Job Overview
JOB DETAILS
REQUIREMENTS
- SIEM expertise & OT integration – Experience with SIEM platforms, OT data sources, and security event analysis (e.g., Sumo Logic, Palo Alto Cortex XSOAR).
- Industrial systems & protocols – Understanding of OT protocols, industrial control systems, and logging mechanisms.
- Technical skills & automation – Proficiency in parsing log formats, scripting languages (Python, PowerShell), and SIEM rule development.
- Security frameworks & threat intelligence – Knowledge of OT security standards (NIST SP 800-82, IEC 62443) and threat intelligence platforms.
- Problem-solving & collaboration – troubleshooting abilities, and effective collaboration across technical and non-technical teams.
- Teamwork – excel in multicomplex environments with geographically dispersed teams.
RESPONSIBILITIES
- Design, implement, and test SIEM and SOAR solutions tailored for OT environments, considering the unique challenges and protocols involved.
- Integrate various OT data sources (e.g., IDS, EDR, control system logs, network traffic from industrial protocols) into the SIEM platform.
- Develop and maintain custom parsers, normalizers, and correlation rules to effectively analyze OT-specific logs and events within the SIEM.
- Optimize and manage SIEM for OT environments – Configure, tune, and maintain the SIEM platform to ensure high-performance security monitoring with actionable insights.
- Enhance security detection and integration – Collaborate with OT and IT security teams to refine SIEM alerts, reduce false positives, and integrate security events across both environments.
- Drive cybersecurity awareness and improvements – Stay updated on OT security threats, document SIEM architecture, recommend new features, and provide training for security analysts.
Are you interested in this position?
Apply by clicking on the “Apply Now” button below!
#CrossChannelJobs#JobSearch
#CareerOpportunities#HiringNow
#Employment#JobOpenings
#JobSeekers
FacebookLinkedIn