Candidatul Ideal
The role focuses on managing and optimizing SIEM platforms, ensuring effective monitoring, detection, and response to cybersecurity threats across customer infrastructure. The ideal candidate will have strong expertise in network security, incident response, and advanced security technologies, including cloud environments and SaaS-based security solutions.
Required Skills & Qualifications
Good knowledge of network security principles and technologies.
Proficiency with SIEM deployment, use case creation, and log ingestion pipelines.(Ex: Splunk ar fi un plus)
Familiarity with threat detection frameworks (MITRE ATT&CK, Cyber Kill Chain).
Scripting skills (Python, Bash) for log parsing and automation.
Strong client communication and documentation skills.
Some experience in security incident response and handling or incident analysis
Proficiency in using SIEM, EDR, SOAR tools.
Preferred Certifications & Qualifications
Extensive SIEM/XDR administration experience is a strong plus.
Security certifications (e.g., Security+, CEH, GIAC, etc) are a plus.
Vendors certifications
Required Skills & Qualifications
Good knowledge of network security principles and technologies.
Proficiency with SIEM deployment, use case creation, and log ingestion pipelines.(Ex: Splunk ar fi un plus)
Familiarity with threat detection frameworks (MITRE ATT&CK, Cyber Kill Chain).
Scripting skills (Python, Bash) for log parsing and automation.
Strong client communication and documentation skills.
Some experience in security incident response and handling or incident analysis
Proficiency in using SIEM, EDR, SOAR tools.
Preferred Certifications & Qualifications
Extensive SIEM/XDR administration experience is a strong plus.
Security certifications (e.g., Security+, CEH, GIAC, etc) are a plus.
Vendors certifications
Descrierea jobului
Responsibilities:
SIEM/XDR Platform Management
Deploy, configure, and optimize SIEM/XDR solutions for comprehensive log collection and event correlation.
Onboard and normalize logs from diverse sources (firewalls, IDS/IPS, Windows DC, network appliances, AV/antimalware, email security).
Ensure SIEM/XDR platform health, upgrades and preventive maintenance
Architect and deploy resilient SIEM/XDR environments, including backup and disaster recovery for the SIEM/XDR environments
Collaborate with SOC analyst teams to improve detection capabilities and reduce false positives.
Implement automation workflows or provide input for automation, orchestration and scripting to streamline SIEM/XDR platform management and incident handling.
Ensure seamless integration between SIEM/XDR and other security platforms, including cloud-native services.
Maintain documentation of SIEM/XDR configurations, architecture, processes, and incident workflows.
Work with vendor-provided resources to ensure optimal SIEM/XDR functioning
What we offer:
Cutting-edge technologies: The opportunity to work in a dynamic technology environment, with access to advanced security solutions.
Professional development: Access to training programmes and certifications to support career growth.
Collaborative team of professionals: An open, collaborative and innovation-driven work environment.
Competitive salary
Hybrid working
SIEM/XDR Platform Management
Deploy, configure, and optimize SIEM/XDR solutions for comprehensive log collection and event correlation.
Onboard and normalize logs from diverse sources (firewalls, IDS/IPS, Windows DC, network appliances, AV/antimalware, email security).
Ensure SIEM/XDR platform health, upgrades and preventive maintenance
Architect and deploy resilient SIEM/XDR environments, including backup and disaster recovery for the SIEM/XDR environments
Collaborate with SOC analyst teams to improve detection capabilities and reduce false positives.
Implement automation workflows or provide input for automation, orchestration and scripting to streamline SIEM/XDR platform management and incident handling.
Ensure seamless integration between SIEM/XDR and other security platforms, including cloud-native services.
Maintain documentation of SIEM/XDR configurations, architecture, processes, and incident workflows.
Work with vendor-provided resources to ensure optimal SIEM/XDR functioning
What we offer:
Cutting-edge technologies: The opportunity to work in a dynamic technology environment, with access to advanced security solutions.
Professional development: Access to training programmes and certifications to support career growth.
Collaborative team of professionals: An open, collaborative and innovation-driven work environment.
Competitive salary
Hybrid working
Descrierea companiei
Our client is a major provider of cybersecurity services and technologies, with 30 years of experience delivering complex projects.
Joburi similare
- 23 Sept. 2026
Tehnicieni Instalare și Mentenanță Sisteme de Securitate
ULTRAVISION SERVICES
București6000 - 10000 RON net / lună


