Yochana · 23 hours ago
Security Data Architect (SIEM Data Pipeline)
Yochana is seeking a Security Data Architect to architect scalable security-telemetry pipelines and ensure consistent ingestion across diverse data sources. The role involves developing ingestion frameworks, defining roadmaps, and providing technical mentorship, while also influencing organizational strategy aligned with compliance and data analytics.
Responsibilities
Architect scalable, reusable security‑telemetry pipelines using Cribl, NiFi, Vector, and related platforms, ensuring consistent ingestion across 100+ diverse data sources
Develop platform‑agnostic ingestion frameworks and modular patterns supporting multiple protocols and destinations (syslog, HTTP, Event Hubs, Snowflake, ADX, etc.)
Define multi‑year ingestion and transformation roadmaps, including modernization phases, platform standards, and scalable architectural guardrails
Set enterprise governance models for schema evolution, onboarding new data sources, transformation quality, and versioning
Drive platform consolidation and rationalization, identifying redundant ingestion patterns and unifying them into enterprise‑wide frameworks
Create reference architectures, reusable design patterns, and standardized pipeline blueprints adopted by all engineering teams
Provide technical mentorship to senior engineers, guiding architectural thinking and deep‑system design approaches
Influence cross‑organizational strategy, aligning ingestion and transformation capabilities with threat‑detection, compliance, SIEM modernization, and data‑analytics roadmaps
Evaluate emerging technologies, assessing fit, integration patterns, and long‑term viability for enterprise-scale telemetry processing
Lead adoption of OCSF‑based normalization, including field mapping, schema validation, and portable transformation templates
Implement advanced data transformation logic (filtering, enrichment, routing, format conversion) using Groovy, Python, or JavaScript while enforcing strict governance and security controls
Ensure complete data lineage and traceability across ingestion, transformation, and storage layers, including metadata tagging and audit‑ready tracking
Integrate pipeline‑level observability: health monitoring, error handling, transformation failure alerts, and anomaly detection
Validate high‑fidelity data delivery to analytics and SIEM platforms, minimizing data loss, duplication, and drift
Lead cross‑functional design sessions, technology evaluations, and architecture reviews for large‑scale security telemetry ecosystems
Maintain centralized documentation for ingestion patterns, schema definitions, transformations, and governance standards
Qualification
Required
10+ Years of experience working in Cybersecurity
5+ Years of experience on CRIBL
Cribl Certified Engineer (Architect desired)
5+ Years of experience on JavaScript, python, or other scripting language
Company
Yochana
Yochana: Your Trusted Workforce Partner Across North America & Beyond For over 16 years, Yochana has been a leading talent acquisition firm, connecting businesses with top professionals across industries.
H1B Sponsorship
Yochana has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (21)
2024 (11)
2023 (3)
Funding
Current Stage
Growth StageRecent News
Company data provided by crunchbase