Remote Position29.01.26
AI SCORE 8.5

Mid-Senior SIEM Engineer - On-Site in Lisbon

$60K–$80K/year

About the Role

We are seeking a Mid-Senior SIEM Engineer to join our team in Lisbon, Portugal. This is an on-site role, where you will design, implement, and maintain the organization’s SIEM platform to ensure continuous, reliable, and scalable security monitoring. As a SIEM Engineer, you will play a crucial role in enhancing our security posture and ensuring the integrity of our systems.

What You'll Do

  • Design, implement, and maintain the organization’s SIEM platform for effective security monitoring.
  • Develop and manage log source integrations across on-premise, cloud, and hybrid environments.
  • Build, fine-tune, and maintain correlation rules, detection logic, and alerting workflows.
  • Create and maintain dashboards, reports, and visualizations to support SOC operations.
  • Continuously optimize SIEM performance and data ingestion efficiency.
  • Collaborate with Security Operations, Incident Response, and Threat Intelligence teams.
  • Conduct periodic use case reviews to align with the evolving threat landscape.
  • Ensure proper data retention and access control configurations within the SIEM.
  • Automate repetitive processes and data enrichment using scripting or integrations.
  • Document correlation rules, workflows, and integration procedures.
  • Support audits and compliance reporting by ensuring log completeness.
  • Participate in on-call rotations for critical security incidents.
  • Evaluate and recommend improvements to SIEM architecture and detection capabilities.
  • Contribute to the roadmap and maturity development of security monitoring functions.

Requirements

  • 3+ years of experience working with SIEM platforms (e.g., Splunk, ELK, QRadar).
  • 9+ months of experience with ELK SIEM (Elasticsearch, Logstash, Kibana, and Beats).
  • Strong understanding of log management, event correlation, and alerting principles.
  • Hands-on experience with log ingestion, parsing, and normalization.
  • Proficiency in developing and tuning detection rules, dashboards, and reports.
  • Good knowledge of security operations and incident response processes.
  • Familiarity with common network, endpoint, and cloud security data sources.
  • Experience with scripting (Python, PowerShell) for automation.
  • Understanding of MITRE ATT&CK framework in detection engineering.
  • Strong analytical and troubleshooting skills.
  • Effective communication and documentation skills.
  • Fluency in English (written and spoken).

Nice to Have

  • Experience with SOAR platforms.
  • Experience with EDR.
  • Experience with cloud environments (AWS, Azure, GCP).
  • Familiarity with vulnerability management processes.
  • Knowledge of regulatory and compliance requirements (GDPR, ISO 27001).
  • Previous experience in a global Security Operations environment.

What We Offer

  • Excellent benefits including global coverage health insurance.
  • Learning and development opportunities.
  • 20 working days of annual vacation and additional paid sick days.
  • Competitive remuneration level with annual review.
  • Team-building activities.

Bold moves start here. Make yours. Apply today!

Language Requirements
EnglishC1
BasicIntermediateAdvancedNative
Why This Job8.5 of 10

This Mid-Senior SIEM Engineer role offers a competitive salary and excellent benefits, with opportunities for professional growth in a dynamic environment.

Salary Range
Required
0/1
Optional
0/1
Bonus
0/1

Who Will Succeed Here

Proficient in using and configuring SIEM tools such as Splunk and ELK stack, with a strong understanding of security event monitoring and threat detection techniques.

Ability to work effectively in an office environment, demonstrating a proactive approach to collaboration with cross-functional teams and a strong presence in team meetings to discuss security strategies.

Hands-on experience with Python and PowerShell scripting for automation of security tasks, coupled with a mindset focused on continuous improvement and adaptation to the evolving cybersecurity landscape.

Learning Resources

Splunk Fundamentals 1course

Career Path

Mid-Senior SIEM Engineer(Now)SIEM Team Lead or Security Architect(1-2 years)Head of Security Operations or Senior Security Consultant(3-5 years)

Market Overview

Market Size 2024
$6.5B
Annual Growth
12.5%
AI Adoption
30%
Investment
+45%
Labour Demand
+20%
Avg Salary
$110K

Skills & Requirements

Required
SIEMSplunkELK
Growing in Demand
Cloud SecurityMachine Learning for CybersecurityIncident Response Automation
Declining
Traditional Network Security MonitoringManual Log Analysis

Domain Trends

Increased Focus on Cloud Security
With 70% of organizations migrating to cloud platforms, there is a growing demand for SIEM solutions that integrate with cloud environments.
Rise of Automated Threat Detection
Automated threat detection using AI and machine learning is projected to increase by 40% in the next two years, pushing SIEM engineers to adopt these technologies.
Integration of MITRE ATT&CK Framework
Organizations are increasingly adopting the MITRE ATT&CK framework for threat modeling, with 60% of security teams using it to enhance SIEM capabilities.

Industry News

Loading latest industry news...

Finding relevant articles from the last 6 months

All job postings are automatically gathered by algorithms. We do not review or verify listings, be careful when applying and do not sign-in with iCloud or Google services.