Summary
Join NBCUniversal Cyber Security and contribute to the design and implementation of security platforms and services that protect the company's businesses. As a member of the Cyber ECS Security Data Engineering & Insights team, you will play a key role in transforming the cyber defense program into an intelligence and threat-based organization. You will be responsible for collecting security data from across NBCUniversal and building capabilities to drive insights and information back to the organization.
Requirements
- Bachelor's Degree in Computer Science, Engineering or similar discipline; or equivalent experience
- 5+ years of Cybersecurity and data engineering experience with a focus on working with Splunk
- A deep understanding of SIEM security principles and how to apply them
- Experience implementing automation, pipeline, data processing, and security frameworks
- 5+ years of Splunk Architecture and Administration Experience
- Familiarity with large security data solutions such as AWS Security Lake, Data Bricks, Snowflake, Splunk etc
- Experience with cloud computing platforms, specifically AWS and/or Azure
- Familiarity with Serverless services like AWS Lambda or Azure Functions
- Proficient in Python, Bash or other scripting language
- Solid understanding of data structures and algorithms
- Leverage data to drive design and risk decisions using various sources and basic analytics to create clear metrics and reports
- Knowledge of microservices architecture and containerization technologies
- Highly collaborative; personally, and professionally self-aware; able to and interested in interacting with employees at all levels; embody integrity; and represent and inspire the highest ethical standards
- Desire to try things and iterate on them, fail fast, and focus on functionality that matters
- Eagerness to learn new security tools/services to support broadening our portfolio
- Experience with CI/CD technologies (GitHub Actions, Jenkins, CodePipeline, etc.)
Responsibilities
- Provide secure design and engineering guidance for security data collection, insights, and analytics
- Onboard various data elements via a data streaming platform across NBC Universalβs business entities
- Ensure uninterrupted ingestion of critical systems data into threat detection, analytics, and response systems
- Provide excellent support and service to other teams that rely on security data systems β help share knowledge, and assist in creation and management of dashboards, alerts, reports, and other knowledge objects
- Facilitate knowledge sharing by creating and maintaining detailed documentation and diagrams, while also collaborating with other team members on standard processes and technology roadmaps
- Maintain & support platform infrastructure for SIEM and endpoint product implementations
- Participate in an on-call rotation for support of systems outside of normal business hours and be available to perform maintenance and critical operations as needed
- Be able to thrive in a fast-paced environment using proper organizational skills to ensure deliverables are met
Preferred Qualifications
- Splunk Enterprise Admin or Architect certification
- Strong problem-solving and analytical skills
- Understanding of event-driven architecture and asynchronous programming patterns
- Familiar with ML algorithms and tech stacks
- Experience configuring and managing rsyslog/syslog-ng
- Datadog Administration Experience
- Experience with cyber monitoring of assets and resolution
- Experience with Vector and/or Logstash
- Experience with configuration management tools (Ansible, Chef, Puppet, etc.)
Benefits
- Fully Remote : This position has been designated as fully remote, meaning that the position is expected to contribute from a non-NBCUniversal worksite, most commonly an employeeβs residence
- This position is eligible for company sponsored benefits, including medical, dental and vision insurance, 401(k), paid leave, tuition reimbursement, and a variety of other discounts and perks
- Salary range: $100,000 - $120,000