What are the responsibilities and job description for the Information Security Lead - Senior SIEM Engineer position at TE connectivity?
**Job Overview**
At TE Connectivity, we are committed to creating a safer, sustainable and more connected world. As a Senior SIEM Engineer, you will be a key member of our collaborative security team, working alongside other security professionals to protect our organization from sophisticated cyberattacks.
The successful candidate will have the opportunity to drive innovation in our SIEM program, leveraging their expertise to develop advanced detection methods and improve our overall security posture. Key responsibilities include:
- SIEM Engineering & Development: Design, develop, implement, and optimize advanced correlation rules, use cases, and detection logic within the enterprise SIEM platform.
- Log Source Management: Architect and maintain robust log ingestion pipelines from diverse security and IT systems, ensuring comprehensive data collection, normalization, and parsing.
- Threat Detection & Analysis: Develop and refine high-fidelity security alerts, dashboards, and reports to enhance threat identification, reduce false positives, and provide actionable insights.
- Security Operations Collaboration: Collaborate closely with the Security Operations Center (SOC) to optimize response workflows, improve threat detection capabilities, and provide expert-level support during security incidents.
- Threat Intelligence & Proactive Hunting: Maintain expertise in emerging threats, attack techniques, and security best practices. Proactively hunt for advanced threats and develop new detection methods based on threat intelligence and adversary tactics, techniques, and procedures (TTPs).
- Automation & Scripting: Automate SIEM tasks, workflows, and integrations using scripting languages (e.g., Python, PowerShell) to improve efficiency and scalability.
The ideal candidate will have a strong background in information security, with a minimum of 5-7 years of experience in SIEM administration, engineering, and security operations. They will also possess significant experience with at least one enterprise-grade SIEM platform and expert-level knowledge of SIEM architecture, design, implementation, and administration.