We are seeking a hands-on, technically strong Lead SIEM Engineer to design, implement, and enhance security monitoring capabilities using modern SIEM platforms (e.g., Splunk, Elastic). You will lead log onboarding, use case development, data normalization, and operational support, with emphasis on cloud integration. Key Responsibilities:
Design and develop SIEM use cases by researching log sources and collaborating with stakeholders
Lead log onboarding and normalization using tools like Cribl, Beats, or custom scripts
Migrate or refactor existing scripts and reports into cloud-based SIEM environments
Build custom apps, scripts, and automation for data ingestion, transformation, validation, and reporting
Implement validation workflows to ensure data integrity and export readiness
Provide expert-level troubleshooting for ingestion failures, missing data, or alert issues
Maintain documentation to support knowledge transfer and operational continuity
Lead architectural design and implementation of SIEM solutions aligned with security goals
Integrate SIEM solutions with cloud-native services (AWS/Azure), including serverless options
Use cross-platform SIEM experience (e.g. Splunk and Elastic) to design flexible, scalable solutions
Requirements:
Proven experience with at least one major SIEM platform (Splunk and/or Elastic)
Deep understanding of SIEM architecture, log ingestion pipelines, and security use case development
Proficiency in scripting (Python) and data automation
Experience with cloud platforms (AWS or Azure), including serverless services
Familiarity with Git and modern CI/CD workflows
Solid grasp of infrastructure: OS, network, databases, and security tooling
Strong problem-solving skills and ability to lead technical discussions
By submitting your resume, you consent to the collection, use, and disclosure of your personal information per ScienTec's Privacy Policy (scientecconsulting.com/privacy-policy). This authorizes us to: Contact you about potential opportunities. Delete personal data as it is not required at this application stage. All applications will be processed with strict confidence. Only shortlisted candidates will be contacted. Aloysius Tan Sheng Rong - R22110441 ScienTec Consulting Pte Ltd - 11C5781