CrawlJobs Logo

SIEM Content Development Specialist

vodafone.com Logo

Vodafone

Location Icon

Location:
United Kingdom , Newbury

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

The SIEM Content Development Specialist plays a critical role in advancing the Cyber Security Operations Center’s ability to detect and respond to cybersecurity incidents. This role focuses on designing and developing cutting-edge detection content leveraging a wide array of security technologies and telemetry to identify malicious activity and guide security analysts through effective response playbooks. Working within a threat-led framework, the specialist collaborates across teams to translate threat intelligence into actionable detection logic and response workflows. The position demands strong technical acumen, analytical thinking, and problem-solving capabilities, along with the ability to communicate clearly with peers, leadership, and cross-functional stakeholders.

Job Responsibility:

  • Contribute to continuous improvement initiatives across multiple technologies by developing and refining content that enhanced threat detection and response capabilities
  • Contribute to the development and optimisation of threat detection content, including the tuning of threat and vulnerability management technologies and the continual refinement of SIEM rules and logic to enhance detection accuracy and operational performance
  • Lead and contribute to the optimisation and modernisation of SIEM content, supporting the adoption of next-generation SIEM technologies and cloud-native security tools
  • Manage the lifecycle of detection content, including development, testing, release, and retirement, using version control and documentation best practices
  • Collaborate with DevOps/SecOps teams to integrate security content into broader CI/CD workflows
  • Collaborate with the CSOC Manager to support improvements in security operations through effective content contributions
  • Support security event analysis by participating in and may drive security event analysis activities to address current cyber threats
  • Assist in threat response activities, providing analytical input from a blue team perspective to help identify potential threat group behaviours
  • Contribute to the creation of cyber security reports and advisories, ensuring timely and accurate dissemination to key stakeholders
  • Participate in residual risk assessments, supporting post-incident analysis and the documentation of operational and technical lessons learned
  • Collaborating with data owners and customers on understanding data sources and use cases and successfully translating requirements to actionable content

Requirements:

  • Minimum of 2-5 years’ experience in SIEM content (rule logic and code) development role
  • Minimum of 2 years of SOC analyst experience (Level2 or above) required
  • In depth and extensive hands-on experience in security event analysis, create and refine SIEM/EDR rules and deliver efficiency within the SIEM and all other technologies used within the team
  • Deep knowledge of IPv4/IPv6, TCP networking protocols
  • Deep knowledge of Windows/Linux operating systems
  • Exceptional working knowledge of security technologies such as SIEM (ArcSight, Sentinel, QRadar, LogRhythm, Splunk), EDR (Microsoft Defender, FireEye, Tanium), IDS/IPS, firewalls, proxies, web application firewalls, anti-virus, etc.
  • Comprehensive understanding of Window Security Event logs and Syslog
  • Excellent familiarity with endpoint/perimeter security attack vectors and detection (blue/purple teaming)
  • Excellent familiarity with standard security frameworks such as MITRE, cyber kill chain and APT campaign strategies
  • Outstanding knowledge of cloud platforms such as Azure, O365, Google cloud, AWS, Oracle
  • Experience with modern SIEM platforms, including cloud-native or hybrid solutions
  • Hands-on experience with CI/CD pipelines and automation tools for security content deployment
  • Proficiency in version control systems (e.g., Git) for managing SIEM content
  • Excellent working knowledge of regular expression development
  • Kusto or SQL knowledge, including rule/query optimisation
  • Proven ability to prioritise workload, meet deadlines and utilise time effectively
  • Good interpersonal and communication skills, works effectively as a team leader and the ability
  • Experience in security event analytics, for example Elastic, Azure Sentinel or Splunk
  • 3 years or above related experience
  • Excellent verbal and written communication skills
  • Highly disciplined and motivated, able to work independently or under direction
  • Deep understanding of threat actor techniques and tools

Nice to have:

