Internship: SIEM Engineering Neu

in Genf
Praktikum nicht angegeben Student
  • Job Identification: 2293
  • Posting Date: 21.02.2025
  • Job Schedule: Full time
  • Company: Senthorus SA

About Us

Senthorus provides organizations with a state-of-the art solution to increase their security in the cloud and on their internal IT. Our 24/7 operations out of our Security Operations Centers (SOCs) located in Switzerland, leverage BlueVoyant’s expertise while customers can be confident that all data is maintained and operated securely within Swiss borders - offering peace of mind without sacrificing oversight or effectiveness into cyber defense strategy.

Job Description

Description

  • Detection-as-Code: You will implement an automated pipeline leveraging GitLab, Splunk, Sentinel, and Sigma to streamline the creation, validation, and deployment of detection rules.
  • Rule Linter: Develop a custom linter to ensure detection rules follow the correct rule format and adhere to best practices.
  • Basic Detection Rules: Create and maintain a library of standard detection rules for common threats, enabling faster and more consistent threat detection across environments..

Objectives

  • Automate Detection Rule Deployment: Design and configure a pipeline that automatically validates, packages, and deploys Sigma-based detection rules to Splunk and Sentinel.
  • Ensure Rule Quality: Develop a linter that checks syntax, formatting, and potential rule conflicts, promoting reliability and consistency of detection rules.
  • Enhance Security Posture: Provide a solid baseline of detection rules to mitigate common threats, and document best practices to facilitate knowledge sharing within the team.

Our offer

  • A dynamic work and collaborative environment with a highly motivated multi-cultural and international sites team
  • The chance to make a difference in peoples’ life by building innovative solutions
  • Various internal coding events (Hackathon, Brownbags), see our technical blog
  • Monthly After-Works organized per locations

Skills required

  • Final-year student (Master’s level) in Computer Science, Software Engineering, Cybersecurity, or a related field.
  • Practical knowledge of GitLab (CI/CD pipelines) and experience with log management or SIEM solutions (Splunk, Sentinel, etc.).
  • Familiarity with Sigma rules or similar threat detection frameworks.
  • Proficiency in scripting (e.g., Shell, Python) and version control (Git).
  • Strong problem-solving skills, autonomy, and a willingness to learn in a fast-paced environment.
Sprich uns an! Unser Recruiting Team freut sich darauf, Dich kennenzulernen! Kontakt
Am 24.04.2025 veröffentlicht. Originalanzeige