跳到内容

通用信息

地点:Guildford, Surrey, United Kingdom 
角色 ID
207779
工作人员类型
Regular Employee
工作室/部门
CTO - Security
弹性工作安排
Hybrid

描述和要求

我们是一支全球化团队,由创作者、剧作家、技术专家、体验创作者和创新者等角色组成。我们相信,精彩的游戏与体验始于与玩家和社区同样多样化的团队。在 Electronic Arts,你的想象力是对你的唯一限制。

The Security Data Engineer position is the subject matter expert for our Security Information and Event Management (SIEM) system and leads efforts to aggregate and enrich data for to support our security efforts. Reporting into the Enterprise Security Engineering team, you will engineer new features for our SIEM and detections platform and works with security analysts to understand their needs and builds solutions to enhance their ability to find data and build security detections. 

You will onboard new data sources into our SIEM to support security detections. This will encompass, analyzing new data, mapping to a common information model, and optimizing storage. You will inspire creativity in data analytics and data visualizations, explore cloud federated data models, and explore the use of AI to mine data from large data lakes. You will maintain complex data flows that support the SIEM, detections, and automations platforms. Likewise, it will build monitoring systems for the data flows and respond to and troubleshoot problems. You will work with operations staff from across the enterprise to ensure the flow of critical data. 

The Security Data Engineer will work on the the security and safety of EA by building the systems that forms the "eyes and ears" of our security. You will solve challenging and complex problems like searching for security anomalies amongst extremely large data sets and correlating them across sources from every corner of the enterprise. You'll work in a dynamic team with a very clear vision and purpose to make a difference in security. 


Skillsets: 

• At least 5 years experience with basics of security 

• Proficient with Splunk Enterprise Security 

• Understanding of other SIEM platforms a plus 

• The ability to write optimized SPL code 

• Understanding of security detections a plus 

• Proficient with Linux from an administration standpoint

• Proficient with cloud platforms (AWS, Azure, etc.) 

• Familiarity with PowerShell and Python for data transformations • Experience with ETL tools 

• Experience with Ruby/Chef is optional 

• Experience with awscli or terraform equivalent is helpful 

• SOAR experience is beneficial 

• Understanding of computer networks