We are looking for a highly skilled Security Architect to join our EPAM team.
The ideal candidate will have extensive experience in SIEM (Security Information and Event Management) deployment, migration, and optimization. This role involves close collaboration with client cyber security teams and enterprise SOCs to develop SIEM solutions in regulated environments such as finance and insurance.
#LI-DNI#EasyApply
Responsibilities
- Lead the design, deployment, and configuration of SIEM solutions, ensuring seamless integration with various security tools, systems, and log sources
- Plan and execute SIEM migration projects, including data transfer, log source integration, rule/alert migration, and configuration tuning
- Develop, customize, and fine-tune SIEM use cases, correlation rules, dashboards, and reports to effectively detect threats and suspicious activities
- Integrate diverse log sources such as firewalls, IDS/IPS, antivirus, cloud services, applications, and operating systems into the SIEM for comprehensive monitoring
- Collaborate with the SOC team to support further use case creation and fine-tuning following SOC team requirements
- Regularly review and optimize SIEM performance to ensure efficient log collection, storage, processing, and alerting
- Maintain comprehensive documentation for SIEM configurations, integrations, and migration processes, providing regular reports on SIEM performance
- Train and mentor junior security engineers and SOC analysts on SIEM use, best practices, and troubleshooting
- Work closely with IT, security, and network teams to ensure the SIEM platform aligns with security strategies and goals
Want more jobs like this?
Get jobs in Ozorków, Poland delivered to your inbox every week.
- At least 8 years of experience in Cyber Security, most of which specialized in engineering SIEM solutions and working in a SOC
- Expertise in SIEM engineering and architecture, with a focus on at least Splunk or any other leading SIEM solutions like Microsoft Sentinel, QRadar, ArcSight, LogRhythm
- Experience in managing the full delivery lifecycle for SIEM enhancements and automation, including working on converged SIEM solutions that include SOAR and XDR solutions within it
- Proficiency in integrating log sources and developing correlation rules, alerts, and dashboards
- Experience working in cloud environments (AWS, Azure, GCP) and integrating cloud logs into SIEM solutions
- Understanding of security frameworks like MITRE ATT&CK, NIST, and basic knowledge of regulatory compliance such as GDPR, PCI-DSS
- Knowledge of network protocols, firewalls, IDS/IPS, endpoint security, and threat intelligence
- Ability to understand the client's needs, their specific security challenges, and the regulatory landscape to provide tailored solutions
- Should effectively communicate complex technical concepts to clients, build trust, and establish strong relationships
- Ability to manage stakeholders at various levels, from technical staff to senior executives
- Skill in facilitating discussions, resolving conflicts, and building consensus among stakeholders with diverse perspectives
- Ability to make informed decisions based on evidence
- We gather like-minded people:
- Engineering community of industry professionals
- Friendly team and enjoyable working environment
- Flexible schedule and opportunity to work remotely within Poland
- Chance to work abroad for up to 60 days annually
- Relocation within our 50+ offices
- We provide growth opportunities:
- Outstanding career roadmap
- Leadership development, career advising, soft skills, and well-being programs
- Certification (GCP, Azure, AWS)
- Unlimited access to LinkedIn Learning, Get Abstract, Cloud Guru
- Language classes in English and Polish for foreigners
- We cover it all:
- Stable income (Employment Contract or B2B)
- Participation in the Employee Stock Purchase Plan
- Benefits package (health insurance, multisport, shopping vouchers)
- Strategically located offices featuring entertainment and relaxation zones, table tennis and football, free snacks, fantastic coffee, and more
- Referral bonuses
- Corporate, social and well-being events
- Please, note:
- The set of bonuses might vary based on the role you apply for - specifics will be discussed with our recruiter during the general interview
- We will reach out to selected candidates exclusively