SIEM & SecOps Engineer II
ZetaJob Description
📋 Description Design, develop, tune SIEM detection use cases and correlation rules. Investigate and triage alerts from L1 analysts across multiple platforms. Focus on Linux security, especially macOS, for threat hunting. Build dashboards, alerts, parsers, and log pipelines. Build log ingestion workflows with Logstash, Fluentd, Fluent Bit. Assist incident response and root-cause analysis under SOC Lead. 🎯 Requirements 3–6 years in SOC/Detection or Incident Response. SIEM rule languages: OpenSearch DSL, Sigma; quick learner. Experience with open-source security tools and modern practices. SOAR automation and playbook development experience. Investigate alerts across cloud, endpoint, network, apps. MITRE ATT&CK familiarity and OpenSource SIEM exposure. 🎁 Benefits Equal opportunity employer; diverse and inclusive culture.