  • Scripting and programming experience is highly desirable
  • Demonstrable experience in critical thinking and data or logical analysis
  • Knowledge of: typical security devices such as firewalls, Intrusion detection system, anti-virus, anti-spam, Cyber threat concepts e.g. cyber kill chain, attack methods, threat actors
  • Cloud systems and Windows and Linux OS
  • Experience with investigating intrusions in Linux and cloud environments
What we offer:
  • Yearly bonus: 10%
  • Annual leave: 28 days + bank holidays + the opportunity to buy/sell/carry over 5 days/year
  • Charity days: 5 days/year
  • Maternity leave: 52 weeks: the first 13 weeks are fully paid, followed by 26 weeks of half pay
  • Private pension: You can contribute up to 5% of your basic pay with 2:1 matching from Vodafone up to 10%
  • Access to: private medical, private dental, free health assessments, share save scheme
  • Additional discounts: Vodafone retail, gym, cinema, cycle to work, season ticket loan

Additional Information:

Job Posted:
January 21, 2026

Employment Type:
Fulltime
Work Type:
Hybrid work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for SIEM Content Development Specialist

Threat Analyst

The Threat Analyst is responsible for identifying, investigating, and responding...
Location
Location
United States , Orlando
Salary
Salary:
Not provided
threatlocker.com Logo
ThreatLocker
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 3 years of experience in Information Technology with 1 year of specialized work in any of the following IT domains: Active Directory
  • Application Development
  • Network Administration
  • Information Security
  • Experience with virtual machines on VirtualBox, Workstation Pro (Type 2 hypervisor)
  • Bare-metal (type 1) hypervisor experience (ESXi, HyperV) ++
  • Foundational knowledge of Active Directory infrastructure
  • Proficient in PowerShell and Python
  • Strong understanding of foundational Windows OS components: Windows Firewall, Windows Event Logs, Windows file structure, PowerShell
  • Strong understanding of networking and security principles: RFC 1918, DNS, well-known ports, TCP/IP, CIA triad and its relevance to Information Security, AAA Framework
Job Responsibility
Job Responsibility
  • Monitor security tools and systems (SIEM, IDS/IPS, EDR, etc.) for suspicious activity or breaches
  • Analyze security alerts and data to identify potential threats, vulnerabilities, and compromises
  • Build and refine detection capabilities using security tools, threat intelligence, and machine learning models
  • Lead and participate in the response to security incidents (investigating, containing, eradicating, and recovering from threats)
  • Collaborate with cross-functional teams to develop incident handling processes and ensure timely remediation
  • Create detailed post-incident reports, including root cause analysis and recommendations for improvements
  • Develop automated tools and scripts to enhance security detection capabilities and streamline threat detection workflows
  • Maintain and enhance detection tools, including writing custom SNORT, SIGMA, and YARA rules, and updating rulesets in accordance with new threats
  • Conduct forensic analysis and threat hunting to identify malicious activity
  • Review logs from various systems (e.g., firewalls, servers, network devices) to uncover unauthorized activities
  • Fulltime
Read More
Arrow Right
New

AI Product Manager

We are seeking an experienced AI Product Manager to join our fast-growing team. ...
Location
Location
United States , Virginia Beach
Salary
Salary:
Not provided
ecpi.edu Logo
ECPI University
Expiration Date
February 03, 2026
Flip Icon
Requirements
Requirements
  • 3+ years of product management experience, preferably in SaaS, AI, or automation products
  • Demonstrated success managing GenAI/ML-powered/AI agents products from concept to launch
  • Strong technical acumen and experience working with data science and engineering teams
  • Excellent communication, collaboration, and client management skills
  • Analytical mindset with a passion for data-driven decision-making
  • Experience working in agile environments and managing multiple priorities
Job Responsibility
Job Responsibility
  • Product Ownership: Lead the strategy, roadmap, and execution for AI-powered apps, including ticket triage, ticket QA, and sentiment analysis, ensuring alignment with company goals and client needs
  • Cross-functional Collaboration: Work closely with engineering, data science, design, marketing, and sales to deliver high-quality products on schedule
  • Client-Centric Development: Engage with MSP clients and internal stakeholders to gather requirements, validate product value, and ensure exceptional user experience
  • Market Analysis: Monitor industry trends, competitor offerings, and customer feedback to inform product strategy and feature prioritization
  • Performance Tracking: Define and track key product metrics, using data-driven insights to guide product improvements and report on outcomes
  • Documentation & Training: Ensure clear product documentation and support materials are available for both internal teams and clients
  • Prototyping & Iteration: Lead rapid prototyping and MVP releases, especially for new AI-driven features and apps, leveraging client feedback for continuous improvement
  • Fulltime
!
Read More
Arrow Right
New

