Jobs and Careers
ST

SIEM Routing Engineer (Senior)

State Street
United Statesfull_timeVerifiedPosted 27 Nov 2023
💰 $185,000/yr($110,000/yr$185,000/yr)

About the role

Senior SIEM & Event Routing Engineer Position: 

 

Who we are looking for 

The State Street Cyber Architecture & Engineering team is looking for a Senior SIEM/Event Routing Engineer.  The Cyber Data Science team delivers models, insights, and tooling to help Cybersecurity teams make faster, more informed decisions as we work to secure State Street’s digital footprint. As a Senior SIEM/Event Routing Engineer, you will be responsible for designing, implementing, and maintaining solutions that enhance data visibility, transform data, and improve overall data quality  in collaboration with data product managers, architects, engineers, and other team members to deliver SIEM & analytics functions that support our mission to build predictive models and intelligent systems that help secure State Street’s information and infrastructure.  

 

What you will be responsible for 

As a Senior SIEM/Event Routing Engineer, you will: 

  • Collaborate across a variety of teams to enable our Data Platform and Engineering needs to design, implement, and maintain a secure and scalable infrastructure platform spanning across multiple public clouds  and our on-premise Data Centers. 

  • Use Infrastructure as Code and containerization to create immutable reproducible deployments and establish best practices to scale that Infrastructure as Code (IaC) project in a maintainable way. 

  • Implement and manage Security event routing & SIEM platforms using Cribl and Splunk technologies in a hybrid multi cloud environment using CICD processes by developing CloudFormation and Terraform templates 

  • Collaborate with cross-functional teams to understand data integration requirements and design solutions using CRIBL Log stream and Splunk 

  • Configure and customize CRIBL Log stream to efficiently route, fitter & transform data streams from various infrastructure, applications and public cloud services  

  • Onboard and maintain continuous data feeds of log telemetry data to Cyber data platforms (Splunk, Databricks) for security threat detection and observability functions 

  • Take ownership of internal and external SLA’s to meet and exceed expectations and System centric KPIs are continuously monitored. 

  • Create tools for automating deployment, monitoring, alerting and operations of the overall platform and establish best practices for CI/CD environments and methodologies such as GitOps 

  • Design and build petabyte scale systems for high availability, high throughput, data consistency, security, and end user privacy, defining our next generation of data analytics tooling 

  • Work alongside the global cybersecurity architecture & engineering leadership to develop and deliver capabilities to support Cyber Data Science initiatives both internally and in partnership with detection and response teams, and governance and risk management teams across our CISO organization. 

  • You will mentor other engineers and promote software engineering best practices across the organization designing systems with monitoring, auditing, reliability, and security at their core. 

  • Come up with solutions for scaling data systems for various business needs and collaborate in a dynamic and consultative environment. 

 

Education & Qualifications 

Minimum Qualifications 

  • Build self-healing systems with advanced techniques Key Projects: 
    Lead workstreams of the modernization of our SIEM and data routing platforms and enable the data migration process to cloud hosted data platforms 

  • Minimum 6+ years of platform engineering with DevOps experience with minimum bachelor’s degree in Computer Science or Engineering. 

  • 6+ years of SIEM  platform engineering and operations experience using Splunk technologies 

  • 6+ years of experience  log onboarding to logging platforms to support SIEM and Observability 

  • 2+ years of data pipeline platform implementation experience using tools like Cribl, Fluentbit/Fluentd & Vector.dev 

  • Practical experience with Data Engineering for CIM compliance  

  • A deep understanding of CI/CD tools and a strong desire to help teams release frequently to production with a focus on creating reliable high-quality results. 

  • Extensive experience building large scale distributed systems and data analytics processes on cloud native, in-memory, and fit-for-purpose hybrid infrastructure. Experience with cybersecurity data and globally distributed log & event processing systems with data mesh and data federation as the architectural core is highly desirable. 

  • Expertise in DevOps, DevSecOps and emergent experience with DataSecOps and Data Governance practices —

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

State Street

View company profile →