10 oct
|
Capitole
|
España
With 1,000+ professionals and over a decade of experience, we’ve built an environment where talent is trusted, supported and continuously challenged to grow.
People-first culture built on trust and real proximity.
Stable environment with turnover clearly below industry average.
International, high-impact projects powered by modern tech stacks.
€1,200 annual training budget per employee.
Real flexibility, not just a promise.
Continuous feedback culture with monthly follow-ups and annual 360 reviews.
Active tech communities where knowledge is shared and innovation evolves.
A team that delivers and celebrates together.
Ready to grow with us? Take a look at this opportunity
We are looking for a SIEM Data Engineer / SIEM & Log Management Engineer to join an international project for a leading German client in the automotive sector. The role is focused on security log analysis, log ingestion, parsing, normalization and SIEM data modelling , working closely with security and operations teams.
We are especially interested in professionals with experience in Cribl and Splunk , although similar experience with log pipelines, log management, streaming technologies or SIEM environments will also be valued, especially with tools such as Kafka, Logstash or Elastic / ELK.
What will you do?
- Connect security-relevant log sources to a SIEM through Log Stream Processing platforms.
- Analyse security logs and define data models.
- Create and maintain parsers to normalize log data.
- Support SIEM data ingestion and security use case definition.
- Work with security and operations teams to improve log processing solutions.
What are we looking for?
- 3+ years of experience with SIEM or log management tools, especially Splunk, Elastic / ELK or similar .
- Hands-on experience with Cribl or similar Log Stream Processing / log pipeline tools such as Kafka, Logstash or Fluentd .
- Strong knowledge of log analysis, parsing, Regex and data normalization.
- Experience with Linux/UNIX/Windows environments and network technologies.
- Knowledge of cloud or container technologies such as AWS, Azure, GCP, Kubernetes or OpenStack.
- Understanding of Security Incident Response or security monitoring processes.
- Excellent English level, both written and spoken.
Location: 100% Remote
Schedule: 40h/week. Adaptable, with reduced hours on Fridays
The employee will adhere to information security policies:
-Will have access to confidential information related to Capitole and the project they are working on.
-Must comply with the security policies and internal policies of the company and the client.
#J-18808-Ljbffr
📌 SIEM Data Engineer / SIEM & Log Management Engineer (España)
🏢 Capitole
📍 España