SIEM Content Developer

2 months ago


Brentford, Greater London, United Kingdom Vodafone Full time

About the Role

As a SIEM Content Development Specialist, you will play a vital role in enhancing Vodafone's cybersecurity posture by developing and refining rules within our sophisticated SIEM/EDR/ELK infrastructure. Your expertise will directly contribute to improving the efficiency and effectiveness of our Cyber Security Operations team.

What You'll Do
  • Content Development:
    • Develop SIEM/EDR/ELK content to address emerging attack vectors, adhering to industry best practices.
    • Analyze threats, adversaries, and attack tools to create indicator- and behavior-based detections that alert and/or prevent malicious activity.
    • Leverage multiple data sources to build comprehensive content across various SIEM/EDR/ELK platforms.
    • Utilize SIEM/EDR/ELK for metrics collection, analysis, and reporting.
    • Create and maintain detailed analytics documentation.
    • Collaborate effectively with colleagues and counterparts both internally and externally.
  • Security Analysis: Participate in and potentially lead security event analysis activities to address current cyber threats.
  • Threat Response: Engage in, and possibly drive, the analysis from a blue team perspective to identify potential threat group activity.
  • Security Reporting and Advisories: Contribute to and potentially lead the delivery of cybersecurity reports and advisories to all key stakeholders.
  • Residual Risk Assessment: Participate in and potentially lead the delivery of 'operational and technical' lessons learned post-incident analysis and reporting.
Who You Are

You possess a strong foundation in cybersecurity with proven experience in SIEM content development and SOC analysis.

  • Minimum of 1-3 years' experience in SIEM content (rule logic and code) development.
  • Minimum of 1 year of SOC analyst experience (Level 2 or above).
  • 5 years of IT experience.
  • In-depth hands-on experience in security event analysis, creating and refining SIEM/EDR rules, and driving efficiency within the SIEM and all other technologies used by the team.
  • Deep knowledge of IPv4/IPv6, TCP networking protocols.
  • Extensive knowledge of Windows/Linux operating systems.
  • Good working knowledge of security technologies such as SIEM (ArcSight, Sentinel, QRadar, LogRhythm, Splunk), EDR (Microsoft Defender, FireEye, Tanium), IDS/IPS, firewalls, proxies, web application firewalls, anti-virus, etc.
  • Understanding of Windows Security Event logs and Syslog.
  • Excellent familiarity with endpoint/perimeter security attack vectors and detection (blue/purple teaming).
  • Familiarity with standard security frameworks such as MITRE, cyber kill chain, and NIST.
  • Strong analytical and problem-solving skills.
Qualifications

A Bachelor's degree in Computer Science, Information Technology, or a related field is preferred. Relevant certifications such as CISSP, CISM, or Security+ are highly valued.



  • Brentford, Greater London, United Kingdom Vodafone Full time

    Job Title: Telco SIEM Content Development SpecialistRole Purpose:We are seeking a skilled Telecoms SIEM Content Developer to join our team and play a pivotal role in enhancing the security of our telecoms infrastructure. This role involves creating, managing, and maintaining SIEM content specific to telecoms devices and networks to detect and respond to...


  • Brentford, Greater London, United Kingdom Vodafone Full time

    Job Title: Telco SIEM Content Development SpecialistRole Purpose:We are seeking a skilled Telecoms SIEM Content Developer to join our team and play a pivotal role in enhancing the security of our telecoms infrastructure. This role involves creating, managing, and maintaining SIEM content specific to telecoms devices and networks to detect and respond to...


  • Brentford, Greater London, United Kingdom Vodafone Full time

    Job Title: SIEM Content Development SpecialistJoin Vodafone as a SIEM Content Development Specialist and contribute to the development of rules and logic within the Vodafone SIEM/EDR/ELK infrastructure to improve Cyber Security Operations efficiency and effectiveness.Key Responsibilities:Develop SIEM/EDR/ELK content to address attack vectors using current...


  • Brentford, Greater London, United Kingdom Vodafone Full time

    Job Title: SIEM Content Development SpecialistJoin Vodafone as a SIEM Content Development Specialist and contribute to the development of rules and logic within the Vodafone SIEM/EDR/ELK infrastructure to improve Cyber Security Operations efficiency and effectiveness.Key Responsibilities:Develop SIEM/EDR/ELK content to address attack vectors using current...


  • Brentford, Greater London, United Kingdom Vodafone Full time

    Job Title: SIEM Content Development SpecialistJoin Vodafone's Cyber Security Operations team as a SIEM Content Development Specialist and play a key role in driving the creation and refinement of rules and logic within our SIEM/EDR/ELK infrastructure.Key Responsibilities:Develop SIEM/EDR/ELK content to address attack vectors using current industry best...


  • Brentford, Greater London, United Kingdom Vodafone Full time

    Job Title: SIEM Content Development SpecialistJoin Vodafone's Cyber Security Operations team as a SIEM Content Development Specialist and play a key role in driving the creation and refinement of rules and logic within our SIEM/EDR/ELK infrastructure.Key Responsibilities:Develop SIEM/EDR/ELK content to address attack vectors using current industry best...


  • Brentford, Greater London, United Kingdom Vodafone Full time

    Job Title: SIEM Content Development SpecialistJoin Vodafone's Cyber Security team as a SIEM Content Development Specialist and play a key role in driving the creation and refinement of rules and logic within our SIEM/EDR/ELK infrastructure.Key Responsibilities:Develop SIEM/EDR/ELK content to address attack vectors using current industry best practicesAnalyse...


