Share this Job

SIEM Content Developer (m/w/d)

Date: 07-Mar-2023

Location: Hamburg, HH, DE, 22297

Company: Telefonica S.A.

Contract type: full-time, unlimited
Location: Munich, Düsseldorf, Berlin (Teltow), Nuremberg, Hamburg 
Entry: At the earliest possible date


Working anywhere. We work where it is most productive. After a successful application process, we offer you the opportunity to work anywhere in Germany. At Telefónica, we rely on a flexible hybrid model that includes the benefits of both remote work and on-site work. You will be assigned to the nearest Telefónica location based on where you live. We will discuss further details with you during the application process.


Who we are

We are O2 Telefónica - with our mobile brands we connect millions of people and offer our customers mobile freedom in the digital world. As a leading telecommunications provider, we are playing a key role in shaping digitisation in Germany. Our approximately 7,400 employees in Germany drive the transformation forward every day - in our own company as well.


Telefónica is one of the top employers in Germany and is part of the global telecommunications group Telefónica S.A. with 110,000 committed employees worldwide.  

Become part of our unique team and let's make a difference together! 


Job Description

The SIEM Content Developer is to be a key role in the detection engineering process. As a SIEM Content Developer you will develop cyber threat detection rules in the SIEM system to detect new and sophisticated cyber threads in the company digital infrastructure.


What to expect

  • Lead the Detection Engineering process in the Cyber Defense Center
  • Develop Advanced cyber threat detection rules in SIEM System (Splunk/Elastic)
  • Support the Onboarding of the new data sources in to SIEM System (Splunk/Elastic)
  • SIEM Dashboards and Reports Generation
  • Log parsing and log normalization
  • Develop Log optimization and modification rules in the Log Stream Solution
  • Develop and support Integrations between SIEM and other security solutions.
  • Working with other internal Teams for evidence gathering and helping with business-critical incidents 


What you bring

  • Bachelor’s degree in Computer Science / Information Technology or equivalent experience
  • Relevant industry-recognized security certifications from SANS, EC-Council, ISACA, SPLUNK, Elastic etc.
  • 5+ years of experience in information security fields (e.g. security architecture, security engineering, and security operations) and SIEM Content Development (Splunk/Elastic)
  • Content development by using code repositories (e.g., GitLab/GitHub) and deployment via CI/CD pipelines
  • Knowledge of security frameworks including MITRE Att&CK, NIST, etc.
  • Strong understanding of enterprise-level information systems and technology architectures, expertise in network security, cryptography, virtualization and cloud security
  • Ability to review, edit, and manage business critical documentation, requiring strong written and verbal communication skills
  • Ability to learn and retain information on multiple products
  • Detailed-oriented with strong communication, Interpersonal and organizational skills.
  • Strong written and verbal communication in English and/or in Germany


What we offer

Modern, flexible working environment: Work wherever you want within Germany. Whether in home office or one of our well-equipped offices. We offer you maximum flexibility to organize your working day.

Training & Development: Everthing you need for your individual growth. With a personal development plan, learning journeys and the possibility of job rotations, you will reach your goals with us – according to our guiding principle „connect, learn and move2grow".

Financial benefits: A smartphone for business and private use, as well as the possibility to provide for partners, friends and family via a credit balance, is a given. In addition, you benefit from a variety of corporate benefits.

Health: Our "Feel Good" program keeps your body and mind in balance. Among other things, we offer fitness classes, nutritional counseling, and programs to improve workplace ergonomics and work-life balance.

Social engagement: We are also involved in social projects outside of our day-to-day work. You can support social projects through volunteering days / holidays or charity runs.


How to apply and what else you should know 

Convince us with your meaningful curriculum vitae as well as corresponding certificates. You do not need a letter of motivation with us. Please note that applications are only possible via our applicant portal and applications by e-mail cannot be considered. 

Do you have questions about our application process and are you interested in further information about the position? Please reach out to our Talent Operations Team ( 


In case of same qualification, applicants (m/f/d) with severe disability will be preferred. All gender are equally welcome.