Cyber Defense Engineer - SIEM Engineer (Remote)

Full Time
Farmington, CT 06032
Posted
Job description

The following position is to join our Corporate or Research Center Team:

Raytheon Technologies Corporation

Raytheon Technologies Corporation is an Aerospace and Defense company that provides advanced systems and services for commercial, military and government customers worldwide. It comprises four industry-leading businesses – Collins Aerospace Systems, Pratt & Whitney, Raytheon Intelligence & Space and Raytheon Missiles & Defense. Its 195,000 employees enable the company to operate at the edge of known science as they imagine and deliver solutions that push the boundaries in quantum physics, electric propulsion, directed energy, hypersonics, avionics and cybersecurity. The company, formed in 2020 through the combination of Raytheon Company and the United Technologies Corporation aerospace businesses, is headquartered in Waltham, Massachusetts.

To realize our full potential, Raytheon Technologies is committed to creating a company where all employees are respected, valued and supported in the pursuit of their goals. We know companies that embrace diversity in all its forms not only deliver stronger business results, but also become a force for good, fueling stronger business performance and greater opportunity for employees, partners, investors and communities to succeed.

Role Overview

The Cyber Defense Engineering (CDE) team is seeking Cybersecurity engineers for our SIEM Engineering team. The CDE SIEM Engineering team is the operational arm of RTX’s Enterprise Cybersecurity Services (ECS) organization.

Responsibilities:

  • Defining the strategic SIEM direction, administration of the SIEM platform & hardware infrastructure and provide detection engineering services.
  • Partnering with Cyber Defense Analysts to test & deploy detection rules aimed at identifying anomalous & suspicious activity within the enterprise environment.
  • Collaborating with business unit stakeholders to collect Cyber relevant event logging from on-prem & cloud hosted infrastructure to enable central Enterprise Security visibility.

General Tasks Include:

  • Manage SIEM related security product rollouts to Raytheon Technologies (RTX) computing environments.
  • Develop, implement, document and maintain SIEM security product management controls, standard operating procedures, narratives and test scripts.
  • Work with RTX incident response teams to improve cyber defense capability.
  • Working with project teams to ensure secure implementations.
  • Define key metrics to demonstrate program success.
  • Provide technical operational support responsibilities for a large centralized Splunk implementation.
  • Mature and continue to build-out & support Enterprise SIEM operational capabilities.
  • Provide technical oversight, hands-on implementation and support for integrations with centralized monitoring.
  • Gather use cases & requirements from Cyber Defense teams in order to develop, deploy & configure solutions to aid in Cyber-related initiatives.
  • Lead, develop & influence continuous monitoring efforts to assist in maturing Cyber prediction, prevention, detection & response capabilities.

Experience/Qualifications:

  • 3+ years of Splunk architecture, implementation, and troubleshooting experience.
  • Experience with Security Incident Event Management (SIEM) platforms (ie Splunk Enterprise Security preferred)
  • Proficiency developing log ingestions and aggregation strategies.
  • Experience with information security solutions such as IDS/IPS (intrusion detection / prevention system), full packet / deep packet capture analysis, firewalls, and proxies.
  • Experience with automation platforms (i.e. Ansible preferred) a big plus including scripting background in Python, PowerShell, Bash or similar languages.
  • Efficient with version control technologies (i.e. GIT preferred and DevOps related methodologies.
  • Experience authoring security run books and best practice documentation.
  • Comfortable working in Linux command line environments.
  • Deep proficiency in client and server operation systems including Windows and Linux.
  • 1+ years experience with Cloud-based infrastructure deployments (i.e. Azure, AWS)
  • Initiative and ability to quickly acquire knowledge.
  • Ability to autonomously prioritize and successfully deliver across multiple tasks.
  • Ability to manage moderately sized projects with minimal oversight.
  • Problem solving and analytical abilities including the ability to critically evaluate information gathered from multiple sources, reconcile conflicts, decompose high-level information into details and apply sound business knowledge.


Education:

  • Typically requires a University Degree or equivalent experience and a minimum 8 years of experience, or an Advanced Degree and a minimum 5 years experience.

Location: Remote

Work Authorization: US Citizen Required

Raytheon Technologies is An Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status, age or any other federally protected class.

colinoncars.com is the go-to platform for job seekers looking for the best job postings from around the web. With a focus on quality, the platform guarantees that all job postings are from reliable sources and are up-to-date. It also offers a variety of tools to help users find the perfect job for them, such as searching by location and filtering by industry. Furthermore, colinoncars.com provides helpful resources like resume tips and career advice to give job seekers an edge in their search. With its commitment to quality and user-friendliness, colinoncars.com is the ideal place to find your next job.

Intrested in this job?

Related Jobs

All Related Listed jobs