onsite
SIEM Engineer - Accenture
Software Engineer
SIEM Engineer responsible for designing, deploying, and optimizing security information and event management solutions using Splunk, ELK Stack, and AWS. Leverages Python scripting and threat intelligence to detect, investigate, and remediate security incidents across enterprise environments.
About the role
Key Responsibilities
- Design, implement, and maintain SIEM platforms (Splunk, ELK Stack) to collect, correlate, and analyze security events across cloud and on‑prem environments.
- Develop and automate data ingestion pipelines and correlation rules using Python and AWS services (Kinesis, Lambda, S3).
- Conduct real‑time threat hunting, incident response, and forensic analysis, producing actionable insights and remediation playbooks.
- Integrate threat intelligence feeds and develop custom parsers to enrich security data and improve detection accuracy.
- Collaborate with security operations, network, and application teams to refine alerting logic and reduce false positives.
Requirements
- 3+ years of experience in SIEM engineering, with deep knowledge of Splunk or ELK Stack.
- Proficient in Python scripting for data processing and automation.
- Hands‑on experience with AWS security services and cloud log management.
- Strong understanding of threat intelligence concepts and incident response workflows.
- Excellent analytical, communication, and problem‑solving skills.
Skills
siemsplunkpythonaws