Skip to main content

Protect Yourself from Recruitment Scams: Amgen is aware of fraudulent communications that may impersonate Amgen recruiters, employees, or recruiting partners. Official communications from Amgen will come from channels associated with the amgen.com domain. In some cases, Amgen may engage authorized third-party staffing or recruiting firms to contact candidates on our behalf. If you are contacted by a third-party recruiting firm about an Amgen opportunity, do not rely solely on the contact information provided in the message. Before sharing personal information, verify the opportunity by visiting the Amgen Careers website directly and contacting Amgen at AmgenCareers@careers.pure.cloud. You should also be informed in advance if an authorized recruiting firm will submit your resume to Amgen.

Amgen and its authorized recruiting partners will never request payment, gift cards, cryptocurrency, purchases, or banking information as part of an application or interview process. Be cautious of individuals falsely claiming to represent Amgen or an Amgen recruiting partner, and verify the authenticity of recruitment-related communications before responding.

SIEM Engineer

Two lab technicians smiling
SEARCH JOBS

SEE ALL JOBS

SIEM Engineer

Portugal - Lisbon Apply Now
JOB ID: R-256608 LOCATION: Portugal - Lisbon WORK LOCATION TYPE: Flex Commuter / Hybrid DATE POSTED: Sep. 29, 2026 CATEGORY: Information Systems SALARY RANGE: 39,249.60 EUR - 53,102.40 EUR

Join our team at AMGEN Capability Center Portugal, the #1 company in Best Workplaces™ (201–500 employees' category) in Portugal in 2024 by the Great Place to Work Institute. With over 500 talented individuals from more than 40 nationalities, our Lisbon center thrives at the intersection of innovation, excellence, and inspiration. This is your opportunity to explore the future of healthcare through technology and digital innovation, supporting our mission To Serve Patients.


SIEM ENGINEER


At AMGEN, Technology isn’t just a support function—it’s a catalyst for discovery, transformation, and real-world impact. Here, your ideas fuel innovation that improves and saves lives of patients in dire need of our medicines. Are you ready to do meaningful work that matters? 


LIVE

WHAT YOU WILL DO

As a SIEM Engineer you will play vital role you will be responsible for developing and implementing the organization’s security monitoring strategy to safeguard data, systems, and networks against potential threats. This includes designing and deploying robust security monitoring architecture, ensuring comprehensive coverage and real-time threat detection. The role involves close collaboration with IT teams to incorporate security monitoring into every layer of the technology stack. Key responsibilities include collaborating with the security monitoring team, handling risk, and ensuring compliance with relevant regulations and standards.


Let’s do this. Let’s change the world. In this vital role you will: 

  • Configure and maintain SIEM and Security Data Lake (SDL) components, including log collection, ingestion, parsing, and normalization, following established designs and standards.
  • Monitor the health and performance of assigned SIEM and SDL components, troubleshoot common issues, document findings, and escalate complex or high-impact problems.
  • Implement and test log source integrations and configuration changes based on defined technical requirements and approved procedures.
  • Validate log data quality, and develop and tune detection rules, dashboards, and reports based on documented requirements or identified gaps.
  • Support incident investigations and operational coordination by providing relevant SIEM data and working with source owners or support teams to address issues.
  • Maintain documentation and support audits, while identifying recurring issues and recommending practical improvements to procedures, configurations, and monitoring.

WIN

WHAT WE EXPECT OF YOU

We are all different, yet we all use our unique contributions to serve patients. The ideal candidate possesses strong leadership qualities, a deep understanding of cybersecurity practices, and extensive experience in managing large-scale security monitoring programs.


Basic Qualifications:

  • Master’s degree with 1 to 2 years of experience in Information Systems or related field OR
  • Bachelor’s degree with 2 to 3 years of experience Information Systems or related field OR
  • Diploma with 3 to 4 years of experience in Information Systems or related field.
  • Proven track-record in understanding of common security monitoring and detection engineering practices.
  • Demonstrate in-depth knowledge of cybersecurity frameworks, technologies, and best practices.
  • Strong knowledge of security architecture frameworks and principles.

Preferred Qualifications:

  • Proficiency with deploying and running log collection infrastructure (e.g. Splunk Universal Forwarder, Fluentd, Cribl), SIEM solutions (e.g. QRadar, Elastic, ArcSight, Sentinel) and Security Datalake solutions (e.g. Snowflake-based, AWS-based solutions).
  • Experience with network security, endpoint protection, and incident response.
  • Proficiency in scripting and automation (e.g., Python, Bash) is a plus.
  • Experience with deploying, running and monitoring cloud-hosted infrastructure.
  • Experience developing, deploying, and managing AI agents (agentic systems), including integrating them with APIs, data sources, and automation workflows.

Professional Certifications:

  • GCDA (preffered)
  • GSEC (preferred)
  • CompTIA Security+ (preferred)
  • CISSP (preferred)

Soft Skills:

  • Excellent analytical and solving skills
  • Strong verbal and written communication skills (English)
  • Ability to work effectively with global, virtual teams
  • High degree of initiative and self-motivation
  • Ability to handle multiple priorities successfully
  • Team oriented, with a focus on achieving team goals
  • Strong presentation and public speaking skills

THRIVE

WHAT YOU CAN EXPECT OF US

As we work to develop treatments that take care of others, we also care deeply for our teammates’ well-being and growth. 

  • Work That Matters – Build tech that accelerates scientific breakthroughs and helps patients worldwide. 
  • Modern Tech Stack – Cloud-first, automation-focused, AI-powered. 
  • Global Scale, Agile Mindset – Collaborate across continents while working in nimble, high-impact teams. 
  • Continuous Learning – Access to certifications, trainings, mentorship, and career mobility. 
  • AMGEN Total Rewards Plan – Comprehensive benefits in healthcare, finance, and well-being. 
  • Flexibility – Hybrid work model with time split between our Lisbon office and remote work. 

APPLY NOW

Objects in your future are closer than they appear. Join us.

CAREERS.AMGEN.COM


EQUAL OPPORTUNITY STATEMENT

AMGEN is an Equal Opportunity employer and will consider you without regard to your race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, or disability status.

We will ensure that individuals with disabilities are provided a reasonable accommodation to participate in the job application or interview process, to perform crucial job functions, and to receive other benefits and privileges of employment. Please contact us to request an accommodation.

Apply Now
Live. Win. Thrive.

Sign Up for Job Alerts

Stay up to date on Amgen news and opportunities. Sign up to receive alerts about positions that suit your skills and career interests.

Interested In

  • Information Systems, Lisbon, Lisbon District, PortugalRemove

By submitting your information, you acknowledge that you have read our privacy policy (this content opens in new window) and consent to receive email communication from Amgen.