Logo
Veterans Staffing

Cybersecurity SIEM Engineer

Veterans Staffing, Frankfort, Kentucky, United States, 40601

Save Job

SIEM Engineer

Headquartered in Dublin, Ohio, Cardinal Health is a global, integrated healthcare services and products company connecting patients, providers, payers, pharmacists and manufacturers for integrated care coordination and better patient management. Cardinal Health ranks among the top 20 on the Fortune 500. Cardinal Health's Information Security team aims to be a world-class cybersecurity and risk management organization that enables Cardinal Health to be healthcare's most trusted partner. We are a remote-first team and are excited to offer full-time remote opportunities. We currently have a full-time career opening for an SIEM Engineer in our Cybersecurity Platform Engineering team. This role is responsible for onboarding and normalizing data sources from a variety of platforms, developing custom content including dashboards, apps, and addons for our SIEM platform. The right person for this role will be an individual with proven experience onboarding data and developing content for Splunk with a strong passion for Cybersecurity. About the Team

The Cybersecurity Platform Engineering team is the convergence between systems administration and cybersecurity to provide consistently reliable and available security platforms, while improving the operational efficiency and detection capabilities of cybersecurity operations through integrations, automation, and continuous improvement. We manage a wide range of cybersecurity platforms, build and manage security infrastructure, automate processes and develop custom integrations. Responsibilities

Developing content, onboarding data, and integrating systems with our Security Information Event Management (SIEM) Building cloud native infrastructure including Linux servers, containers, and storage buckets Integration of platforms through APIs Continuous optimization, tuning, and monitoring of platforms Working closely with Cyber Threat & Response Executing projects to improve the cybersecurity maturity of the organization Troubleshooting issues affecting internal customers Participation in POC/RFP by testing solutions or building test environments Mentor other members of the team Qualifications

Required: Experience onboarding data and developing content for Splunk Excellent Splunk query and dashboarding skills Proficient with Linux Operating Systems Experience working with APIs Experience with reading event logs from common IT and Security platforms Ability to collaborate with numerous teams and internal customers Preferred: Familiarity with security frameworks (MITRE ATT&CK, NIST CSF, etc.) Experience with Python Agile development experience General knowledge of networking, servers, cloud technologies, and firewalls Experience in a large enterprise environment (2000+ users) is a plus Anticipated Salary Range:

$93,500 - $140,280 Benefits:

Cardinal Health offers a wide variety of benefits and programs to support health and well-being. Medical, dental and vision coverage Paid time off plan Health savings account (HSA) 401k savings plan Access to wages before pay day with myFlexPay Flexible spending accounts (FSAs) Short- and long-term disability coverage Work-Life resources Paid parental leave Healthy lifestyle programs Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply. Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day.