Security Architect/SIEM Architect (m/f/d)

EPAM Systems Newcastle upon Tyne, United Kingdom

Company

EPAM Systems

Location

Newcastle upon Tyne, United Kingdom

Type

Full Time

Job Description

EPAM is seeking a seasoned Security Architect with a strong SIEM (Security Information and Event Management) deployment and migration background. The ideal candidate will have good experience in architecture, design, implementation, migration and optimization of modern SIEM solutions in highly regulated environments like finance and insurance among others. The ideal candidate should also have a background, working within an Enterprise SOC with proven hands-on experience in detection and response to security events and incidents.
The architect will work closely with the client to understand the current and target state of the SIEM solutions. The most successful candidate will be a strong technologist with a practical approach to designing SIEM solutions within large enterprises.This candidate must be able to effectively collaborate with the client's cyber security teams and SOCs to deliver optimal results. In addition, the SIEM Architect must be able to clearly and successfully communicate with a demonstrated understanding of the business and technical requirements of the client.

Want more jobs like this?

Get jobs in Newcastle upon Tyne, United Kingdom delivered to your inbox every week.

By signing up, you agree to our Terms of Service & Privacy Policy.


#LI-DNI

Responsibilities
  • Lead the design, deployment and configuration of SIEM solutions, ensuring seamless integration with various security tools, systems and log sources
  • Plan and execute SIEM migration projects, including data transfer, log source integration, rule/alert migration and configuration tuning
  • Develop, customise and fine-tune SIEM use cases, correlation rules, dashboards and reports to effectively detect threats and suspicious activities
  • Integrate diverse log sources such as firewalls, IDS/IPS, antivirus, cloud services, applications and operating systems into the SIEM for comprehensive monitoring
  • Collaborate with the SOC (Security Operations Center) team to support further use case creation and finetuning following SOC team requirements
  • Regularly review and optimize SIEM performanceto ensure efficient log collection, storage, processing and alerting
  • Maintain comprehensive documentation for SIEM configurations, integrations client and migration processes, providing regular reports on SIEM performance
  • Train and mentor junior security engineers and SOC analysts on SIEM use, best practices and troubleshooting
  • Work closely with IT, security and network teams to ensure the SIEM platform aligns with security strategies and goals
Requirements
  • At least 10 years of experience in Cyber Security. Most of which specialized in engineering SIEM solutions and working in a SOC
  • Bachelor's degree in computer science, Information Security or a related field (or equivalent experience)
  • Expertise in SIEM engineering and architecture, with a focus on at least Splunk or any other leading SIEM solutions like QRadar, ArcSight, LogRythm and Azure Sentinel among others
  • Experience in managing the full delivery lifecycle for SIEM enhancements and automation including working on converged SIEM solutions that include SOAR and XDR solutions within it
  • Proficiency in integrating log sourcesanddeveloping correlation rules, alerts and dashboards
  • Experience working in cloud environments (AWS, Azure, GCP) and integrating cloud logs into SIEM solutions
  • Understanding security frameworks (MITRE ATT&CK, NIST, ISO 27001) and regulatory compliance (GDPR, PCI-DSS)
  • Knowledge of network protocols, firewalls, IDS/IPS, endpoint security and threat intelligence
  • Ability to understand the client's needs, their specific security challenges and the regulatory landscape to provide tailored solutions
  • Ability to manage stakeholders at various levels, from technical staff to senior executives and effectively communicate complex technical concepts to clients. To work effectively with teams from different departments within large organizations and enterprises
Nice to have
  • Proven experience with multiple SIEM solutions
  • Hands-on experience with SIEM migration projects, including planning, execution and troubleshooting
  • Familiarity with scripting languages (Python, PowerShell, Bash) for automation and data parsing
  • SIEM-specific certifications such as Splunk Certified Architect, IBM QRadar Certification or ArcSight Certified Security Analyst
  • Security certifications such as CISSP, CEH, CompTIA CASP+ or GIAC are an advantage
We offer
  • EPAM Employee Stock Purchase Plan (ESPP)
  • Protection benefits including life assurance, income protection and critical illness cover
  • Private medical insurance and dental care
  • Employee Assistance Program
  • Competitive group pension plan
  • Cyclescheme, Techscheme and season ticket loans
  • Various perks such as gym discounts, free Wednesday lunch in-office, on-site massages and regular social events
  • Learning and development opportunities including in-house training and coaching, professional certifications, over 22,000 courses on LinkedIn Learning Solutions and much more
  • If otherwise eligible, participation in the discretionary annual bonus program
  • If otherwise eligible and hired into a qualifying level, participation in the discretionary Long-Term Incentive (LTI) Program
  • *All benefits and perks are subject to certain eligibility requirements

Apply Now

Date Posted

11/07/2024

Views

0

Back to Job Listings ❤️Add To Job List Company Info View Company Reviews
Positive
Subjectivity Score: 0.9

Similar Jobs

Associate Account Executive - FireMon

Views in the last 30 days - 0

FireMon is seeking talented Account Associates to join their Emerging Growth team The role involves understanding sales cycles creating and tracking s...

View Details

Restaurant General Manager - Ashford - Taco Bell

Views in the last 30 days - 0

Taco Bell founded in California in 1962 has grown into a global brand with over 8200 restaurants in 32 countries Known for its Mexicaninspired quick s...

View Details

Security Engineer Intern, Identity and Access Management (IAM) - Meta

Views in the last 30 days - 0

Metas security team is the core of data and systems security protecting the companys environment and family of apps The Security Engineer Intern role ...

View Details

Software Engineer - Cadence

Views in the last 30 days - 0

Cadence is seeking a full stack software engineer for a role in central London The engineer will work on a cuttingedge web application for simulating ...

View Details

Solutions Engineer Middle East - Turkish Speaking - Cloudflare

Views in the last 30 days - 0

Cloudflare a leading company in Internet security and performance is seeking a Solutions Engineer in Dubai The role involves technical sales ensuring ...

View Details

THREAT RESEARCH ANALYST - Netskope

Views in the last 30 days - 0

Netskope a leading cloud security company is seeking a Threat Research Analyst The role involves conducting deepdive analysis of cybersecurity threats...

View Details