Sr. Security Engineer - SIEM & NDR

KLAAnn Arbor, MI
22hHybrid

About The Position

The Cybersecurity group at KLA is involved in every aspect of the global business. The KLA Cybersecurity group defends against cyber-attacks and provides cybersecurity tools, incident response services and assessment capabilities to safeguard the environments that support the essential operations of KLA. We are passionate about identifying adversarial activities and anticipating a wide variety of threats to strengthen our defenses and the overall protection of KLA Intellectual Property. We are seeking an experienced and highly motivated Senior Security Engineer to join our Cyber Operations team. This role will focus on the engineering, implementation, and operational support of our Security Information and Event Management (SIEM) and Network, Detection & Response (NDR) platforms. The successful candidate will play a critical role in advancing our organization's threat detection and response capabilities through expert management of security technologies and collaborative engagement with various cybersecurity stakeholders.

Requirements

  • Bachelor’s degree in Computer Science, Information Security, or a related field, or equivalent professional experience
  • Five (5) years of hands‑on cybersecurity engineering experience focusing on SIEM platforms in large enterprise environments
  • Three (3) years of proven experience in Google SecOps SIEM administration, engineering, and integration
  • Three (3) years of experience working with Vectra or a similar NDR platform
  • Expert‑level understanding of security telemetry, including logs from firewalls, endpoints, cloud services, identity providers, and applications

Responsibilities

  • Design, implement, and maintain the Google SecOps SIEM platform, including log ingestion, parsing, rule creation, and dashboard development.
  • Leverage modern data‑pipeline management and log‑reduction technologies to improve data ingestion efficiency and optimize storage management.
  • Build and maintain system health checks, high‑availability configurations, and reliable log‑pipeline workflows.
  • Collaborate with customers to understand their security operations needs and develop tailored SIEM strategies and roadmaps.
  • Enable customers to fine‑tune detection logic, correlation rules, and alerting mechanisms to maximize effectiveness and minimize noise.
  • Integrate SIEM platforms with broader security ecosystems including SOAR, EDR, threat intelligence, and cloud‑native security tools.
  • Continuously optimize detection rules, use cases, UEBA analytics, and SOAR playbooks to enhance threat visibility and reduce false positives.
  • Develop and maintain documentation for SIEM/NDR architecture, configurations, and operational procedures.
  • Monitor, troubleshoot, and resolve issues related to SIEM and NDR platform availability, performance, and data quality.
  • Stay current with emerging threats, vulnerabilities, and advancements in security technologies to recommend improvements.
  • Support compliance and audit activities by ensuring proper log retention, data integrity, and access controls

Benefits

  • KLA’s total rewards package for employees may also include participation in performance incentive programs and eligibility for additional benefits including but not limited to: medical, dental, vision, life, and other voluntary benefits, 401(K) including company matching, employee stock purchase program (ESPP), student debt assistance, tuition reimbursement program, development and career growth opportunities and programs, financial planning benefits, wellness benefits including an employee assistance program (EAP), paid time off and paid company holidays, and family care and bonding leave.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service