Cyber Security Engineer
Aviso de fuente externaen HCLTech
HCLTech seeks a Senior Cyber Security Engineer (SIEM) to design, maintain, and optimize SIEM solutions using Splunk, Cribl, Microsoft Sentinel, and CrowdStrike.
Salario
No especificado
Ubicación
Heredia, Costa Rica
Tipo de empleo
No especificado
Modalidad
No especificado
Cyber Security Engineer
Heredia, Costa Rica
Descripción del empleo
About the role
HCLTech is seeking a highly skilled Senior Cyber Security Engineer (SIEM) to join its security engineering team. The role focuses on designing, implementing, optimizing, and maintaining enterprise SIEM solutions for security monitoring and threat detection. Technologies include Splunk, Cribl, Microsoft Sentinel, and CrowdStrike.
Responsibilities
- Architect, deploy, configure, and maintain SIEM platforms, including Splunk, Cribl, and Microsoft Sentinel.
- Manage ingestion pipelines, data onboarding, parsing, normalization, and log source integration.
- Develop and optimize dashboards, search queries, alerts, and correlation rules.
- Ensure high availability, performance tuning, and scalability of SIEM solutions.
- Build and maintain detection content aligned with threat intelligence and MITRE ATT&CK; improve detection logic to reduce false positives and improve detection fidelity.
- Collaborate with Incident Response teams to refine rules and support investigations.
- Integrate SIEM solutions with security tools, including CrowdStrike, firewalls, EDR, identity platforms, cloud workloads, and network security devices.
- Implement log forwarding, routing, and transformation pipelines using Cribl.
- Ensure logging compliance with regulatory and policy requirements, including ISO 27001, SOC 2, and NIST; audit data ingestion, retention policies, and access controls.
- Work with SOC analysts, threat hunters, cloud engineers, and infrastructure teams, and provide subject-matter expertise for SIEM-related matters.
Datos clave
- The role focuses on enterprise SIEM solutions and security monitoring.
- Technologies include Splunk, Cribl, Microsoft Sentinel, and CrowdStrike.
- Responsibilities include detection content, SIEM integrations, and logging compliance.
¿Es tuya esta vacante?
Reclámala gratis y recibe candidatos con video en CazVid.
Preguntas frecuentes
What does this role involve?
It involves designing, implementing, optimizing, and maintaining enterprise SIEM solutions for security monitoring and threat detection.
Which technologies are included?
The listing names Splunk, Cribl, Microsoft Sentinel, and CrowdStrike.
Who will this role work with?
The role works with SOC analysts, threat hunters, cloud engineers, infrastructure teams, and Incident Response teams.