All vacancies
Security Information and Event Management (SIEM) Engineer
TechBiz Global
Remote · worldwide, UTC+4 acceptedSalary not disclosedcontractHimalayas
We are seeking for client for a one month project highly skilled and experienced SIEM Engineer with 5-8 years of hands-on experience working on Security Information and Event Management (SIEM) tools such as QRadar, Splunk, Microsoft Sentinel, Elastic Stack (Elasticsearch, Logstash, Kibana), and other SIEM platforms. The candidate will be responsible for the design, deployment, configuration, and management of SIEM solutions, ensuring efficient monitoring and proactive threat detection across the organization.
Responsibilities
- SIEM Implementation & Configuration
- Design, deploy, and configure SIEM solutions, including Elastic Stack (Elasticsearch, Logstash, Kibana), Wazuh, QRadar, Splunk & Microsoft Sentinel.
- Integrate various log sources (e.g., firewalls, IDS/IPS, network devices, applications),/OT/IOT into the SIEM platform.
- Develop and fine-tune correlation rules, dashboards, and alerts for proactive threat detection.
- Perform system upgrades, patches, and manage the overall health of the SIEM environment.
- Log Management & Monitoring
- Ensure proper log ingestion from multiple data sources, including Elasticsearch and Kibana, and troubleshoot any logging issues.
- Maintain data retention policies, manage storage, and optimize SIEM performance.
- Monitor and analyze system and security logs for anomalies, potential threats, or suspicious activities.
- Elastic Stack Management or any open source like Wazuh
Languages
- Work format
- Remote
- Seniority
- Senior
- Posted
- 10 Sept 2026
- Last verified
- In the last 3 days
- Apply by
- 9 Nov 2026
