Company: Baker Hughes Skills: IT - Analysis & Management Education: Bachelors/3-5 yr Degree Location: Houston, Texas, United States
Staff Cyber Security Information and Event Management (SIEM) Engineer
Would you like to ensure the security of our global organization?
Do you enjoy being part of a successful team?
Join our Digital Technology Team!
We operate at the heart of the digital transformation of our business. Our team is responsible for cybersecurity architecture and data protection for our global organization. From Digital Engineering to enabling employee success, the Digital Technology team provides premium products and services to our customers and employees.
Partner with the best
In this role, you'll be responsible for supporting key security technology used within the Cyber Fusion Center. This includes EDR, SIEM, SOAR, DLP and TIP. You will manage architecture, design, implementation, and ongoing operations in a DevOps model. You will focus on automation, integration, service resiliency and business partnership.
As a Staff Cyber Security Information and Event Management (SIEM) Engineer, you will be responsible for:
Day-to-day support of the Splunk Cloud SIEM platform and expand capabilities of the existing logging infrastructure
Defining, designing, and building enterprise cybersecurity solutions to protect against advanced cybersecurity threats across our diverse environment
Working with CFC Detection & Response to identify and recommend new internal and external data sources to develop additional threat detection logic
Operationalizing Indicators of Compromise from intelligence feeds by developing, testing, deploying, monitoring, and alerting rules into SIEM
Providing 24/7 support for critical security tools used by the Cyber Fusion Team to complete their mission
Fuel your passion
To be successful in this role you will:
Have a Bachelor's Degree in Computer Science or "STEM" Majors (Science, Technology, Engineering and Math)
Have at least 1 year of experience in assessing, architecting, designing, and implementing cyber security capabilities, including incident response, threat intelligence, security monitoring, and vulnerability management
Have experience with core enterprise infrastructure and security-supported technologies including data protection elements such as DLP, tokenization, encryption, endpoint security, and perimeter protection such as firewalls or WAF, SIEMs, IPS/IDS, and managed security services
Have Scripting experience with Bash, PowerShell, or Python and Administrative experience with Linux, Windows, and Mac
Have experience developing detection logic for Splunk SIEM systems and with exploitation techniques and use case development
Have experience with content development in Splunk Enterprise Security developing threat indicators, correlated searches, and alerts.
Have experience with data onboarding and ingestion using tools like Syslog collectors (ie: SC4S, syslog-ng) as well as REST API, HEC token, DB Connect
Be familiar with the MITRE ATT&CK Framework and/or Cyber Kill Chain
Work in a way that works for you
We recognize that everyone is different and that the way in which people want to work and deliver at their best is different for everyone too. In this role, we can offer the following flexible working patterns:
Working remote from within the US
Working with us
Our people are at the heart of what we do at Baker Hughes. We know we are better when all of our people are developed, engaged and able to bring their whole authentic selves to work. We invest in the health and well-being of our workforce, train and reward talent and develop leaders at all levels to bring out the best in each other.
Working for you
Our inventions have revolutionized energy for over a century. But to keep going forward tomorrow, we know we have to push the boundaries today. We prioritize rewarding those who embrace change with a package that reflects how much we value their input. Join us, and you can expect:
Contemporary work-life balance policies and wellbeing activities
Comprehensive private medical care options
Safety net of life insurance and disability programs
Tailored financial programs
Additional elected or voluntary benefits
With operations in over 120 countries, we provide better solutions for our customers and richer opportunities for our people. As a leading partner to the energy industry, we're committed to achieving net-zero carbon emissions by 2050 and we're always looking for the right people to help us get there. People who are as passionate as we are about making energy safer, cleaner and more efficient.
Are you seeking an opportunity to make a real difference in a company with a global reach and exciting services and clients? Come join us and grow with a team of people who will energize and inspire you! As part of our commitment to the health & safety of our employees, customers and the communities in which we operate, this role requires full vaccination for COVID-19 prior to beginning work.
As part of our commitment to the health and safety of our employees, customers and the communities in which we operate, this role requires full vaccination for COVID-19 prior to beginning work.About Us: With operations in over 120 countries, we provide better solutions for our customers and richer opportunities for our people. As a leading partner to the energy industry, we're committed to achieving net-zero carbon emissions by 2050 and we're always looking for the right people to help us get there. People who are as passionate as we are about making energy safer, cleaner and more efficient.
Join Us: Are you seeking an opportunity to make a real difference in a company that values innovation and progress? Join us and become part of a team of people who will challenge and inspire you! Let's come together and take energy forward.
Baker Hughes Company is an Equal Opportunity Employer. Employment decisions are made without regard to race, color, religion, national or ethnic origin, sex, sexual orientation, gender identity or expression, age, disability, protected veteran status or other characteristics protected by law.