Padmi

Specialist II - Information Security (Cribl Engineer)

HyderabadPosted 3 months ago
Software engineeringMid-levelFull Time; Regular
Apply at UST

Opens the source posting on shine.com

Source description

About the role

View original

As a Cribl Engineer, your role involves designing, deploying, and operating telemetry data pipelines using Cribl Stream in a cloud-centric environment. Your primary focus will be on enabling reliable, scalable, and cost-efficient log ingestion and routing across SIEM and observability platforms to support detection engineering, audit, and operational excellence objectives. Key Responsibilities: - Design, build, and maintain Cribl Stream pipelines including routes, parsing, filtering, and transformation. - Manage log ingestion and routing to downstream platforms such as Google SecOps, Splunk, or other SIEMs. - Optimize pipelines for performance, cost efficiency, and reliability. - Troubleshoot and resolve data flow, ingestion, and pipeline issues in production. - Implement automation using infrastructure-as-code tools like Terraform, CloudFormation, and CI/CD pipelines. - Operate within AWS and/or multi-cloud environments to support scalable telemetry processing. - Integrate Cribl with cloud-native services and enterprise systems. - Collaborate with Detection Engineers, DREs, and platform teams to ensure data availability aligns with detection and compliance use cases. - Monitor pipeline health, ensuring adherence to operational SLAs and reliability standards. - Apply security and compliance best practices for log handling and transmission. - Experience supporting large-scale migrations is highly desired, such as SIEM or log pipeline transformations. Required Qualifications: - Hands-on experience with Cribl Stream, including pipelines, routes, packs, and edge/workers. - Experience with log management, observability, and telemetry pipelines. - Strong knowledge of log formats and parsing like JSON, syslog, and regex. - Experience with cloud platforms, with preference for AWS and acceptance of Azure/GCP. - Solid understanding of Linux/Unix environments. - Scripting experience in Python and Bash. - Experience troubleshooting data ingestion and pipeline performance issues. Preferred Qualifications: - Experience with SIEM platforms like Google SecOps/Chronicle, Splunk, Elastic. - Familiarity with containerization/orchestration tools such as Docker and Kubernetes. - Experience with infrastructure-as-code and deployment automation. - Exposure to high-volume telemetry environments and cost optimization strategies. - Understanding of security telemetry, detection engineering, or SOC workflows. Key Outcomes / Measures of Success: - Reliable and consistent log ingestion with minimal data loss. - Improved pipeline performance and reduced ingestion cost. - Timely resolution of data flow and onboarding issues. - Scalable and maintainable cloud-based telemetry architecture. - Alignment of telemetry pipelines to detection, audit, and compliance requirements. Skills: siem, python, linux, AWS security (Note: The company details were not included in the provided Job Description) As a Cribl Engineer, your role involves designing, deploying, and operating telemetry data pipelines using Cribl Stream in a cloud-centric environment. Your primary focus will be on enabling reliable, scalable, and cost-efficient log ingestion and routing across SIEM and observability platforms to support detection engineering, audit, and operational excellence objectives. Key Responsibilities: - Design, build, and maintain Cribl Stream pipelines including routes, parsing, filtering, and transformation. - Manage log ingestion and routing to downstream platforms such as Google SecOps, Splunk, or other SIEMs. - Optimize pipelines for performance, cost efficiency, and reliability. - Troubleshoot and resolve data flow, ingestion, and pipeline issues in production. - Implement automation using infrastructure-as-code tools like Terraform, CloudFormation, and CI/CD pipelines. - Operate within AWS and/or multi-cloud environments to support scalable telemetry processing. - Integrate Cribl with cloud-native services and enterprise systems. - Collaborate with Detection Engineers, DREs, and platform teams to ensure data availability aligns with detection and compliance use cases. - Monitor pipeline health, ensuring adherence to operational SLAs and reliability standards. - Apply security and compliance best practices for log handling and transmission. - Experience supporting large-scale migrations is highly desired, such as SIEM or log pipeline transformations. Required Qualifications: - Hands-on experience with Cribl Stream, including pipelines, routes, packs, and edge/workers. - Experience with log management, observability, and telemetry pipelines. - Strong knowledge of log formats and parsing like JSON, syslog, and regex. - Experience with cloud platforms, with preference for AWS and acceptance of Azure/GCP. - Solid understanding of Linux/Unix environments. - Scripting experience in Python and Bash. - Experience troubleshooting data ingestion and pipeline performance issues. Preferred Qualifications: - Experience with SIEM platforms like Google SecOps/

One address, no account. We’ll tell you when matching roles go live.

More at UST

Related open roles

View all roles