Cyber Security Engineer Job at Entelligence, Middletown, NJ

bk1EOGtWckFFWlVORW02MkZ4Q3MrRDlpaEE9PQ==
  • Entelligence
  • Middletown, NJ

Job Description

Entelligence is seeking an Engineer to support our Palo Alto’s clients. The successful candidate must be able to work in a cross-functional environment and interact with representatives from Entelligence, Palo Alto Networks, and the end-user.

As an Engineer for Cortex XSIAM, you will be responsible for assisting with the log migration and detection strategy of our customers. You will work closely with the technical lead to ensure that all of the relevant log sources are onboarded and ingested into XSIAM in accordance with industry best practices and customer requirements. You will then work to determine a suitable detection strategy, helping to protect customers from threats, by designing and implementing correlation rules.

RESPONSIBILITIES:

• Work with technical lead to develop log ingestion strategy

• Contribute to detection strategy based on industry best practices

• Detail step by step process to ingest high quality log sources

• Perform log source monitoring and optimization

• Create high quality correlation rules

• Tune log sources and correlation rules

• Be an SME for SIEM, Correlation and Log Source Ingestion

• Recognize opportunities where automation can improve analyst alert handling

• Collaborate with internal and external teams to ensure product adoption

• Create technical documentation detailing SIEM aspects of the engagement

• Travel to customer meetings and workshops as needed (10%)

JOB REQUIREMENTS:

• Strong communication (written and verbal) and presentation skills, both internally and externally

• Fluent English is a requirement - Any other language is a plus

• 3+ years of deploying and integrating (SIEM) to enterprise to large enterprise-level

• Coordinating and conducting event collection, log management, event management, compliance automation, and identity monitoring activities using (SIEM) platforms

• The ability to create and develop correlation and detection rules, within a (SIEM) to support alerting capabilities

• Experience working with and deploying a variety of SIEM technologies (i.e Splunk, IBM QRadar)

• A proven ability to offer suggestions on detection strategy based on customer requirements

• Ability to understand logs, locating and understanding 3rd party documentation where needed

• Familiarity with reports on the status of the SIEM to include metrics on items such as number of logging sources - log collection rate, and other performance metrics

• Knowledge of Security Analysis & Response a plus, including both endpoint, network & cloud

based environments

• 3 years experience with Security Operation Centers tooling and processes

• Relevant bachelor's degree or industry recognized qualifications (CISSP, GIAC, SIEM Vendor

Qualification etc)• Ability to read and understand technical design documentation

• Ability to create technical design documentation

BENEFITS

• Competitive base salary

• Medical, dental, vision and life insurance

• Vacation, sick time and paid holidays

• Matching 401(k) program

ENTELLIGENCE. ALWAYS READY.

Since 1997, Entelligence has provided mission critical project delivery capacity for uninterrupted growth and long-term market leadership to the industry’s biggest enterprise IT brands. Our commitment to close working partnerships and a proven approach for sustainable success is why Entelligence is Always Ready to help the world’s technology leaders quickly deliver their most advanced IT solutions to their most important customers.

Job Tags

Similar Jobs

Ingram Micro Inc.

Technical Account Manger - AWS Job at Ingram Micro Inc.

Technical Account Manger - AWS page is loaded## Technical Account Manger - AWSremote type: Hybridlocations: Sweden Solnatime type: Full timeposted on: Posted Todayjob requisition id: R-113503**It's fun to work in a company where people truly BELIEVE in what they're doing...

Jet Aviation

Cabin Attendant Job at Jet Aviation

 ...Since 1967, Jet Aviation has been crafting flight in its smoothest form. From one hangar...  ...a highly professional Executive Cabin Attendant to deliver a seamless and exceptional VVIP...  ...experience is essential; First Class or Corporate Aviation experience is an advantage... 

NURSES Etc STAFFING

Family Physician Job at NURSES Etc STAFFING

 ...Now Hiring: Family Medicine Physician MD/DO Location: Andrews AFB,MD Employer: Nurses Etc. Staffing Position Type: Full-Time Patient Population: Active-duty military and their families Family Medicine Position Highlights Malpractice insurance fully... 

Daley & Associates

Client Reporting Analyst (Fixed Income) Job at Daley & Associates

 ...This is a 6 month contract that will pay $30-40/hr (depending on experience) within a 40-hour work week. This position is required to be...  ...navigating internal and external systems and databases. An MBA or CFA designation, or progress toward these credentials, is highly... 

Glocomms

Senior / Staff React Native Engineer Job at Glocomms

 ...Senior / Staff React Native Engineer Our client is a fast-growing, product-led technology company in the healthcare space , building high-impact mobile applications used daily by a large and rapidly expanding user base. The mobile app is the primary interface for users...