Senior Cyber Engineer
Deloitte US · United States · 2d ago
Responsible for supporting Security application patching, content, and development of process documentation. Serve as point of escalation for the Cyber Engineering Analysts. Provide support to Security Operations Center (SOC) security incident event management (SIEM) deployment in engineering responsibilities. Support the engineering responsibilities of the onboarding of new event sources, data feeds, applications, and devices as part of the SOC’s SIEM. Responsible for data integrity by the review of all data feeds into the SOC’s SIEM. Troubleshoot monitoring alerts from the SIEM infrastructure and SIEM agents and escalate to L5 Engineers when applicable. Assist in the testing of vendor patches for all Security applications. Maintain the SOC Engineering group in Service Now and ensure all request and incident service level agreements (SLA’s) as met as required by stakeholders. Support all security applications/tools. Provide customer service and interact/work with other teams to complete daily tasks. Document and update SOC Engineering process procedures and runbooks. Assist internal users of the SIEM by designing and maintaining production-quality dashboards/reports. Interact with the SOC Monitoring team to better understand content needs for tuning and development. Actively seek to improve and develop new content based upon observed security activity.
Deloitte Technology works at the forefront of technology development and processes to support and protect Deloitte around the world. In this truly global environment, we operate not in what is but rather what can be to help Deloitte deliver and connect with its clients, its communities, and one another in ways not previously conceived.
Employer will accept a Bachelor’s degree in Computer Science, Information Technology and Cybersecurity, Business Administration, or related field and 60 months of experience in the job offered or in a Senior Cyber Engineer-related occupation OR employer will accept a Master’s degree in Computer Science, Information Technology and Cybersecurity, Business Administration, or related field and 36 months of experience in the job offered or in a Senior Cyber Engineer-related occupation
Position requires applicants with a Bachelor’s degree have 5 years of experience OR Master’s degree have 3 years of experience in the following:
- Scripting using Python and PowerShell.
- Leading SIEM technologies (Splunk or ArcSight).
- Planning, researching, and developing security policies, standards, and procedures.
- Experience in a system administration role supporting multiple platforms and applications (Windows, Linux, Splunk).
- Communicating network security issues to peers and lower management.
- Administrating or deploying at least two of the following technologies: Unix administration, Windows Server administration, Active Directory, Windows Workstation, Routers/Switches management, Firewall Management, SANS/NAS, Web servers, IAM/AAA, IDS/HDS, System vulnerability scanning tools, application/database vulnerability scanning tools, mobile device analysis, or Secure coding.
*Must have Splunk Admin certification*