  • Brentford, Greater London, United Kingdom Vodafone Full time

    Job Title: SIEM Content Development SpecialistJoin Vodafone's Cyber Security team as a SIEM Content Development Specialist and play a key role in driving the creation and refinement of rules and logic within our SIEM/EDR/ELK infrastructure.Key Responsibilities:Develop SIEM/EDR/ELK content to address attack vectors using current industry best practicesAnalyse...


  • Brentford, Greater London, United Kingdom Vodafone Full time

    Job Title: SIEM Content Development SpecialistJoin Vodafone as a SIEM Content Development Specialist and contribute to the development of rules and logic within the Vodafone SIEM/EDR/ELK infrastructure to improve Cyber Security Operations efficiency and effectiveness.Key Responsibilities:Develop SIEM/EDR/ELK content to address attack vectors using current...


  • Brentford, Greater London, United Kingdom Vodafone Full time

    Job Title: SIEM Content Development SpecialistJoin Vodafone's Cyber Security team as a SIEM Content Development Specialist and play a key role in driving the creation and refinement of rules and logic within our SIEM/EDR/ELK infrastructure.Key Responsibilities:Develop SIEM/EDR/ELK content to address attack vectors using current industry best practicesAnalyse...


  • Brentford, Greater London, United Kingdom Vodafone Full time

    Job Title: SIEM Content Development SpecialistJoin Vodafone's Cyber Security team as a SIEM Content Development Specialist and play a key role in driving the creation and refinement of rules and logic within our SIEM/EDR/ELK infrastructure.Key Responsibilities:Develop SIEM/EDR/ELK content to address attack vectors using current industry best practicesAnalyse...


  • Brentford, Greater London, United Kingdom Vodafone Full time

    Job Title: SIEM Content Development SpecialistJoin Vodafone's Cyber Security team as a SIEM Content Development Specialist and play a key role in driving the creation and refinement of rules and logic within the Vodafone SIEM/EDR/ELK infrastructure to improve Cyber Security Operations efficiency and effectiveness.Key Responsibilities:Develop SIEM/EDR/ELK...


  • Brentford, Greater London, United Kingdom Vodafone Full time

    Job Title: SIEM Content Development SpecialistJoin Vodafone's Cyber Security team as a SIEM Content Development Specialist and play a key role in driving the creation and refinement of rules and logic within the Vodafone SIEM/EDR/ELK infrastructure to improve Cyber Security Operations efficiency and effectiveness.Key Responsibilities:Develop SIEM/EDR/ELK...


  • Brentford, Greater London, United Kingdom Vodafone Full time

    Job Title: SIEM Content Development SpecialistJoin Vodafone's Cyber Security team as a SIEM Content Development Specialist and play a key role in driving the creation and refinement of rules and logic within the Vodafone SIEM/EDR/ELK infrastructure to improve Cyber Security Operations efficiency and effectiveness.Key Responsibilities:Develop SIEM/EDR/ELK...


  • Brentford, Greater London, United Kingdom Vodafone Full time

    Job Title: SIEM Content Development SpecialistJoin Vodafone's Cyber Security team as a SIEM Content Development Specialist and play a key role in driving the creation and refinement of rules and logic within the Vodafone SIEM/EDR/ELK infrastructure to improve Cyber Security Operations efficiency and effectiveness.Key Responsibilities:Develop SIEM/EDR/ELK...


  • Brentford, Greater London, United Kingdom Vodafone Full time

    Role OverviewVodafone is seeking a highly skilled Cyber Security Operations Expert to join our team. As a SIEM Content Development Specialist, you will play a critical role in driving the creation and refinement of rules and logic within our SIEM/EDR/ELK infrastructure to improve Cyber Security Operations efficiency and effectiveness.Key...


  • Brentford, Greater London, United Kingdom Vodafone Full time

    Job Purpose:We are seeking a skilled Telecoms SIEM Content Developer to join our team and play a pivotal role in enhancing the security of our telecoms infrastructure. This role involves creating, managing, and maintaining SIEM content specific to telecoms devices and networks to detect and respond to security threats effectively.Key Responsibilities:Create,...


  • Brentford, Greater London, United Kingdom Vodafone Full time

    Job SummaryVodafone is seeking a highly skilled Cyber Security Analyst to join our team as a SIEM Content Developer. As a key member of our Cyber Security Operations team, you will be responsible for developing and refining rules and logic within our SIEM/EDR/ELK infrastructure to improve Cyber Security Operations efficiency and effectiveness.Key...


  • Brentford, Greater London, United Kingdom Vodafone Full time

    Job SummaryVodafone is seeking a highly skilled Cyber Security Analyst to join our team as a SIEM Content Developer. As a key member of our Cyber Security Operations team, you will be responsible for developing and refining rules and logic within our SIEM/EDR/ELK infrastructure to improve Cyber Security Operations efficiency and effectiveness.Key...


  • Brentford, Greater London, United Kingdom Vodafone Full time

    Job SummaryVodafone is seeking a highly skilled Cyber Security Operations Specialist to join our team. As a SIEM Content Development Specialist, you will play a critical role in driving the creation and refinement of rules and logic within our SIEM/EDR/ELK infrastructure to improve Cyber Security Operations efficiency and effectiveness.Key...