SIEM Engineer
TUI Group is the world’s number one integrated tourism business. Information Security is a global team within TUI technology responsible for maintaining and continuously improving security across TUI. We are a multi-disciplinary team of experts across Governance, Risk and Compliance (GRC), Architecture, Engineering and Delivery providing services across the UK, Ireland, Sweden, Norway, Denmark, Finland, Spain, Germany, Belgium and The Netherlands.
We never stop looking ahead, seeking new ways to delight our customers and grow our business. We recognise the power of digital and the massive contribution this brings to creating a truly unique and differentiated customer experience.
We are seeking a skilled SIEM Engineer to join our global Cyber Security team. In this unique role, you will be responsible for implementing and maintaining our Security Information and Event Management (SIEM) systems while also managing the knowledge assets related to our security operations. Your efforts will ensure that TUI's security monitoring capabilities are robust and that critical knowledge is effectively captured, organized, and shared across the team.
- Now taking applications until 20-01-2025
ABOUT OUR OFFER
- Personal benefits: Attractive remuneration, bonus opportunity, exclusive travel perks & discounts, extensive health & wellbeing support, and more.
- Flexible working: Work is something you do, not somewhere you go. We encourage a healthy work-life balance and offer hybrid or remote working models.
- A career to shape: Opportunities to upskill, reskill and grow your career. Access the TUI Tech Learning Hub to level-up and reach your ambitions.
- Expand your horizons: Participate in our tech communities and collaborate on global projects and teams.
- Community: Get involved with incredible local charity and sustainability initiatives like the TUI Care Foundation and the Sustainable Tech Community.
ABOUT THE JOB
System Deployment & Maintenance:
- Install, configure, and maintain SIEM platforms (e.g., Splunk) to support security monitoring and incident response activities.
- Ensure the SIEM infrastructure is optimized for performance, scalability, and reliability.
Data Onboarding & Integration:
- Onboard new log sources by configuring data inputs, parsing rules, and field extractions.
- Ensure seamless integration of various data sources, including servers, applications, and network devices.
Content Development:
- Develop and maintain dashboards, alerts, and correlation searches to enhance threat detection capabilities.
- Customize SIEM content to address specific security use cases and compliance requirements.
Troubleshooting & Support:
- Monitor SIEM system health and performance, resolving issues promptly to minimize downtime.
- Provide technical support to the Security Operations Centre (SOC) and other stakeholders.
Documentation & Repository Management:
- Develop and maintain comprehensive documentation, including playbooks, standard operating procedures (SOPs), and configuration guides.
- Organize and manage the knowledge repository to ensure information is easily accessible and up-to-date.
Training & Development:
- Conduct training sessions and workshops to educate team members on SIEM functionalities and security best practices.
- Foster a culture of continuous learning and knowledge sharing within the security team.
Content Curation:
- Regularly update knowledge assets to reflect changes in the threat landscape, technology updates, and process improvements.
- Collaborate with team members to capture tacit knowledge and convert it into explicit documentation.
Threat Detection:
- Assist in monitoring security events to identify potential threats and vulnerabilities.
- Fine-tune detection rules to improve accuracy and reduce false positives.
Incident Response Assistance:
- Support the SOC during security incidents by providing timely access to relevant SIEM data and insights.
- Update knowledge assets post-incident to capture lessons learned and improve future response efforts.
Regulatory Compliance:
- Ensure SIEM operations and documentation comply with relevant regulations and industry standards such as GDPR, PCI DSS, and ISO 27001.
Audit Preparation:
- Provide necessary documentation and evidence to support internal and external audits.
- Implement audit recommendations to enhance security controls and processes.
ABOUT YOU
Education & Experience:
- Bachelor's degree in Computer Science or equivalent experience, Information Security, or a related field.
- Proven experience in SIEM engineering and/or security operations.
- Experience in knowledge management or technical documentation is a plus.
Technical Expertise:
- Proficiency with SIEM platforms, particularly Splunk Enterprise and Splunk Enterprise Security.
- Strong understanding of log management, data parsing, and event correlation.
- Familiarity with security frameworks and protocols (e.g., TCP/IP, SSL/TLS, LDAP).
- Basic scripting skills (e.g., Python, PowerShell) for automation and data manipulation.
Knowledge Management Skills:
- Experience in creating and managing technical documentation and knowledge repositories.
- Ability to translate complex technical concepts into clear, concise documentation.
- Proficiency with documentation tools and content management systems.
Stakeholder Management Skills:
- Excellent interpersonal skills to engage effectively with technical and non-technical stakeholders.
- Experience in maintaining backlogs and developing implementation roadmaps.
- Strong organizational skills to manage multiple projects and priorities.
Analytical & Problem-Solving Skills:
- Ability to analyse security logs and data to identify patterns and anomalies.
- Strong troubleshooting skills to resolve system issues and optimize performance.
Communication & Collaboration:
- Good verbal and written communication skills.
- Ability to conduct training sessions and facilitate knowledge sharing.
- Collaborative mindset to work effectively within cross-functional teams.
Certifications:
- Relevant certifications such as Splunk Certified Power User, Splunk Certified Admin, or ITIL Foundation are desirable.
- Security certifications like CompTIA Security+, SSCP, or equivalent are a plus.
From a workplace to a place to belong. At TUI we embrace diversity, equity, and inclusion, encouraging everyone to come as you are, because together, our potential is limitless.
We are committed to supporting candidates with disabilities and impairments so if you require any support, please do let us know.
-
Karrierebereiche | Jobs & Karriere bei TUI In unseren TUI-Karrierebereichen schaffen wir jeden Tag unvergessliche Erlebnisse. Entdecke hier unsere Teams, was sie tun und wer sie sind.