Front of House Team Member

Front of House Team Member at Slug And Lettuce, Southampton. Part of Stonegate G...
Location
Location
United Kingdom , Southampton
Salary
Salary:
12.31 GBP / Hour
slugandlettuce.co.uk Logo
Slug And Lettuce
Expiration Date
February 24, 2026
Flip Icon
Requirements
Requirements
  • Ability to connect with the team and help create a positive experience for guests
Job Responsibility
Job Responsibility
  • Help prepare and serve food and drinks
  • Offer friendly recommendations to enhance the guest experience
  • Contribute to maintaining a clean and safe environment
What we offer
What we offer
  • Reward Card via the MiXR App – 25% off food and drink for you and ALL your friends across our Managed Pubs
  • Stonegate Xtra Rewards – Online benefits portal offering discounts across the High Street and other retailers
  • VIP entry to our Pubs and Bars
  • Stonegate Hotel Discounts
  • Flexible working
  • Corporate Discounted Rates at David Lloyd and PureGym
  • Discounted Dental Insurance
  • Stream – Early access to your earned wages
  • Parttime
Read More
Arrow Right
New

Product Manager

We're on the lookout for a superstar Product Manager to join the team. As a Prod...
Location
Location
United Kingdom , White City
Salary
Salary:
Not provided
riverisland.com Logo
River Island
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Strong commercial mindset
  • Thrive in a fast-paced, data-driven retail environment
  • Passionate about fashion
  • Natural flair for visual merchandising and creating stunning store layouts
  • Excellent problem-solving skills
  • Can quickly adapt to shifting priorities
  • Both creative and analytical
  • Able to turn sales data into actionable insights
  • Inspiring leader who can motivate and engage a team
  • Exceptional attention to detail
Job Responsibility
Job Responsibility
  • Deliver great product placement and 'wow' wearable outfits
  • Consistently deliver strong visual standards with the customer journey at the forefront
  • Confidently duty manage in all areas of the store operation including service, people, and operations
  • Empower the team within store to deliver for the customer
  • Full understanding of commercial tools and how to use to drive actions to support store performance
  • Support the Store Leader to deliver on store KPIs (sales, stock loss, payroll, conversion, voice of customer, RFID, and people KPIs)
  • Support the management of store operations, including compliance with health & safety standards
  • Support the development of the store team
What we offer
What we offer
  • Generous 50% staff discount
  • Uniform allowance
  • Discounts, benefits, financial advice, wellbeing solutions through Reward Gateway
  • Kindness Cupboards for basic food & hygiene products
  • Support from Retail Trust
  • Enhanced maternity, paternity, adoption & fertility treatment
  • Give as you earn scheme
  • 'Giver Island' day each year with matched funding
  • Progression focus
  • Support with upskilling through on the job training and qualifications
  • Fulltime
Read More
Arrow Right
New

Computer Science and Engineering AI & ML Intern

The Internship is a 10-week summer experience where participants complete resear...
Location
Location
United States
Salary
Salary:
Not provided
ecpi.edu Logo
ECPI University
Expiration Date
February 04, 2026
Flip Icon
Requirements
Requirements
  • Must be a US Citizen
  • Must have graduated from or enrolled in a MSI
  • Must be eligible for security clearance based on position requirements
  • Enrolled in an undergraduate STEM program and have a current cumulative GPA of 3.0 on a 4.0 scale
Job Responsibility
Job Responsibility
  • Develop and construct generative AI models for a range of project topics
  • Create a user-friendly interactive interface
  • Establish a chat box for various projects
  • Fulltime
!
Read More
Arrow Right
New

