
  • Develop recommendations in collaboration with other team members to maximize Enterprise capabilities in prevention, detection, analysis, containment, eradication, and recovery from cyber-attacks.
  • Leverage automation and orchestration solutions to automate repetitive tasks.
  • Stay up-to-date with latest security threats, trends, and tools, and incorporate new insights into the Sentinel environment for improved protection.
The Essentials - You Will Have:
  • Bachelor's Degree or Equivalent Years of Relevant Work Experience
  • Legal authorization to work in the U.S. We will not sponsor individuals for employment visas, now or in the future, for this job opening.

Preferred Qualifications

  • Typically requires a minimum of 5 years of experience in the Information Security field
  • 1+ years of experience with SIEM and UEBA solutions such as Splunk, LogRhythm, Elastic
  • Microsoft Sentinel certifications.
  • Understanding of log collection methodologies and aggregation techniques such as Syslog, NXlog, Windows Event Forwarding
  • Working knowledge of cloud platforms such as AWS, Azure and GCP
  • Strong knowledge of at least one programming or scripting language (ex. Python, PowerShell, PHP, Perl).
  • Understanding of security models and frameworks (ex. MITRE ATT&CK, MITRE D3FEND, Cyber Kill Chain (CKC))
  • Demonstrated experience providing customer-focused solutions, support, or service
  • Security certifications (Security+, GSEC, GCIH, GCIA, CISSP, NCSF, etc)
  • Familiar with Risk Based Alerting (RBA) frameworks and implementation
  • Experience architecting, planning, deploying, and using SIEM or UEBA platforms
  • Experience integrating or using endpoint security and host-based intrusion detection solutions
  • Demonstrated experience in one of the following fields Cyber Threat Intelligence, Incident Response, or Computer Forensics
  • Strongly prefer candidates who have solid knowledge of one or more programming or scripting language such as PHP, Perl, Python, PowerShell
What We Offer:
  • Health Insurance including Medical, Dental and Vision
  • 401k
  • Paid Time off
  • Parental and Caregiver Leave
  • Flexible Work Schedule where you will work with your manager to enjoy a work schedule that can be flexible with your personal life.
  • To learn more about our benefits package, please visit at www.raquickfind.com.

At Rockwell Automation we are dedicated to building a diverse, inclusive and authentic workplace, so if you're excited about this role but your experience doesn't align perfectly with every qualification in the job description, we encourage you to apply anyway. You may be just the right person for this or other roles.

This position is part of a job family. Experience will be the determining factor for position level and compensation.

#LI-Hybrid

#LI-SS1

#lifeatrok

We are an Equal Opportunity Employer including disability and veterans.

If you are an individual with a disability and you need assistance or a reasonable accommodation during the application process, please contact our services team at +1 (844) 404-7247.

Rockwell Automation's hybrid policy aligns that employees are expected to work at a Rockwell location at least Mondays, Tuesdays, and Thursdays unless they have a business obligation out of the office.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Senior Security Engineer (SIEM/Cribl) - Northeast region (Remote)

Cybersecurity Company

Mississippi

Remote

USD 110.000 - 160.000

13 days ago

Junior SIEM engineer

Amgen

Remote

USD 70.000 - 100.000

2 days ago
Be an early applicant

Senior Cybersecurity (SIEM) Engineer REMOTE

Lensa

Remote

USD 100.000 - 140.000

20 days ago

Senior Security Engineer (SIEM/Cribl) - Northeast region (Remote)

GuidePoint Security, LLC

Virginia

Remote

USD 100.000 - 140.000

16 days ago

Senior Security Engineer (SIEM/Cribl) - Northeast region (Remote)

GuidePoint Security

Remote

USD 120.000 - 160.000

16 days ago

Senior Solutions Engineer SIEM Specialist

Bundoran Group

Atlanta

Remote

USD 80.000 - 120.000

30+ days ago

SIEM Content Developer

TieTalent

Ohio

On-site

USD 90.000 - 130.000

Today
Be an early applicant

Sales Engineer - NG SIEM (Remote, AUS)

CrowdStrike

Remote

USD 80.000 - 150.000

30+ days ago

Security Engineer (SIEM/SOAR/SOC Optimization) - Mid-Atlantic region (Remote in NC, VA, WV, MD,[...]

GuidePoint Security

Remote

USD 80.000 - 110.000

30+ days ago