Security Engineer
Richmond Hill - Canada
Job Summary
Summary/Objective
Were hiring a SOC Engineer! Are you an Elastic SIEM expert with a passion for threat detection and automation We are looking for a seasoned engineer (5 years experience) to lead our complex log investigations optimize our SIEM infrastructure and build out automated response capabilities using Python and PowerShell.
If you love turning data into defense check out the details below.
Key Responsibilities:
Log Investigation & Incident Response:
- Investigate security incidents using log data to identify threats and vulnerabilities.
- Respond to incidents in a timely and efficient manner ensuring thorough documentation and analysis.
- Develop and maintain incident runbooks and response procedures.
Rule & Dashboard Development:
- Create and refine SIEM rules alerts and dashboards to enhance threat detection capabilities.
- Continuously optimize detection logic to reduce false positives and improve accuracy.
- Collaborate with SOC analysts to identify and implement new use cases.
Elastic SIEM Management:
- Design and maintain a scalable Elastic SIEM infrastructure.
- Manage data ingestion ensuring accurate and consistent logging from various sources.
- Monitor system health and performance implementing optimizations as needed.
Scripting & Automation:
- Automate repetitive tasks using PowerShell and Python to improve SOC efficiency.
- Develop custom scripts to enhance log parsing and event enrichment processes.
Security & Best Practices:
- Implement SIEM security measures including user roles and access controls.
- Stay updated with the latest security trends and ensure compliance with industry best practices.
Required Skills & Experience:
- 5 years of experience in a SOC environment with a focus on ELASTIC SIEM
- Strong knowledge of log analysis incident response and threat detection methodologies.
- Experience with the Elastic SIEM stack (Elasticsearch Logstash Kibana).
- Proficiency in PowerShell and Python scripting.
- Familiarity with network protocols cybersecurity frameworks and attack vectors.
- Experience with Linux and cloud platforms (AWS GCP or Azure).
- Excellent problem-solving skills and attention to detail.
Salary Range: $100K-130k
WorkEnvironment
.
PhysicalDemands
;walk;usehandstofingerhandleorfeelobjectstoolsorcontrols;reachwithhandsandarms;25lbs.
PositionType/ExpectedHoursofWork
.
Travel
Minimaltravel
OtherDuties
.
EEOStatement
.
ReasonableAccommodation
.
AnapplicantoremployeewhobelievesheorsheneedsareasonableaccommodationofadisabilityshoulddiscusstheneedforpossibleaccommodationwiththeHumanResourcesDepartmentorhisorherdirectsupervisor.
Required Experience:
IC
About Company
Paymentus delivers secure, smart billing and payment solutions that boost engagement and on-time payments for businesses, governments, utilities, and more.