We're fast learners, hard workers, natural collaborators... and we Make Modern Happen!
Our ambition is to unlock the potential of our digital world so that organisations everywhere can innovate and thrive securely.
We aim to achieve this goal by bringing together the world’s most talented people and the most powerful technologies, combining them to address our customers' challenges and to build something stronger together.
If you share our vision, join us!
Right now, we are looking for a Senior SIEM Engineer to integrate our internal team, based in Porto.
Your responsibilities include:
Design, implement, and maintain security monitoring solutions across enterprise environments.
Develop, tune, and optimize detection use cases within Microsoft Sentinel and other SIEM platforms.
Engineer and onboard log sources, ensuring data quality, normalization, and operational reliability.
Create, maintain, and improve KQL detection rules, analytics, watchlists, and threat hunting queries.
Automate security operations using PowerShell, Bash, Python, Ansible, and other scripting technologies.
Deploy and manage SIEM infrastructure components, including Graylog, Logstash, Syslog-ng, Docker/Podman, and related services.
Perform security engineering activities to enhance monitoring coverage and detection capabilities.
Investigate and improve security telemetry, reducing false positives while increasing detection accuracy.
Collaborate with infrastructure, networking, and security teams to integrate new technologies into the monitoring ecosystem.
Develop technical documentation, implementation guides, and operational procedures.
Support vulnerability management initiatives by improving visibility and security monitoring.
Ensure security monitoring solutions follow industry best practices and operational standards.
You must have:
Proven experience administering and engineering Microsoft Sentinel environments.
Strong experience writing and optimizing KQL queries for detection engineering.
Solid experience with SIEM technologies such as Microsoft Sentinel and Graylog.
Hands-on knowledge of log collection technologies including Syslog-ng, Logstash, NXLog, Windows Event Forwarding (WEF), and Syslog.
Experience deploying and maintaining Linux-based security infrastructure.
Strong scripting and automation skills using PowerShell, Bash, Python, or Ansible.
Familiarity with Docker, Podman, and containerized deployments.
Proficiency in English to communicate effectively with technical and executive stakeholders.
We value:
Microsoft certifications such as SC-200 (Microsoft Security Operations Analyst) or AZ-500 (Azure Security Engineer).
Knowledge of threat modeling frameworks and detection methodologies like MITRE ATT&CK.
Strong analytical thinking for telemetry optimization and noise reduction.
Excellent communication skills to convey complex technical concepts to multi-disciplinary teams.
A proactive approach to continuous learning and adapting to cloud security tools.
Todos os Anúncios de Emprego estão sujeitos aos Terms of Service do GrabJobs. Permitimos que os usuários marquem postagens que possam estar em violação desses termos. Anúncios de emprego também podem ser marcados pela equipe de moderação do GrabJobs. No entanto, nenhum sistema de moderação é perfeito, e marcar uma postagem não garante que ela será removida.
Seja o primeiro a receber as últimas vagas Others Full-Time em Portugal.
Setup your job alert:
Ao ativar os alertas de emprego, eu concordo com os Terms & Privacy Policy do GrabJobs. Posso cancelar a inscrição nos alertas de emprego a qualquer momento.
Pular
Você atingiu seu número máximo de alertas de emprego.
O GrabJobs é o portal de empregos número 1 em Portugal, conectando você rapidamente a milhares de empregos de !
Encontre os melhores empregos de em Portugal, candidate-se com apenas 1 clique e consiga um emprego hoje!