04 ago
|
F. Hoffmann-La Roche
|
Madrid
04 ago
F. Hoffmann-La Roche
Madrid
ph3Senior Security Engineer /h3h3The Mission /h3pYou will be a key member of the SIEM team, contributing to the engineering and strategic evolution of our general Security Log Management and Vulnerability Scanning services. This is an end-to-end ownership role: from defining the roadmap and architectural strategy to hands-on engineering and operational excellence. /ph3Key Responsibilities /h3ulliService Ownership Strategy: Drive the end-to-end lifecycle of our Security Log Management (Splunk Cribl) and Security Scanning (Tenable) platforms. /liliService Reliability: Ensure high availability and performance of our security services globally, acting as an escalation point for complex technical challenges. /liliSystem Interconnectivity: Develop and manage sophisticated API integrations to ensure seamless data flow between the security scanning (Tenable) and logging (Splunk/Cribl) tiers. /liliNext-Gen Security Log Architecture: Drive the transition from a traditional "index-all" logging approach to a "data-tiering" mindset. Focus on cost optimization and performance across all data lifecycle phases: routing, filtering, storing and searching, ensuring security data is accessible and cost-effective. /liliInfrastructure as Code (IaC): Orchestrate the evolution of our security infrastructure by managing all configurations via CI/CD pipelines (GitHub, Ansible, and Python), ensuring a fully automated and version-controlled environment. /liliAI-Augmented Engineering: Actively integrate AI Agents and MCP (Model Context Protocol) servers into daily operations. Build agentic AI workflows to automate configuration, troubleshooting, and complex interconnectivity, while improving service offerings and user experience. /liliMentorship:
Act as a technical catalyst for the team, mentoring colleagues in prompt engineering, agentic AI development, and advanced AI ecosystems. /liliTechnical Leadership: Serve as a technical lead, defining implementation plans and driving continuous process improvements. /liliStakeholder Engagement: Effectively manage relationships across functional teams, acting as a clear communicator and advisor to ensure alignment on security goals and project delivery. /li /ulh3Technical Requirements Expertise /h3ulliSecurity Service Depth: Deep conceptual understanding of the SIEM/Log Management lifecycle (Collection, Indexing, Storage, Retention and Searching) and Vulnerability Management. /liliNetworking Fundamentals: Expert understanding of networking (TCP/IP, Load Balancing, Firewalls) as it relates to high-volume security data transport. /liliCoding API Mastery: Strong experience with Python and interacting with complex REST APIs. Proven ability to interconnect disparate technologies via APIs and custom integrations. /liliModern DevOps: Strong experience with Ansible and GitHub for managing infrastructure. /liliAdvanced AI/Automation: Proven experience or deep project work building Agentic AI workflows. Practical expertise in MCP (Model Context Protocol) or building custom LLM-based tools to automate technical tasks. /li /ulh3Tooling (Preferred) /h3ulliExperience with Cribl, Splunk, or Tenable is a plus, but the ability to rapidly upscale and automate these via AI is essential. /li /ulh3Equal Opportunity Statement /h3pRoche is an Equal Opportunity Employer. We believe it’s urgent to deliver medical solutions right now – even as we develop innovations for the future. /p /p #J-18808-Ljbffr
📌 Senior Security Engineer (SIEM) - RDT Security Platforms (Madrid)
🏢 F. Hoffmann-La Roche
📍 Madrid