Senior Security Data Engineer

F5 F5 · Enterprise · Hyderabad, India

Senior Security Data Engineer responsible for designing, building, and operating data pipelines that ingest and integrate security and IT operations data from various sources into enterprise data platforms. This role focuses on data engineering within a security operations context, partnering with relevant teams to deliver reliable data for investigations, reporting, and automation.

What you'd actually do

  1. Design, implement, and maintain scalable data pipelines for ingesting logs and events from CrowdStrike, ServiceNow, and other security/IT systems into centralized storage and analytics platforms.
  2. Build and manage robust API-based integrations (REST/JSON) to collect data from CrowdStrike Falcon APIs, ServiceNow APIs, and other SaaS tools on scheduled and near real-time cadences.
  3. Develop ETL/ELT processes to clean, normalize, and join disparate data sources (raw logs, ticketing, endpoint telemetry, CMDB) into curated security-domain datasets optimized for analytics and reporting.
  4. Model and maintain schemas, views, and tables that serve as the foundation for Tableau dashboards, KPIs, SLA reporting, and security metrics.
  5. Implement alerting logic and data structures that support operational dashboards supporting alerting and monitoring based on combined CrowdStrike, ServiceNow, Nimbus and log data.

Skills

Required

  • Python
  • SQL
  • Log parsing & normalization
  • SOAR automation
  • Threat intel ingestion
  • ETL/ELT jobs
  • API integrations
  • data quality checks
  • automation frameworks
  • Bash
  • Shell
  • CI/CD security checks
  • Incident response scripts
  • System-level data collection
  • REST APIs
  • JSON
  • CrowdStrike Falcon
  • ServiceNow
  • data warehouses
  • analytics platforms
  • Tableau
  • scripting
  • workflow orchestration tools
  • security/SOC concepts
  • version control
  • CI/CD for data
  • code review
  • testing
  • documentation

Nice to have

  • Snowflake
  • BigQuery
  • Azure Synapse
  • Redshift
  • RDBMS
  • SIEM
  • data lake platforms
  • Rust
  • security operations
  • threat hunting
  • incident response

What the JD emphasized

  • security operations
  • data engineering
  • CrowdStrike
  • ServiceNow
  • API integrations
  • ETL/ELT processes
  • data models
  • automation