Senior SIEM Engineer - ArcSight/Logstash at RiverSafe, United Kingdom, £Contract Rate

Contract Description

The Role

The Senior SIEM Engineer / Consultant is responsible for delivering advanced SIEM onboarding, complex data parsing, custom content development and high-level integration activities. Acting as a subject-matter expert during customer engagements, driving end-to-end technical delivery, solving challenging data-engineering problems within SIEM ecosystems, and advising on best practices for log onboarding, enrichment, performance tuning and scalable design.

 

Skills

  • Expertise with ArcSight (SmartConnectors, FlexConnectors, Logger, ESM, Transformation Hub).
  • Advanced Logstash experience, including:
  • Custom Grok patterns
  • Multi-pipeline setups
  • Logstash-to-SIEM output integrations
  • Performance tuning and pipeline resilience
  • Strong understanding of logging formats (CEF, JSON, Syslog, XML, CSV).
  • Proficiency with scripting languages: Python, Bash, PowerShell