-
Über TUI | Jobs & Karriere bei TUI Erfahre mehr über TUI. Wir sind ein weltweit führender Touristikkonzern, der Urlaubsträume für Menschen auf der ganzen Welt wahr werden lässt.
-
Das beste Team, wenn's um Reisen geht | Jobs & Karriere bei TUI Für uns bedeutet "Let's TUI it" Herausforderungen gemeinsam anzugehen und Lösungen mit einer Macher-Mentalität zu finden. Erfahre hier, was uns zum besten Team in der Reisebranche macht.
-
-
Impressum | Jobs & Karriere bei TUI Finde unser Impressum hier.
-
Kontaktiere uns | Jobs & Karriere bei TUI Hier findest du die Rekrutierungsteams von TUI, die dir gerne bei deinen Fragen weiterhelfen.
-
-
Cookie Hinweis | Jobs & Karriere bei TUI Deine Privatsphäre ist uns wichtig. Hier findest du alle Infos darüber, was Cookies sind, wie wir sie verwenden und welche Auswahlmöglichkeiten du bei Cookies hast.
-
-
-
-
In den TUI-Unternehmensfunktionen arbeiten In den Unternehmensfunktionen von TUI dreht sich alles darum, unseren Gästen einen Spitzenurlaub zu ermöglichen. Hier kannst du wichtige Projekte anstoßen, finanzielle Ziele ins Visier nehmen oder unsere Mitarbeitenden auf ihrem Weg unterstützen.
-
Mit TUI auf Kreuzfahrt arbeiten Wir betreiben eine Flotte von 16 Kreuzfahrtschiffen und navigieren durch alle Herausforderungen, um unvergessliche Kreuzfahrterlebnisse zu schaffen, die unsere Gäste ein Leben lang in Erinnerung behalten werden.
-
Jobs im Ausland Starte mit uns deine Traumkarriere im Ausland. Es warten unvergessliche Erlebnisse auf dich. Egal, ob du das Abenteuer suchst oder schon an einem unserer Reiseziele lebst – wir können es kaum erwarten, dass du bei uns eincheckst.
-
Reisebüro und Call Center In unseren Reisebüros und Call Centern warten viele Karrieremöglichkeiten auf dich – Fernweh inklusive. Werde Teil der TUI-Familie und starte eine Karriere, die Urlauber*innenherzen höher schlagen lässt.
-
Globale Einstiegsprogramme Unsere Einstiegsprogramme gibt's rund um den Globus, und jeder Standort hat etwas anderes im Gepäck. Entdecke, was wir wo bieten.
-
Technik und Instandhaltung Ob es um die Beschaffung der nötigen Teile geht, die Einhaltung strenger Vorschriften oder um die Wartung – wir haben alles im Griff und tüfteln ständig daran, wie wir die Verfügbarkeit und Leistung unserer Flotte optimieren können.
-
Luftfahrt Starte deine Reise mit den TUI Airlines und entdecke eine Karriere über den Wolken. Unsere Crew sorgt dafür, dass jeder Urlaub mit einem Lächeln beginnt.
-
Ausbildung - Studium - Praktikum Hier findest du alle Informationen zu Ausbildung, dualem Studium, Schüler- oder studentischem Praktikum bei der TUI Group.
-
Ausbildung Kaufleute für Büromanagement
-
Tech, Digital und Data Innovationen in der Reisebranche? Unser Tech-Team ist dran! Ob du dich für Softwareentwicklung, Datenanalyse, UX/UI-Design oder Cybersicherheit begeisterst – bei TUI findest du die perfekte Plattform, um deine Karriere ans Netz zu bringen.
-
Retail Opportunities With over 1,600 retail stores across Europe, you will help to create unforgettable holidays for all of our customers with your personality, professionalism and personalised service. As the first point of contact for many of our customers, we are looking for dedicated people with a passion for travel and customer service.
-
Crystal Ski We’ve been taking people to the mountains for over 40 years to create unforgettable experiences in ince, snow and sun. Join us and make some of the world’s greatest ski resorts your home.
-
-
-
-
-
How We Hire | Destination Jobs At TUI we want to make your journey as a candidate as simple and transparent as we possibly can. We truly believe that your application to join TUI should be as exciting as going on holiday. Learn more about our application process.
-
-
-
-
-
-
Come as you are Wir wissen, dass die Menschen so vielfältig sind wie unsere Reiseziele. Deshalb wollen wir unsere Arbeitskultur inklusiver gestalten. So machen wir Vielfalt und Inklusion bei TUI…
-
Ausbildung Dialogmarketing
-
Ausbildung E-Commerce
-
Ausbildung Fachinformatiker
-
Ausbildung Sport- und Fitnesskaufleute bei Robinson Hier findest du alle Informationen zu der Ausbildung für Sport- und Fitnesskaufleute bei Robinson.
-
-
-
-
-
-
-
-
-
Du könntest hier sein!
Erkunde den OrtJobs für dich
-
Software EngineerPalma de Mallorca, ESP, Oporto, PT; Milan, IT; Flexible Stelle anzeigen
-
Information Security ManagerLisbon, PRT, Oporto, PT; Barcelona, ES; Madrid, ES; Flexible Stelle anzeigen
-
Incident Response ManagerLisbon, PRT, Oporto, PT; Madeira, PT; Faro, PT; Flexible Stelle anzeigen
-
SIEM ArchitectLisbon, PRT, Oporto, PT; Madeira, PT; Faro, PT; Flexible Stelle anzeigen