Security Logging and Monitoring Engineer
Aon sp. z o. o
Aon Is looking For Security Logging and Monitoring Engineer - as part of an industry-leading team, you will help empower results for our clients by delivering innovative and effective solutions as part of our security monitoring - engineering team within Aon Service Corp.
Job Responsibilities:
- Design, build, maintain and support a security monitoring platforms and solutions
- Build and tune custom use cases, alerts, dashboards, reports on each of security monitoring platform based on a cybersecurity and business needs
- Lead project implementations and run POC initiatives
- Drive strategy, define and maintain the roadmap for the adoption, expansion and integration of the security monitoring platforms
- Develop and maintain processes/procedures around security monitoring technologies based on environmental changes
- Conduct detailed level analysis of the solution capabilities to identify potential areas for both process and/or system integration and improvements
- Engage with Aon’s regulatory, privacy, architecture, security and platform teams to identify and drive opportunities to leverage the security monitoring capabilities to enhance Aon’s overall security ecosystem
- Work with varies Aon teams to ensure continuous growth of security monitoring footprint and detection capabilities
- Lead and coordinate various tasks with other teams related to department’s initiatives/projects (e.g., infrastructure engineers, network engineers, DBA, compliance, architecture)
- Provide a guidance to teams outside of security on best security practices
- Engage and work with vendors
- Research and evaluate new capabilities in security monitoring landscape
Required Skills:
- 5+ years of proven technical experience and expertise with security infrastructure architecture design, implementation, management, and support for security solutions
- 3+ years of proven hands-on experience designing, implementing and supporting on one or more of the following security technologies and solutions: SIEM (e.g.: Securonix, IBM Qradar), Database Activity Monitoring (e.g.: IBM Guardium), log streaming and distribution technologies (e.g.: Cribl), SOAR. An experience with other security monitoring platforms is a plus.
- 2+ years of proven hands-on experience with one or more of the following technologies or solutions: Windows Server, Linux, IIS, Apache, DNS, Active Directory (AD), LDAP, AWS, Azure, GCP, DevOps
- Must have recent experience in leading and coordinating technical implementations
- Working knowledge of Linux, Windows, TCP/IP networking stack and regular expressions
- Experience with change control processes and working knowledge of ITIL
- Excellent communications skills, both written and oral are required
- Strong problem solving and analytical skills
- Ability to work independently and as part of a team
Preferred Skills:
- Experience with security monitoring in cloud environments
- Experience in development of solution roadmaps, solution architecture and solution design
- Experience in writing technical documentation and presentations for Security, IT and business consumption
- Proficient in operating in a highly matrixed multinational organization
- Flexible self-starter with strong initiative
- Strong attention to detail
- Scripting Skills (e.g., python, json, bash)
- Knowledge of GDPR requirements
- CISSP
- Experience with data mining is a plus
We offer:
- Diverse and inclusive workplace - we value openness and authenticity and believe in the power of feedback
- Flexible remote work environment
- Employee-appreciation culture (multiple recognition programs)
- The best medical cover on the market with free dental care
- Wellbeing awareness (access to free mental health helpline, Stay-Well Day off, lectures, sports and more)
- Generous benefits package (personal accident insurance, benefit platform for vouchers and more)
- Internal career opportunities, individual development plan, professional development training and resources
- Lots of social events, charity actions and opportunities to integrate with colleagues