Security information and event management Content Engineer (SIEM)
The core competency part is at the bottom; it speaks about: Summary
The SIEM Content Engineer will serve as the principle engineering resource, and will be responsible for the care and content of the ArcSight SIEM platform. The SIEM Content Engineer will be managing the lifecycle of detection content (use cases) which will present monitoring and alerting content to the Security Incident Response Team (SIRT). The SIEM Engineer will have a positive impact on the security organization, and shape the way the enterprise views the threat landscape.
Core Responsibilities
An ideal candidate will be to apply their knowledge of the security threat landscape to design detection and alerting content within ArcSight to be leveraged by the SIRT team. You will be required to work closely with the various internal service towers as well as application security teams on design, content, facilitating the use of the system and support the SIRT and their security incident identification processes and escalation workflow.
Additional responsibilities include:
• Use Case requirement gathering
• Work alongside third party for correlation rules creation based on identified requirements
• Integrated IOC threat feeds onto the ArcSight platforms
• Fine Tune existing correlation rules to maximize their effectiveness
• Cyclical evaluation of SIEM content to enhance detection capabilities
Job Description:
Skill and Abilities
• Experience with Log Format and Source Data for SIEM Analysis.
• Implementation of SIEM Service and Design of SIEM Source Data experience
• Understanding of networking fundamentals.
• Solid background with Windows and UNIX platforms
• Strong documentation, excellent communication and exceptional problem solving skills.
• Demonstrated ability to drive process improvements and identify gaps.
• Proactive in engaging with stakeholders for effective use case requirement gathering
• Proven ability to excel in a team, as an individual, in a dynamic environment and still meet deadlines.
Education Level Bachelor’s Degree
Field of Study Information Technology, Computer science, Computer Engineering, Telecommunications or related field.
Certifications Desired: CISSP
Years’ Experience Requires 5+ years related experience.
Compliance Comcast is an EEO/AA/Drug Free Workplace.
The SIEM Content Engineer will serve as the principle engineering resource,
and will be responsible for the care and content of the ArcSight SIEM platform
Core Competency:
HP Arcsight experience including in-depth knowledge of use-case development
/ Alerting, custom reporting, and log analysis /assessment.
Position Comments:
Successful Traits:
• Exceptional Communication Skills. Able to write concise documentation.
• Diplomacy. Able to present counter opinions or difficult topics in a tactful way.
• Root cause analysis and problem solving skills.
• Strong Organizational and Project management Skills
Nice to Haves :
• Knowledge of Comcast Technology, organizations, people, processes, culture, and systems.
• Proven Success engaging stakeholders in continuous change and workflow improvement.
• Ability to understand and support business operational functions.
Key Skills:
Java Lead Developer
Location
Java Lead Developer
Location
Lead Azure Data Engineer
Location
Head of Engineering Operations...
Location
Data Analyst
Location
Artificial Intelligence
Location
Data Scientist, Fundamental Eq...
Location
Data Scientist
Location
Machine Learning
Location
AI Acceleration
Location
QA Automation Lead
Location
Entry-Level Data Analyst
Location
Data Analyst Consultant
Location
Data Scientist
Location
Marketing Data Scientist
Location
Send your resume at support@kloudhire.com
Senior Engineer - Product Cybersecurity Location:...
Location
Cyber Security Analyst (incident management) Minne...
Location
Cyber Security Analyst Location:Wallingford, CT, ...
Location
Security Engineer
Location
Cyber Security Manger Troy, Mi
Location
Information Systems Security Officer (ISSO) - Hill...
Location
Information Systems Security Officer Location:Fort...
Location
Lead Network Cyber Security Engineer - Costa Mesa,...
Location
Cybersecurity Engineer Senior Location:Racine, WI...
Location
Cyber Security Administrator Las Cruces, New Mexic...
Location
Systems Security Engineering Section Lead AZ Seatt...
Location
Senior IT (Network) Security Analyst, Loc: Saint L...
Location
Information Systems Security Officer Worcester, MA
Location
Information Security Analyst Lowell, MA
Location
IT Security Administrator Location: Newport News, ...
Location
Cyber Security Engineer Colorado Springs, CO Long...
Location
Cybersecurity Project Specialist, Location: Santa ...
Location
Information Security Application Architect, Locat...
Location
Cloud Security Engineer Loc: Deerfield, IL and acr...
Location
Cybersecurity Senior SIEM Analyst Location:Ohio, ...
Location
Network Security Analyst II, Location:Chantilly, ...
Location
Sr Manager, Cybersecurity Risk Assessor Location...
Location
Cyber Security Manager Location:Bethlehem, P...
Location
Cybersecurity Analyst
Location
Cybersecurity Analyst - Hybrid: San Francisco, CA
Location
Cyber Security Engineer/Architect
Location
Contractor Program Security Officer, Costa Mesa, C...
Location
Cyber Security Manager Location:Denver, CO Direct ...
Location
Cybersecurity Business Systems Analyst III Locati...
Location
Faculty, Cybersecurity (12 month) Columbia, MD
Location
Sr. Cyber Security Consultant, Houston, TX
Location
Lead Security Analyst, Threat Operations Location...
Location
Software Engineer | Security
Location
Cyber Security Engineer Location:New York, NY, US...
Location
Information Security Awareness Program Manager Atl...
Location
Sr. Cybersecurity DevOps Engineer Kansas City, MO ...
Location
Senior Cyber Security Engineer Location:Troy, MI,...
Location
Security Software Developer - El Segundo, Californ...
Location
Information Systems Security Manager Location:Pet...
Location
Cybersecurity with XSOAR Developer
Location