SIEM & Detection Engineer (Ireland Remote)

Company: Autodesk
Company: Autodesk
Location: Dublin, IRL
Commitment: Full time
Posted on: 2023-05-03 17:40
Job Requisition ID #23WD68408Position OverviewAutodesk is looking for an experienced Splunk SIEM and detection engineer to support and mature our structured hunting, threat intelligence, and insider risk threat management initiatives. Your work will empower our hunters and intelligence engineers by developing, evolving, and tuning detections to defend against threats to Autodesk's platforms.ResponsibilitiesPerform administrative, advisory, and support duties for Splunk Enterprise Security platform, providing critical services for the protection and defense of AutodeskPerform detection engineering in support of intelligence requirements for advanced threatsSustain and grow logging and detection roadmaps to mature improvements and innovationResearch, document, and develop threat detections based on behavioral attributes of actors, malware operators, and general threats to Autodesk interestsPrescribe expert recommendations on ways to improve data onboarding and ingestion normalization Drive a transparent and respectful team culture centered on collaboration, listening, and recognition of team members at all levelsMinimum QualificationsExcellent written, verbal communication skills in English and regional languages (strongly desired)Strong proficiency in logging and threat data engineering and analysis Hands on experience applying unified data models to log/data sources (eg, AWS, Azure, AD, DNS, proxy, FW, EDR, and/or webserver) in support of detection engineering5+ years of experience working in a threat hunting, incident response, security engineering, SIEM engineering, or detection engineering rolePreferred QualificationsCertifications (any security certification like but not exclusive to the following): GCIH, GREM, GCTI, Security+1-3 years minimum working in threat detection engineering and/or threat hunting focused on implementing and sustaining structured hunt operations1-3 years developing and maintaining security application integrations through APIs in Python or an equivalent scripting language.Splunk Power User, either Splunk Enterprise Security or Splunk Cloud Admin certified, and/or Datadog's Log Management FundamentalsEducation: BA/BS in computer science, information security, or a related field, or equivalent experience #ADSKSecurityCareers#LI-POSTAt Autodesk, we're building a diverse workplace and an inclusive culture to give more people the chance to imagine, design, and make a better world. Autodesk is proud to be an equal opportunity employer and considers all qualified applicants for employment without regard to race, color, religion, age, sex, sexual orientation, gender, gender identity, national origin, disability, veteran status or any other legally protected characteristic. We also consider for employment all qualified applicants regardless of criminal histories, consistent with applicable law.Are you an existing contractor or consultant with Autodesk? Please search for open jobs and apply internally (not on this external site). If you have any questions or require support, contact Autodesk Careers.Salary is one part of Autodesk’s competitive package. Offers are based on the candidate’s experience and geographic location. In addition to base salaries, we also have a significant emphasis on discretionary annual cash bonuses, commissions for sales roles, stock or long-term incentive cash grants, and a comprehensive benefits package.
View Original Job Posting