Lead Cybersecurity Engineer for SIEM and SOAR Solutions

6 dni temu


Remote Kraków, Polska EPAM Systems Pełny etat
Unlock Your Potential as a Senior Security Expert

We are seeking a highly skilled Senior Security Engineer to join our team, specializing in SIEM and SOAR technologies. As a seasoned professional, you will play a crucial role in enhancing our clients' security posture.

About the Role
  • Configure and Optimize SIEM and SOAR Solutions: Ensure seamless integration with various security tools, systems, and data sources. Conduct thorough testing and validation to guarantee optimal performance.
  • Develop and Implement Detection Use-Cases: Design and deploy SIEM detection rules and SOAR remediation use-cases. Create, test, and update SOAR playbooks to streamline security operations.
  • Integrate Log Sources and Perform Threat Hunting: Integrate log sources with SIEM, optimize log ingestion and processing. Utilize threat hunting techniques, data enrichment, threat intelligence feeds onboarding, and automated responses.
  • Reporting and Documentation: Generate detailed reports for both technical and non-technical staff and stakeholders.
  • Ongoing Improvement: Stay up-to-date with SIEM technologies and identify opportunities for continuous improvement.
Requirements
  • SIEM Experience: At least 2 years of experience with one or more SIEM solutions (Azure Sentinel, Splunk, Google SecOps, QRadar, ArcSight, etc.).
  • Cloud Platform Knowledge: Basic understanding of at least one cloud platform (GCP, Azure).
  • Internet Security and Network Protocols: Technical knowledge of Internet security, network protocols, and related technologies, including IDS/IPS, firewalls, content filtering, network behavior analysis tools, anti-malware, and packet inspection.
  • System Monitoring and Logging: Basic understanding of Windows, Linux, DB, network device monitoring, and logging techniques.
  • Host and Network Security Hardening: Basic understanding of host and network security hardening and common security risk management concepts.
Desirable Skills and Qualifications
  • Scripting and Automation: Proficiency in scripting and automation (e.g., Python, PowerShell) and developing API integrations with SIEM/SOAR.
  • Attack Frameworks and Knowledge Bases: Familiarity with attack frameworks and knowledge bases, such as the MITRE ATT&CK framework, CAPEC, etc.
  • Ai-Assisted Daily Operations: Experience with leveraging AI assistance in daily security operations.
  • SIRP/SOAR Tools: Experience with one or more SIRP/SOAR tools (Google SecOps SOAR, TheHive, Cortex, Splunk Phantom, Demisto/XSOAR, Resilient, etc.).
  • Query Languages: Knowledge of Splunk Search Processing Language (SPL), Splunk Common Information Model (CIM), YARA-L 2.0, Unified Data Model (UDM), Kusto Query Language (KQL).
What We Offer
  • Competitive Salary: We offer a competitive salary range of $120,000 - $180,000 per year, depending on experience.
  • Career Growth Opportunities: Outstanding career roadmap, leadership development, career advising, soft skills, and well-being programs.
  • Benefits Package: Stable income, employee stock purchase plan, health insurance, multisport, shopping vouchers, and relocation assistance.
  • Collaborative Environment: Friendly team, enjoyable working environment, flexible schedule, opportunity to work remotely within Poland, and chance to work abroad for up to 60 days annually.

Please note that the set of bonuses might vary based on the role you apply for – specifics will be discussed with our recruiter during the general interview. EPAM Systems is a leading global provider of digital platform engineering and development services. We are committed to having a positive impact on our customers, employees, and communities.



  • Remote, Kraków, Polska EPAM Systems Pełny etat

    About the RoleEPAM Systems is seeking a seasoned Cybersecurity Expert to join our team. As a key member of our security operations, you will play a vital role in ensuring the security and integrity of our systems.


  • Kraków, Polska HSBC Service Delivery Pełny etat

    HSBC Service Delivery seeks a seasoned Cybersecurity Integration Lead to spearhead the onboarding of new technologies, business services logging feeds and cybersecurity tooling into the Global Cybersecurity Operations Security Operation Centre (SOC).The successful candidate will serve as the primary technical and engagement lead, driving desired outcomes...

  • Cybersecurity Lead Analyst

    6 miesięcy temu


    Kraków, małopolskie, Polska HSBC Service Delivery Pełny etat

    Some careers shine brighter than others.If you’re looking for a career that will help you stand out, join HSBC, and fulfil your potential. Whether you want acareer that could take you to the top, or simply take you in an exciting new direction, HSBC offers opportunities,support and rewards that will take you further.Your career opportunityThe Cybersecurity...

  • Cybersecurity Engineer

    4 tygodni temu


    Remote, Poland (Remote) Vidoc Security Lab Pełny etat

    Cybersecurity EngineerWe are a cutting-edge team at Vidoc Security Lab, pioneering the fusion of artificial intelligence and cybersecurity. Our mission is to push the boundaries of security code review, aiming for human-level performance.As a key member of our team, you will collaborate closely with the founding engineers to develop an innovative system that...


  • Kraków, Polska HSBC Service Delivery Pełny etat

    Head of Cybersecurity Operations IntegrationRef. 14354A career that shines brighter than others awaits.If you're looking for a role that will help you stand out, join HSBC and achieve your full potential.Your career opportunityThe Cybersecurity Operations Integration Lead reports directly into the 'Head of Sustainable Cybersecurity Operations', overseeing a...


