Native Structured
{
"list_job": {
"id": "1872",
"isRemote": null,
"location": {
"city": null,
"state": null
},
"atsLocation": {
"city": "India",
"state": null,
"country": "India",
"province": "India"
},
"departmentId": "22312",
"locationType": "1",
"jobOpeningName": "Senior Syslog Engineer",
"departmentLabel": "6025 - SW Dev",
"employmentStatusLabel": "Contractor"
},
"detail_errors": [],
"detail_job_opening": {
"location": {
"city": null,
"state": null,
"postalCode": null,
"addressCountry": null
},
"datePosted": "2026-05-20",
"atsLocation": {
"city": "India",
"state": "India",
"country": "India",
"countryId": "100"
},
"description": "<p><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\"><em><span style=\"font-weight: inherit\">Securonix is leading the transformation of cybersecurity by helping organizations stay ahead of modern threats.</span><span style=\"font-weight: inherit\"> Security teams are no longer constrained by data or tools. They are constrained by speed, clarity, and confidence. Securonix was built to close that gap. Our mission is to enable security teams to decide and act faster across the entire threat lifecycle.</span></em></span></p>\n<p><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\"><em><span style=\"font-weight: inherit\"> <br>The Securonix Unified Defense SIEM is the industry’s first platform powered by agentic AI and designed with a human-in-the-loop philosophy. It unifies detection, investigation, and response in a single system. Advanced UEBA delivers deep behavioral insight across users, entities, and data. Native threat intelligence continuously enriches detections and investigations with real-world context. AI reinforces every layer of the platform while keeping accountability with the security team.</span></em></span></p>\n<p><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\"><em><span style=\"font-weight: inherit\"> <br>Built cloud-native for scale and performance, the platform enables real-time analytics, deep investigation, and automated response without compromise. Analysts gain faster access to relevant signals. Investigations move from days to minutes. Response becomes consistent and measurable. The result is a CyberOps experience that scales as threats evolve.</span></em></span></p>\n<p><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\"><em><span style=\"font-weight: inherit\"> <br>Securonix is recognized as a six-time Leader in the Gartner Magic Quadrant for SIEM and a Customers’ Choice on Gartner Peer Insights. The company has been featured by leading publications including WIRED, Dark Reading, and Fortune for its innovation and leadership in security operations. Organizations rely on the platform for always-available data, rapid search and investigation, continuously updated threat content, and a fully integrated Threat Detection, Investigation, and Response experience.</span></em></span></p>\n<p><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\"><em><span style=\"font-weight: inherit\"> <br>Backed by Vista Equity Partners, one of the world’s leading enterprise software investors, Securonix benefits from deep operational expertise and a long-term commitment to innovation and growth. This partnership strengthens our ability to scale the platform, accelerate product execution, and support customers as their security needs evolve.</span></em></span></p>\n<p><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\"><em><span style=\"font-weight: inherit\"> <br>With more than 1,000 customers worldwide, including a meaningful portion of the Fortune 100, Securonix operates at global scale. Our ecosystem of partners and managed security service providers extends that reach, helping organizations deploy and operate with confidence wherever they do business. What drives us is how we work.</span></em></span></p>\n<p><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\"><em><br></em></span></p>\n<ul>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\"><em><span style=\"font-weight: inherit\">We win as one team. We operate with trust, respect, and shared accountability.</span></em></span></li>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\"><em><span style=\"font-weight: inherit\">We are customer driven. Innovation is guided by real security challenges and measurable outcomes.</span></em></span></li>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\"><em><span style=\"font-weight: inherit\">We act with agility. Change is constant, and we stay aligned on purpose while adapting fast.</span></em></span></li>\n</ul>\n<p><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\"><em><span style=\"font-weight: inherit\"><br>That focus is how Securonix helps organizations move from reactive security to proactive, autonomous operations.</span></em></span></p>\n<p><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\"> </span></p>\n<p><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt; font-weight: bold\">About the Role:</span></p>\n<p><br></p>\n<p><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">We are looking for a highly experienced <span style=\"font-weight: bold\">SIEM / Syslog Expert</span> with deep hands-on expertise in <span style=\"font-weight: bold\">syslog-ng</span>, log ingestion pipelines, and large-scale event processing. This role requires strong understanding of <span style=\"font-weight: bold\">syslog internals, filtering strategies, performance tuning, and reliability engineering</span> to build efficient, scalable, and foolproof log ingestion systems.</span></p>\n<p><br></p>\n<p><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">You will play a key role in designing and optimizing <span style=\"font-weight: bold\">high-throughput syslog pipelines </span>handling thousands of events per second, ensuring accuracy, efficiency, and resilience.</span></p>\n<p><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\"> </span></p>\n<p><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt; font-weight: bold\">Key Responsibilities:</span></p>\n<p><br></p>\n<ul>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Design, implement, and optimize syslog-ng configurations for high-volume log ingestion environments.</span></li>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Develop and maintain complex filtering logic to ensure accurate routing, normalization, and noise reduction of logs.</span></li>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Analyze and improve log pipeline performance (CPU, memory, latency, throughput).</span></li>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Build efficient, scalable, and fault-tolerant syslog architectures.</span></li>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Troubleshoot issues related to:</span>\n<ul>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">High CPU/memory usage</span></li>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Message drops / backpressure</span></li>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Ordering and duplication issues</span></li>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Network/TCP/TLS ingestion problems</span></li>\n</ul>\n</li>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Optimize buffering, batching, and flow control mechanisms in syslog-ng.</span></li>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Work closely with SIEM platforms (e.g., Securonix, Splunk, ELK) to ensure seamless ingestion.</span></li>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Ensure log integrity, reliability, and completeness across the pipeline.