
Cybersecurity Data Engineer
- Malta
- Permanent
- Full-time
- Exploitation and development of existing SIEM infrastructure
- Owner, L3 support of instruments and technologies for data analysts
- L3 SOC specialist for DB and similar incidents
- Automate team tasks with different solutions using Python/Go/Bash development
- Participate in building protection of CI/CD & k8s infrastructure
- Contribute to the definition of security policies and standards
- More than 3 years of experience as a Clickhouse database administrator or equivalent knowledge
- More than 2 years of experience as a data engineer, with data collection, normalizing, and storage optimization, especially with SIEM data
- Experienced or interested in DevOps and cybersecurity skills improvement
- Strong experience in Database technologies: clustering, sharding, access roles, views, indexing, etc.
- Experienced with monitoring tools (VM, Prometheus, Zabbix, Grafana, AlertMgr, etc…)
- Strong Linux system administration experience
- Experience with Salt Stack, Terraform, Kubernetes, and similar technologies
- Experience in Public Cloud technologies including Oracle Cloud, AWS and Microsoft Azure
- Strong investigative and analytical problem-solving skills
- Practice in building security processes in the corporate environment
- Experience in development and automation (Python/Bash/Go)
- Experience in implementing CI/CD and automation (GitLab/Jenkins)
- Familiarity with SecOps processes i.e., detection, monitoring, alerting and threat intelligence
- Proficiency in Russian and English at Upper-Intermediate level or higher
- Practice of SIEM administration, configuration, and event analytics
- Maintain accountability in responsibility zones, leveraging data analyst instruments to optimise processes, ensure accuracy, and drive effective results
- Experience with VMware NSX, Neutron, Docker, Kubernetes, Istio and similar technologies
- Knowing how automatic Role-Based access for the company should work
- Strong knowledge of endpoint & infrastructure security such as Audit.d, sysmon, apparmor, selinux, etc
- Hands-on experience implementing security controls and improvements in one or more of the major cloud providers (AWS, GCP, Azure)
">