TE Connectivity’s Information Security and Compliance Teams execute security controls to prevent hackers from infiltrating company information or jeopardizing e-commerce programs. They research attempted efforts to compromise security protocols, maintain security systems for routers and switches, administer security policies to control access to systems, maintain the company’s firewall and use applicable encryption methods. TE’s Security and Compliance Teams also provide information to management regarding the negative impact on the business caused by theft, destruction, alteration or denial of access to information. As a Senior SIEM Engineer, you will be a key member of our collaborative security team, working alongside other security professionals to protect our organization from sophisticated cyberattacks. You will have the opportunity to drive innovation in our SIEM program, leveraging your expertise to develop advanced detection methods and improve our overall security posture.
• SIEM Engineering & Development: Design, develop, implement, and optimize advanced correlation rules, use cases, and detection logic within the enterprise SIEM platform.
• Log Source Management: Architect and maintain robust log ingestion pipelines from diverse security and IT systems, ensuring comprehensive data collection, normalization, and parsing.
• Threat Detection & Analysis: Develop and refine high-fidelity security alerts, dashboards, and reports to enhance threat identification, reduce false positives, and provide actionable insights.
• Security Operations Collaboration: Collaborate closely with the Security Operations Center (SOC) to optimize response workflows, improve threat detection capabilities, and provide expert-level support during security incidents.
• Threat Intelligence & Proactive Hunting: Maintain expertise in emerging threats, attack techniques, and security best practices. Proactively hunt for advanced threats and develop new detection methods based on threat intelligence and adversary tactics, techniques, and procedures (TTPs).
Key responsibilities:
• Automation & Scripting: Automate SIEM tasks, workflows, and integrations using scripting languages (e.g., Python, PowerShell) to improve efficiency and scalability.
• Documentation & Knowledge Sharing: Develop and maintain comprehensive SIEM documentation, including system architecture diagrams, data flow diagrams, log source configurations, alert rationale, and incident response procedures.
• SIEM Architecture & Strategy: Contribute to the long-term vision and roadmap for SIEM and threat detection capabilities. Identify gaps and opportunities for improvement in existing detection strategies and recommend solutions.
• Collaboration & Communication: Effectively communicate technical concepts to both technical and non-technical audiences. Interface with other IT teams (network, systems, application development, etc.) to ensure security is integrated throughout the infrastructure.
• Strategic Planning & Budgeting: Collaborate with leadership on strategic planning, budget forecasting, and resource allocation for SIEM-related initiatives.