remote
Systems Engineer II Cybersecurity Engineer - SIEM - The Nielsen Company
Security Engineer
Mid‑level cybersecurity engineer responsible for designing, implementing, and maintaining SIEM solutions, developing detection rules, and supporting incident response using tools such as Splunk, LogRhythm, and Python scripting.
About the role
Key Responsibilities
- Design, configure, and optimize SIEM platforms (e.g., Splunk, LogRhythm) to collect and correlate security events across the enterprise.
- Develop, test, and fine‑tune detection rules, alerts, and dashboards to identify threats in real time.
- Collaborate with incident response teams to investigate alerts, perform root‑cause analysis, and remediate security incidents.
- Automate data ingestion, enrichment, and reporting workflows using Python and related scripting languages.
- Maintain documentation, standard operating procedures, and knowledge‑base articles for SIEM operations.
- Stay current with emerging threats, security best practices, and industry regulations to continuously improve monitoring capabilities.
Requirements
- 2–4 years of hands‑on experience with SIEM technologies, preferably Splunk and/or LogRhythm.
- Proficiency in Python scripting for data parsing, automation, and custom alert development.
- Solid understanding of networking, operating systems, and common security frameworks (e.g., MITRE ATT&CK, NIST).
- Experience supporting incident response and threat hunting activities.
- Strong analytical, problem‑solving, and communication skills, with the ability to work effectively in a cross‑functional team.