MUFG is seeking a highly motivated SIEM Engineer to design and implement cutting-edge technology to improve security posture and drive engineering standards and implementation across the global deployment.
Requirements
- At least 3+ years of experience in SIEM products such as Splunk, Cribl*, Elastic, Datadog, AWS CloudTrail, cloud watch, Azure event hub, AWS S3, etc.
- At least 1+ years of experience in Data Lake and data warehouse using products such as AWS S3, Snowflake, Databricks, etc.
- Experience with scripting is highly preferred like Python, Ansible etc.
- Familiar with industry security regulations and frameworks (MITRE Attack Framework, CIS, etc.)
- Knowledge of Common Information Model mapping is required
- Working knowledge in RegEx, Splunk search language, etc. is required.
- Knowledge and experience operating in hybrid-cloud environment.
Responsibilities
- Must be a technical expert on SIEM products (Splunk, Cribl) and technology
- Research and look for opportunities to adopt the best practices and industry standards to enhance the SIEM platforms
- Engineer and implement various solutions on SIEM platforms as per business requirements
- Define SIEM platform standards including data schema, modelling, normalization, monitoring and alerting
- Must have experience in dashboard and reporting as per requirements
- Should have experience in AI and ML to build the modern SIEM and data monitoring solution.
- Must be able to configure SIEM products with different policies, rules and configurations.
Other
- The selected colleague will work at an MUFG office or client sites four days per week and work remotely one day.
- At least 5+ years of experience in technology with emphasis on cyber security.
- Experience working in complex and large-scale environments.
- Experience working in the financial services (Top 10 banks preferred) with knowledge of regulations such as FFIEC, SOX, or other highly regulated industries such as healthcare, utilities, or aerospace.
- Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or related field, or relevant industry certifications. Equivalent work experience is equally preferable.