At TE, you will unleash your potential working with people from diverse backgrounds and industries to create a safer, sustainable and more connected world.
Job Overview
TE Connectivity's Information Security and Compliance Teams execute security controls to prevent hackers from infiltrating company information or jeopardizing e-commerce programs. They research attempted efforts to compromise security protocols, maintain security systems for routers and switches, administer security policies to control access to systems, maintain the company's firewall and use applicable encryption methods. TE's Security and Compliance Teams also provide information to management regarding the negative impact on the business caused by theft, destruction, alteration or denial of access to information. As a Senior SIEM Engineer, you will be a key member of our collaborative security team, working alongside other security professionals to protect our organization from sophisticated cyberattacks. You will have the opportunity to drive innovation in our SIEM program, leveraging your expertise to develop advanced detection methods and improve our overall security posture.
Want more jobs like this?
Get jobs in Budapest, Hungary delivered to your inbox every week.
• SIEM Engineering & Development: Design, develop, implement, and optimize advanced correlation rules, use cases, and detection logic within the enterprise SIEM platform.
• Log Source Management: Architect and maintain robust log ingestion pipelines from diverse security and IT systems, ensuring comprehensive data collection, normalization, and parsing.
• Threat Detection & Analysis: Develop and refine high-fidelity security alerts, dashboards, and reports to enhance threat identification, reduce false positives, and provide actionable insights.
• Security Operations Collaboration: Collaborate closely with the Security Operations Center (SOC) to optimize response workflows, improve threat detection capabilities, and provide expert-level support during security incidents.
• Threat Intelligence & Proactive Hunting: Maintain expertise in emerging threats, attack techniques, and security best practices. Proactively hunt for advanced threats and develop new detection methods based on threat intelligence and adversary tactics, techniques, and procedures (TTPs).
Key responsibilities:
• Automation & Scripting: Automate SIEM tasks, workflows, and integrations using scripting languages (e.g., Python, PowerShell) to improve efficiency and scalability.
• Documentation & Knowledge Sharing: Develop and maintain comprehensive SIEM documentation, including system architecture diagrams, data flow diagrams, log source configurations, alert rationale, and incident response procedures.
• SIEM Architecture & Strategy: Contribute to the long-term vision and roadmap for SIEM and threat detection capabilities. Identify gaps and opportunities for improvement in existing detection strategies and recommend solutions.
• Collaboration & Communication: Effectively communicate technical concepts to both technical and non-technical audiences. Interface with other IT teams (network, systems, application development, etc.) to ensure security is integrated throughout the infrastructure.
• Strategic Planning & Budgeting: Collaborate with leadership on strategic planning, budget forecasting, and resource allocation for SIEM-related initiatives.
What your background should look like:
• Bachelor's degree in Computer Science, Information Security, or a related field, or equivalent practical experience.
• Minimum of 5-7 years of experience in information security, with a strong focus on SIEM administration, engineering, and security operations.
• Significant experience with at least one enterprise-grade SIEM platform (e.g., Devo, Splunk, QRadar, Sentinel, ArcSight).
• Expert-level knowledge of SIEM architecture, design, implementation, and administration.
• Deep understanding of log management principles, log formats, and data normalization techniques.
• Proficiency in developing advanced correlation rules, use cases, and detection logic within a SIEM platform.
• Experience with scripting languages (e.g., Python, PowerShell, Regular Expressions) for automation and data manipulation.
• Familiarity with various operating systems (Windows, Linux, macOS) and cloud platforms (AWS, Azure, GCP).
• Knowledge of common security frameworks and standards (e.g., NIST, MITRE ATT&CK, CIS).
• Experience with threat intelligence platforms and data feeds.
Preferred Qualifications:
• Experience with Devo, Devo SOAR, and/or LogicHub
• Advanced programming/coding in one or more languages (C#, Python, etc).
• Understanding of security concepts, including network security, endpoint security, intrusion detection/prevention systems (IDS/IPS), firewalls, and vulnerability management.
• Manufacturing and/or engineering industry experience.
• Experience working in a large global organization.
#LI-ONSITE #jobsEMEAMF