hero

BUSINESS IS HUMAN:

Volition Capital is dedicated to helping our portfolio companies hire the best and brightest people. Take a look through the many job opportunities in our network.

Grow with Volition.
31
companies
233
Jobs

Data Engineer - SIEM

Securonix

Securonix

Data Science
Bengaluru, Karnataka, India
Posted on Tuesday, January 23, 2024

Securonix is leading the evolution of SIEM for today’s hybrid cloud, data-driven enterprises. Securonix Unified Defense SIEM provides organizations with a content-driven threat detection, investigation, and response (TDIR) solution built with a highly scalable data cloud and a unified experience from the analyst to the CISO. The innovative cloud-native solution enables organizations to scale up their security operations and keep up with evolving threats.

Securonix Unified Defense SIEM provides organizations with 365 days of ‘hot’ data for fast search and investigation, threat content-as-a-service, proactive defense with continuous peer and partner collaboration, and a unified Threat Detection, Investigation and Response (TDIR) experience, all in a single platform. The platform is built on a cloud native architecture and leverages the power of the Snowflake Data Cloud.

Role Summary:

We are looking for a savvy Data Engineer to join our growing team of analytics experts with hands-on experience to work on cutting edge technology. The hire will be responsible for expanding and optimizing our data pipeline architecture, as well as optimizing data flow and collection for cross functional teams which will impact the overall UEBA (User Entity Behavior Analytics) use cases. An ideal candidate is an experienced data pipeline builder and data wrangler who enjoys optimizing data systems & building them from the ground up and will be responsible for out-of-the-box threat use case delivery. The Data Engineer will support our software developers, SIEM engineers, data analysts and work with the Threat Lab data scientists on data parsing, use case delivery and will ensure optimal delivery architecture is consistent throughout ongoing projects. They must be self-directed and comfortable supporting the data needs of multiple teams, systems and products. The right candidate will be excited by the prospect of optimizing or even re-designing our company’s data architecture to support our next generation SIEM (Security Information and Event Management).

Primary Responsibility:

  • Implement/develop out-of-the-box parsers/connectors and responsible for net new development of parsers including enhanced categorizations and use cases.
  • Data validation program for supported data sources and responsible for quality assurance
  • Content validation for all the out-of-the-box use cases and threat models
  • Implementation, validation of supported dashboards / reports and net new development of custom dashboards/reports
  • Coordinate with product management & engineering for troubleshooting connector integration issues for various products
  • Work with data and analytics experts from Securonix Threat Labs to strive for greater functionality in our data systems and streamline supported data parsing and use case configurations
  • Identify, design, and implement internal process improvements: automating manual processes, optimizing data delivery, re-designing infrastructure for greater scalability, etc.
  • Work with stakeholders including the Executive, Product, Data and Design teams to assist with data-related technical issues and support their data infrastructure needs.
  • Create data tools for analytics and data scientist team members that assist them in building and optimizing our product into an innovative industry leader.

Minimum Requirements:

  • Strong experience in regex implementation and parser creation (must have)
  • 1-3 years or more of hands-on working experience in engineering development and SIEM solution deployment.
  • Good amount of experience in SVN, Git or any other version control tool (must have).
  • Intermediate working SQL knowledge and experience working with relational databases, query authoring (SQL) as well as working with a variety of databases.
  • Experience building and optimizing ‘big data’ data pipelines, architectures and data sets.
  • Experience performing root cause analysis on internal and external data and processes to answer specific business questions and identify opportunities for improvement.
  • Strong analytic skills related to working with structured and unstructured datasets.
  • Build processes supporting data transformation, data structures, metadata, dependency and workload management.
  • A successful history of manipulating, processing and extracting value from large disconnected datasets.
  • Strong working knowledge of parser management, stream processing, and highly scalable ‘big data’ data stores.
  • Strong product management and organizational skills.
  • Experience supporting and working with cross-functional teams in a dynamic environment.
  • 1-3 years experience in the Data Engineering, who has attained a Graduate (Masters) degree in Computer Science, Information Systems or Cyber Security field OR 3+ years of experience in the Data Engineering with a Bachelor's degree in Computer Science, Information Systems or Cyber Security field
  • They should also have experience using the following software/tools:
    • Experience with relational SQL databases
    • Experience with object-oriented/object function scripting languages (1 of the following): Python, Java or Bash scripting.
    • SVN / Git or any version control tool

Preferred:

  • Experience with NoSQL databases - REDIS.
  • Experience with object-oriented/object function scripting languages (1 of the following): Python, Java, Bash.
  • Experience with big data tools: Hadoop, Spark, Kafka, etc.
  • CISSP / CEH certified or any certification related to SIEM / UEBA deployment
  • Leadership certification and/or awards attained for leadership skills
  • Working knowledge of cloud technologies such as Amazon, Azure and Google
  • Good understanding of log collection and forwarding technologies such as Syslog-NG, rsyslog, Nxlog, Windows Event Forwarding
  • Experience integrating endpoint security and host based intrusion detection solutions
  • Experience with networking technologies such as Wireshark, PCAP, tcpdump

Benefits -

As a full-time employee with Securonix, you will be eligible for the following employee benefits:

  • Health Insurance with a total sum insured is INR 5,00,000
  • Coverage: Self, Spouse, 2 kids, Dependent parents, or parents-in-law
  • Personal Accident with total sum insured is INR 10,00,000
  • Term Life Insurance with a sum assured for employees is 5 times fixed base pay is covered.

Securonix, Inc. provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, gender, sexual orientation, gender identity, national origin, age, disability, genetic information, marital status, amnesty or status as a covered veteran in accordance with applicable federal, state and local laws. Securonix complies with applicable state and local laws governing non-discrimination in employment in every location in which the company has facilities. This policy applies to all terms and conditions of employment, including hiring, placement, promotion, termination, layoff, recall, and transfer, leaves of absence, compensation and training.

Securonix expressly prohibits any form of unlawful employee harassment based on race, color, religion, gender, sexual orientation, national origin, age, genetic information, disability or veteran status. Improper interference with the ability of Securonix employees to perform their expected job duties is absolutely not tolerated.