Assignment context: wants to scale out the usage of logging by normalizing raw logging to a normalized schema. The normalization is done using Microsoft tooling as part of the Azure landscape using a manual process. The normalization configuration needs to be placed within the Azure Monitor data pipeline and requires identification of fields and values, next to transformation to be done using KQL and Regex concepts. These need to be generated based-on a small sample of logging and applied directly within the data pipeline .
responsibilities :
Testing the security log normalization
Applying of the configuration in the pipeline
Validation of the security log normalization with the relevant stakeholders
Ensuring data quality over-time including preventing dropping of security logs
requirements-expected :
Data savviness. You know your way with data and getting all the insights out. Keen on finding the ‘real’ problem that needs to be solved. Relentless but friendly, following processes;
Communication and Data Visualization: Knowing Your Audience;
Data engineering. Implementing data analytics from source to consumption. Knowledge of Azure related pipelines is preferred.
Understanding of security logging in diverse formats and schema’s
Data Wrangling. KQL, Regex, Grok
Experience with SIEM solutions and detection engineering (3 years or more)
And it would be great if you have some typical domain knowledge too like:
Internet technology: networks, web applications, http, json, xml;
Information security: identity and access, cybercrime, cyber security;
Banking or financial sector;
Agile-scrum way of working.
offered :
We are open to the employment form according to your preferences
Work with experienced and engaged team, willing to learn, share knowledge and open for growth and new ideas
Hybrid working system (2 days a week in Kraków office)
Mindbox is a dynamically growing IT company, but still not a large one – everybody can have a real impact on where we are going next
We invest in developing skills and abilities of our employees
We have attractive benefits and provide all the tools required for work f.e.computer
Interpolska Health Care, Multisport, Warta Insurance, training platform (Sages)
benefits :
sharing the costs of sports activities
private medical care
sharing the costs of professional training & courses