BWI GmbH | Germany | 50xxx, 53xxx, 51xxx Bonn, Köln | Permanent position | Full time | Published since: 11.12.2025 on stepstone.de
SIEM/SOAR Use Case / Playbook Expert (m/f/d)
As a primary digitization partner of the Bundeswehr, we provide stable, safe and efficient IT services in Germany and abroad, from basic operations to the field close to the application and thus contribute to the continuous increase in the leadership and operational capacity of the Bundeswehr. With over 7,700 colleagues, we operate and modernise one of the largest and most complex IT infrastructures in Germany. We are looking for responsible IT specialists who are convinced that the Bundeswehr-IT will further develop in challenging digitalization projects and thus contribute to Germany's security. Together with us, we are concerned about the future digital capability of the Bundeswehr. SIEM/SOAR Use Case / Playbook Expert (m/w/d) from now on and in full time in Bonn or Cologne. In the area of Cyber Defense Center (CDC) and the Security Operations Center (SOC) of BWI, security-relevant systems and networks are monitored and sensor systems are evaluated to detect attacks on IT infrastructures by IT security analysts. We are part of the Competence Center IT-Security (CCITS), in which IT, information and cyber security competencies are centralized. Security Engineering & Automation is part of the Cyber Defense Center and deals with (part-)automated detection of potential IT security incidents that are subsequently processed in the SOC. .
* After clicking the Read more button, the original advert will open on our partner's website, where you can see the details of this vacancy and contact information. If you need a translation of this text, after returning to our website it will be prepared and you can read it by clicking the Show full translation button.
Your tasks • Your profile • What we offer
Independent design, configuration and administration of Linux-based IT security systems; Responsibility for release planning in individual cases Working with security projects to support the connection of new data sources to the SIEM system Care and care of the rules used in the SIEM system Creation and further development of use cases and rules in the SIEM system Support in creating playbooks Responsibility for creating an operational map for your own department and the Security Operations Center to display the KPIs of Use Cases and Playbooks You contribute to the optimization of processes in the field of IT security engineering & automation and are responsible for the documentation and knowledge building Manage Use Cases in the BWI-owned Use Case Management Tool Normalization of log data Creation of scripts for normalization and pseudonymization Project work in the Advanced Cyber Security Program; Partial responsibility for individual tasks within the project work package Representation of your own department in defined bodies such as project sounding boards, townhall meetings and communities of interest
Successfully completed studies focusing on computer science, IT security or comparable training At least four years of professional experience, two of them in the field of IT security Experience with SIEM and SOAR systems and architectures Good knowledge of Linux and network technology Very good knowledge of log data, log formats and normalization of logs Knowledge of Python scripting desirable Own initiative, pronounced analytical skills, high understanding and structured work Good communication and team skills Ready to call English knowledge, German knowledge of C2 level
Through diverse and socially relevant tasks, we ensure Germany's IT security and sustainability As the primary digitization partner of the Bundeswehr, we enable and support in peace, crisis and war The BWI offers a market-oriented remuneration, a secure workplace and a premised and employee-funded occupational pension scheme You start with 30 days of annual holiday with option for individual adjustments We support your professional and personal training through individual measures and free access to LinkedIn Learning and the BWI Academy offers We provide you with a modern notebook (HP EliteBook) and a high-end smartphone You can build a value balance account in order to use it in perspective, e.g. for a Sabbatical You will receive a digital value card that will be charged monthly and available to you You can lease your desired bike and calculate it with reduced gross salary conversion With our digital health offer fitnessRAUM.de you will benefit from numerous offers in the fields of sports, nutrition and relaxation
Location
![]() | BWI GmbH | |
| 89075 Bonn, Köln | ||
| Germany |
The text of this ad was translated from German into English using an automatic translation system and may contain semantic and lexical errors. Therefore, it should be used for introductory purposes only. For more detailed information, see the original text of the ad at the link below.
For more information read the original ad