SIEM Architect
TUI Group is the world’s number one integrated tourism business. Information Security is a global team within TUI technology responsible for maintaining and continuously improving security across TUI. We are a multi-disciplinary team of experts across Governance, Risk and Compliance (GRC), Architecture, Engineering and Delivery providing services across the UK, Ireland, Sweden, Norway, Denmark, Finland, Spain, Germany, Belgium and The Netherlands.
We never stop looking ahead, seeking new ways to delight our customers and grow our business. We recognise the power of digital and the massive contribution this brings to creating a truly unique and differentiated customer experience.
We are seeking an experienced SIEM Architect to join our global Cyber Security team that provides services to the whole of TUI Group. In this pivotal role, you will design, implement, and manage our Security Information and Event Management (SIEM) systems to protect TUI's digital assets. You will collaborate with cross-functional teams to enhance our security posture and ensure compliance with industry standards.
- Now taking applications until 20-01-2025
ABOUT OUR OFFER
- Personal benefits: Attractive remuneration, bonus opportunity, exclusive travel perks & discounts, extensive health & wellbeing support, and more.
- Flexible working: Work is something you do, not somewhere you go. We encourage a healthy work-life balance and offer hybrid or remote working models.
- A career to shape: Opportunities to upskill, reskill and grow your career. Access the TUI Tech Learning Hub to level-up and reach your ambitions.
- Expand your horizons: Participate in our tech communities and collaborate on global projects and teams.
- Community: Get involved with incredible local charity and sustainability initiatives like the TUI Care Foundation and the Sustainable Tech Community.
ABOUT THE JOB
Stakeholder Engagement & Roadmap Development:
- Engage with key stakeholders to understand business needs, security requirements, and priorities.
- Develop and maintain a SIEM roadmap aligned with organizational goals and emerging threats.
- Prioritize and manage a backlog of SIEM enhancements, features, and fixes based on stakeholder input.
- Communicate updates, progress, and changes to stakeholders and senior leadership.
- Facilitate regular meetings with stakeholders to gather feedback and adjust plans accordingly.
SIEM Architecture & Design:
- Develop and maintain the overall SIEM architecture to meet business and security requirements.
- Design scalable solutions for data collection, processing, and storage within the SIEM platform.
- Establish standards and best practices for SIEM deployment and configuration.
- Document architectural plans, roadmaps, configurations, and procedures.
SIEM Engineering & Implementation:
- Install, configure, and maintain SIEM platforms (e.g., Splunk) and associated components.
- Integrate various log sources, including servers, applications, and network devices, into the SIEM.
- Develop custom scripts and automation tools to streamline SIEM operations.
- Optimize SIEM performance through tuning and scaling.
Content Development & Management:
- Create and manage correlation searches, alerts, and dashboards to detect security threats.
- Develop use cases and implement monitoring strategies for threat detection and compliance.
- Regularly update SIEM content to adapt to emerging threats and business changes.
Monitoring & Incident Response Support:
- Collaborate with the Security Operations Centre (SOC) to analyse security events.
- Assist in incident response activities by providing relevant SIEM data and insights.
- Fine-tune detection rules to reduce false positives and enhance threat visibility.
Maintenance & Troubleshooting:
- Perform regular system health checks and ensure high availability of SIEM services.
- Troubleshoot and resolve issues related to data ingestion, parsing, and correlation.
- Apply patches and updates to maintain system security and compliance.
Collaboration & Training:
- Work closely with IT, DevOps, and other security teams to align on security objectives.
- Provide training and mentorship to team members on SIEM functionalities and best practices.
- Participate in cross-functional projects to enhance overall security posture.
Compliance & Reporting:
- Ensure SIEM operations comply with regulatory requirements and internal policies.
- Generate compliance reports for standards such as GDPR, PCI DSS, and ISO 27001.
- Support audit activities by providing necessary documentation and evidence.
ABOUT YOU
Education & Experience:
- Bachelor’s degree in Computer Science or equivalent experience, Information Security, or a related field.
- Proven experience in SIEM architecture and engineering roles.
Technical Expertise:
- Proficiency with SIEM platforms, especially Splunk Enterprise and Splunk Enterprise Security.
- Strong knowledge of log management, event correlation, and security analytics.
- Experience with data onboarding, including parsing, normalizing, and mapping data sources.
- Familiarity with network protocols, operating systems, and security technologies.
- Proficiency in scripting languages such as Python, PowerShell, or Bash.
Security Knowledge:
- Understanding of cybersecurity principles, threat landscapes, and attack vectors.
- Knowledge of security frameworks and compliance standards (e.g., NIST, ISO 27001, GDPR).
- Experience in developing and implementing security use cases and playbooks.
Analytical & Problem-Solving Skills:
- Ability to analyse complex datasets to identify patterns, anomalies, and security incidents.
- Strong troubleshooting skills to resolve technical issues promptly.
Communication & Collaboration:
- Excellent verbal and written communication skills.
- Ability to convey complex technical concepts to non-technical stakeholders.
- Experience working in cross-functional teams and global environments.
Certifications:
- Relevant certifications such as Splunk Certified Architect, Splunk Certified Engineer, CISSP, or CISM are highly desirable.
From a workplace to a place to belong. At TUI we embrace diversity, equity, and inclusion, encouraging everyone to come as you are, because together, our potential is limitless.
We are committed to supporting candidates with disabilities and impairments so if you require any support, please do let us know.
-
Career Areas | Jobs & Careers at TUI Within our TUI career areas, we are creating unforgettable experiences every day. Check out our teams, what they do and who they are here.
-
About TUI I Jobs & Careers at TUI Learn more about TUI. We are a leading global travel and leisure experience company that makes holiday dreams come true for people around the world.