</span></li>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Implement best practices for:</span>\n<ul>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Log parsing (RFC3164, RFC5424)</span></li>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Structured vs unstructured logs</span></li>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Secure syslog (TLS)</span></li>\n</ul>\n</li>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Perform capacity planning and load testing for syslog pipelines.</span></li>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Create test frameworks to validate syslog filters and configurations.</span></li>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Document standards, guidelines, and reusable configurations.</span></li>\n</ul>\n<p><br></p>\n<p><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt; font-weight: bold\">Required Skills & Expertise:</span></p>\n<p><br></p>\n<p><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt; font-weight: bold\">Core Skills:</span></p>\n<p><br><br></p>\n<ul>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Deep expertise in syslog-ng (mandatory).</span></li>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Strong understanding of syslog protocol internals:</span>\n<ul>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">RFC3164</span></li>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">RFC5424</span></li>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">TCP/UDP/TLS behavior</span></li>\n</ul>\n</li>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Expertise in designing syslog filters and routing logic.</span></li>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Strong experience with log parsing, pattern matching, and regex optimization.</span></li>\n</ul>\n<p><br></p>\n<p><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt; font-weight: bold\">Performance & Reliability:</span></p>\n<p><br><br></p>\n<ul>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Experience tuning:</span>\n<ul>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">log-iw-size, log-fifo-size</span></li>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">flush_lines, so_rcvbuf</span></li>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">disk-buffer and memory management</span></li>\n</ul>\n</li>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Understanding of backpressure, buffering, and flow control.</span></li>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Experience handling high EPS (10K–100K+) environments.</span></li>\n</ul>\n<p><br><br></p>\n<p><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt; font-weight: bold\">Troubleshooting:</span></p>\n<p><br><br></p>\n<ul>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Ability to debug:</span>\n<ul>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Message loss</span></li>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Duplicate events</span></li>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Out-of-order processing</span></li>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">High CPU/memory usage</span></li>\n</ul>\n</li>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Strong Linux debugging skills:</span>\n<ul>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">tcpdump, netstat, ss, top, strace</span></li>\n</ul>\n</li>\n</ul>\n<p><br><br></p>\n<p><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt; font-weight: bold\">SIEM & Data Pipelines:</span></p>\n<p><br><br></p>\n<ul>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Experience with one or more:</span>\n<ul>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Splunk / ELK / QRadar</span></li>\n</ul>\n</li>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Understanding of log ingestion pipelines (Kafka, Spark, etc.).</span></li>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Knowledge of data enrichment and normalization.</span></li>\n</ul>\n<p><br><br></p>\n<p><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt; font-weight: bold\">Good to Have:</span></p>\n<p><br><br></p>\n<ul>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Experience with Kafka-based ingestion pipelines.</span></li>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Knowledge of distributed systems and streaming architectures.</span></li>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Experience with cloud environments (AWS).</span></li>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Familiarity with security logs (firewalls, IAM, endpoint, network devices).</span></li>\n</ul>\n<p><br><br></p>\n<p><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt; font-weight: bold\">What We’re Looking For:</span></p>\n<p><br><br></p>\n<ul>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Someone who can look at a syslog-ng config and immediately identify inefficiencies.</span></li>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Deep understanding of how filters impact performance and correctness.</span></li>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Ability to design clean, maintainable, and scalable configurations.</span></li>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Strong ownership mindset and problem-solving skills.</span></li>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Ability to make systems efficient, resilient, and foolproof.</span></li>\n</ul>\n<p><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\"> </span></p>\n<p><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt; font-weight: bold\">Key Outcomes Expected:</span></p>\n<p><br></p>\n<ul>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Reduced log ingestion latency and resource usage.</span></li>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Optimized filtering with minimal false positives/negatives.</span></li>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Stable, scalable syslog pipelines under high load.</span></li>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Zero/near-zero log loss.</span></li>\n<li><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\">Well-documented and maintainable configurations.</span></li>\n</ul>\n<p><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\"> </span></p>\n<p><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\"><em>Securonix, Inc. provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, gender, sexual orientation, gender identity, national origin, age, disability, genetic information, marital status, amnesty or status as a covered veteran in accordance with applicable federal, state and local laws. Securonix complies with applicable state and local laws governing non-discrimination in employment in every location in which the company has facilities. This policy applies to all terms and conditions of employment, including hiring, placement, promotion, termination, layoff, recall, and transfer, leaves of absence, compensation and training.</em></span></p>\n<p><br></p>\n<p><span style=\"font-family: arial, helvetica, sans-serif; font-size: 12pt\"><em>Securonix expressly prohibits any form of unlawful employee harassment based on race, color, religion, gender, sexual orientation, national origin, age, genetic information, disability or veteran status. Improper interference with the ability of Securonix employees to perform their expected job duties is absolutely not tolerated.</em></span></p>",
"compensation": null,
"departmentId": "22312",
"locationType": "1",
"seekPromoted": false,
"jobCategoryId": null,
"jobOpeningName": "Senior Syslog Engineer",
"departmentLabel": "6025 - SW Dev",
"jobOpeningStatus": "Open",
"minimumExperience": "Experienced",
"jobOpeningShareUrl": "https://securonix.bamboohr.com/careers/1872",
"employmentStatusLabel": "Contractor"
}
}