Glass Collector

At Slug And Lettuce, we are looking for Glass Collectors who want to work as par...
Location
Location
United Kingdom , Liverpool
Salary
Salary:
12.31 GBP / Hour
slugandlettuce.co.uk Logo
Slug And Lettuce
Expiration Date
February 24, 2026
Flip Icon
Requirements
Requirements
  • No experience needed
  • Ability to work as part of a team
  • Ability to help create a positive experience for guests
Job Responsibility
Job Responsibility
  • Welcome and engage with the guests at Slug And Lettuce
  • Contribute to maintaining a clean and safe environment for guests and team members
  • Maintain a clean and safe environment for everyone
What we offer
What we offer
  • Reward Card via the MiXR App – 25% off food and drink for you and ALL your friends across our Managed Pubs
  • Stonegate Xtra Rewards – Online benefits portal offering discounts across the High Street and other retailers
  • VIP entry to our Pubs and Bars
  • Stonegate Hotel Discounts
  • Flexible working
  • Corporate Discounted Rates at David Lloyd and PureGym
  • Discounted Dental Insurance
  • Stream – Early access to your earned wages
  • Fulltime
Read More
Arrow Right
New

Lead Scrum Master

The Lead Scrum Master role involves acting as a servant leader for Agile Release...
Location
Location
India , Bangalore
Salary
Salary:
Not provided
nttdata.com Logo
NTT DATA
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Minimum of 5 years of experience in Agile environments
  • Strong understanding of Agile principles and the SAFe framework
  • Experience with Lean-Agile concepts and value stream optimization
  • Strong communication, facilitation, and negotiation skills
  • Excellent problem-solving and risk management abilities
  • Ability to coach and mentor teams and individuals
Job Responsibility
Job Responsibility
  • Act as a servant leader for the ART, coaching teams, Scrum Masters, and Product Owners in Lean-Agile principles and practices
  • Organize and facilitate Program Increment (PI) Planning sessions to guide teams in planning their work for the next 8-12 weeks
  • Facilitate other important ART events and ceremonies, including Scrum of Scrums, Inspect and Adapt sessions, and retrospectives
Read More
Arrow Right
New

Intern Business Development - Customer Delivery Europe

We are looking for an Intern (f/m/x) to join our Customer Delivery Europe Team. ...
Location
Location
Germany , Berlin
Salary
Salary:
Not provided
auto1.com Logo
AUTO1 Group
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • You are a student or recent graduate with a strong academic background in business or business-relevant fields
  • First experience in consulting, investment banking or high-growth start-up
  • Excellent analytical skills, structured way of thinking, exceptional attention to details
  • Ability to thrive in a fast-paced environment and deliver measurable results
  • Self-starter mentality with organizational and interpersonal skills
  • Highly polished communication skills in English
  • other European languages are a strong plus
Job Responsibility
Job Responsibility
  • Support the global Customer Delivery task force strategically and operationally on key topics such as optimizing our key reporting analyses, preparing global executive reports, and implementing cross-functional process improvements
  • Gain deep insights into how to analyze and optimize the processes in our dynamic work environment and ensure a smooth process flow across projects
  • Develop and prepare training materials and standard operating procedures for our international teams across Europe
What we offer
What we offer
  • Our dynamic work environment constantly offers new challenges for personal growth, as everything you do has a direct business impact
  • You get the chance to develop yourself personally and will be supported in achieving your goals through frequent feedback talks
  • An international working environment with exciting national and international projects
  • You work in Berlin’s trendy Kreuzberg district with several different options for lunch and after-work drinks with your team
  • Join our A1 Talents Program, get a fair salary and experience our AUTO1 world cross functionally through special internal events
Read More
Arrow Right