-
The best team in travel | Jobs & Careers at TUI For us "Let's TUI it" we means tackling challenges together, and finding solutions with a can-do attitude. See here what makes us the best team in travel.
-
-
-
Contact us | | Jobs & Careers at TUI Here you will find the recruitment teams within TUI who are happy to help with your queries.
-
FAQ
-
-
Cookie Notice | Jobs & Careers at TUI Your privacy is important to us. Here you will find all the information about what cookies are, how we use them and your choices when it comes to cookies.
-
-
-
-
-
-
-
Corporate operations Across Europe, Asia, and the Americas, TUI corporate roles all have one thing in common – a drive to give our customers a best-in-class leisure experience. You’ll be contributing to the success of our vision and values – whilst developing your own career path, too.
-
Cruise We power an impressive fleet of 16 cruise ships spanning three dynamic brands. Teams of passionate individuals not only setting the stage on board, but also behind the scenes at our vibrant head offices where we craft unforgettable memories for our guests.
-
Hotels & resorts The world is yours to explore at TUI. Join us for your dream career across our global destinations, where every role promises unforgettable experiences and a chance to leave a lasting impact on our guests worldwide.
-
Retail and Contact Centres Whether you’re engaging with our clients through our digital channels or offering personalised service in one of our 1,600+ retail stores across Europe, your role is pivotal in crafting unforgettable holidays.
-
Early careers Whether with an apprenticeship, a dual study program or an internship, we offer you a great variety of early career opportunities to start your journey with TUI.
-
Engineering & maintenance Having safe and reliable aircraft available when and where we need them is fundamental to delivering the excellent customer experience we’re famous for, and that all starts with our Engineering & Maintenance teams.
-
Airline Working for TUI in our Airline offers you a job like no other. Our passion is delivering unforgettable experiences for our customers. Our people make this happen.
-
Digital, Tech, & Data | Agile Evolution Find out what agile working means at TUI and how our Scrum Masters work towards making TUI a fully agile company
-
Digital, Tech, & Data | Information Security Within our Information Security community of practice you will perform a crucial role in protecting our IT organisation.
-
Digital, Tech, & Data | Digital Product As the world's leading tourism group, we're driven by technological passion and expertise. Find out how our Digital Products allow us to do just that.
-
Digital, Tech, & Data | Machine Learning and Automation Join our team to study, implement ML algorithms, and develop innovative machine learning applications.
-
ux-ui Our team is dedicated to crafting the most immersive and seamless digital journey for our customers
-
Digital, Tech, & Data | Meet our Colleagues Meet TUI's Tech and Data Science Team: Discover how our people-driven culture, built on trust, transparency, and a test-and-learn mindset, sets us apart.
-
Digital, Tech, & Data | Data Solutions Architecture Discover the Power of Data Solution Architecture at TUI Tech and unleash the business IT needs
-
Tech, Digital & Data TUI is influencing and shaping the digital world of travel which requires the latest and most innovative technologies, tools, systems and working methods. Explore careers in digital, tech & data.
-
Digital, Tech, & Data | Data Analytics, Engineering and Science Explore TUI's Data Analytics, Engineering and Science to discover how we leverage data-driven insights to transform the travel industry.
-
Retail Opportunities With over 1,600 retail stores across Europe, you will help to create unforgettable holidays for all of our customers with your personality, professionalism and personalised service. As the first point of contact for many of our customers, we are looking for dedicated people with a passion for travel and customer service.
-
Digital, Tech, & Data | What we do Discover how our dedicated IT teams at TUI drive digital transformation and ensure seamless processes
-
Digital, Tech, & Data Explore TUI's Software Development, API, and DevOps expertise and discover how we leverage cutting-edge technologies
-
Crystal Ski We’ve been taking people to the mountains for over 40 years to create unforgettable experiences in ince, snow and sun. Join us and make some of the world’s greatest ski resorts your home.
-
Digital, Tech, & Data | Solutions Architecture Join TUI's Solution Architecture team, where you'll steer the course of our integration solutions
-
-
-
-
-
-
How We Hire | Destination Jobs At TUI we want to make your journey as a candidate as simple and transparent as we possibly can. We truly believe that your application to join TUI should be as exciting as going on holiday. Learn more about our application process.
-
-
-
-
-
-
Come as you are. This is how we do diversity and inclusion at TUI...
-
-
Destination Services These ‘Makers of Happy’ are our onboard experts, helping to create unforgettable experiences for our customers. From organising activities and tours, to advising on the best places to go independently, our team ensure our customers make the most of their precious time ashore in the culture-packed and diverse destinations we visit.
-
Entertainment Travel the world and do what you love – and join an award-winning team as part of the deal. We’ve picked up a few gongs at the Wave Awards, the cruise world’s answer to the Oscars. So fair to say we pride ourselves on the high-calibre entertainment programme we host onboard.
-
-
-
-
-
-
-
-
-
-
-
-
Diversity, Equity and Inclusion UK&I We're here to create unforgettable experiences. For customers. For each other too. To do this, we need to be ourselves, every day. Feel we belong and feel good in our unique-ness. That's why diversity, equity and inclusion are important to us. So our simple ask is to 'Come As You Are', and make sure that other people can do it, too. Because together, our potential is limitless.
You could be here!
Explore LocationJobs for you
-
Software EngineerPalma de Mallorca, ESP, Oporto, PT; Milan, IT; Flexible View role
-
Information Security ManagerLisbon, PRT, Oporto, PT; Barcelona, ES; Madrid, ES; Flexible View role
-
SIEM EngineerLisbon, PRT, Oporto, PT; Madeira, PT; Faro, PT; Flexible View role
-
Incident Response ManagerLisbon, PRT, Oporto, PT; Madeira, PT; Faro, PT; Flexible View role