  • Kraków, Polska Keepit Pełny etat

    We are a fast-growing company that offers cloud-based backup services to a global audience. Our platform provides customers with an immutable historical archive of their primary data, protecting them against various threats. As a Senior SOC Analyst (SOC L3 Analyst), you will be responsible for securing our digital world.The role involves acting as a senior...


  • Kapelanka a, Kraków, Polska HSBC Service Delivery Pełny etat

    Cybersecurity Operations Integration LeadJob Title: Cybersecurity Operations Integration LeadSalary Range: €70,000 - €100,000 per annumAbout HSBC Service DeliveryWe are a leading financial institution with a strong presence in the market. Our cybersecurity operations team is responsible for protecting our systems and data from cyber threats.Job...


  • Kraków, Polska HAYS Pełny etat

    Lead Cloud Cybersecurity AnalystKrakówNR REF.: 1189414Your new company You will join Service Delivery Centre of one of the world39s biggest investment banks. You will become part of a Cybersecurity department, which provides a coordinated suite of network defence related services and is responsible for the detection and response to information and...


  • Kapelanka a, Kraków, Polska HSBC Service Delivery Pełny etat

    About HSBC Service DeliveryHSBC Service Delivery is a global leader in delivering innovative solutions that help businesses thrive in a rapidly changing world. Our team is committed to providing exceptional service, expertise, and technology to our customers, enabling them to achieve their goals.Job Description: Cybersecurity Head of Networking and Access...


  • Kraków, Polska HSBC Service Delivery Pełny etat

    At HSBC Service Delivery, we are committed to delivering exceptional security solutions that protect our network infrastructure. As a key member of our team, the Head of Network Access Control plays a vital role in developing and implementing strategies to ensure secure network access across HSBC.We are seeking an experienced Cybersecurity Solutions...

  • Cybersecurity Project Lead

    1 tydzień temu


    Kraków, Polska Capgemini Polska Pełny etat

    About the RoleWe are seeking a seasoned Cybersecurity Project Lead to join our team at Capgemini Polska. As a key member of our Operational Technology (OT) security team, you will be responsible for leading technical projects focused on enhancing the security posture of our clients' OT environments.ResponsibilitiesLead and manage technical projects related...


  • Kraków, małopolskie, Polska HSBC Service Delivery Pełny etat

    Lead Cybersecurity Operations Integration AnalystRef. 14623Some careers shine brighter than others.If you’re looking for a career that will help you stand out, join HSBC, and fulfil your potential. Whether you want a career that could take you to the top, or simply take you in an exciting new direction, HSBC offers opportunities, support and rewards that...


  • Kraków, Polska Infotree Global Solutions Pełny etat

    Please notice the position is in a hybrid model, at least 3 days from Cracow.We are looking for talented and passionate architects or experienced software engineers who would like to become Architect and are interested in embedded systems and software as well as cybersecurity issues. This role requires a holistic understanding of the software architecture...


  • Kapelanka a, Kraków, Polska HSBC Service Delivery Pełny etat

    HSBC Service Delivery seeks a highly skilled Cybersecurity Lead Analyst to join their team. The ideal candidate will have 5+ years of experience in senior analyst roles, preferably in the finance sector.The successful candidate will lead the analysis of and support the response to cyber security events within HSBC, using the latest threat monitoring and...


  • Kraków, Polska Infotree Global Solutions Pełny etat

     At Infotree, meeting your career needs is a top priority. Client satisfaction is largely dependent on the resources we can provide, and we take pride in our delivery. We have a supportive team in place to give quality people a chance to grow and challenge themselves in their roles which has resulted in that we have placed many employees in positions that...


  • Kraków, Lesser Poland HSBC Service Delivery Pełny etat

    Stand Out in Your Career with HSBCHSBC offers a unique opportunity to advance your career in Cybersecurity. As a key member of our team, you will play a crucial role in protecting our global network and cryptography systems.We are looking for an experienced expert who can lead and oversee security processes, controls, and standards across different regions....

  • Cybersecurity Architect

    4 tygodni temu


    Kraków, Polska HAYS Pełny etat

    Cybersecurity ArchitectKrakówNR REF.: 1190412Your new role  Contract of employment Hybrid working model in Cracow (office 2x per week) Cybersecurity Architect is responsible for guiding the design and implementation of secure solutions and services across our business and IT support areas. Driving the successful configuration and implementation of security...


  • Kapelanka a, Kraków, Polska HSBC Service Delivery Pełny etat

    Cybersecurity Operations Integration RoleHSBC Service Delivery is seeking a skilled professional to fill the position of Cybersecurity Operations Integration Analyst.Key ResponsibilitiesSupport the development and implementation of a technology and log ingestion framework that aligns to control requirements and supports a cyber-threat intelligence led...

  • Threat Prevention Engineer

    7 miesięcy temu


    Kraków, Polska HAYS Pełny etat

    Threat Prevention EngineerKrakówNR REF.: 1186775Your new company For our client, a company that provides SaaS products related to sales, customer support, and other customer communications, we are looking for a Threat Prevention Engineer.Your new role  Design, build and maintain global security controls and tooling that address current and emerging cyber...


  • Remote, Warszawa, PL KMD Poland Pełny etat

    You are professionally: 5+ years of SOC experience, with significant expertise in EDR/SIEM tools (Microsoft Defender and Sentinel preferred). Familiarity with Microsoft Azure. Deep understanding of threat landscapes, advanced attack techniques, and incident response. Ability to work effectively under pressure and during irregular hours, including...