At a Glance
- Tasks: Build and maintain cutting-edge monitoring and observability tools using modern engineering practices.
- Company: Join Berenberg, a leading European private bank with a rich history and innovative future.
- Benefits: Enjoy 30 days holiday, private health insurance, and a generous pension plan.
- Other info: Collaborative environment with excellent career growth opportunities and a focus on innovation.
- Why this job: Make a real impact in cybersecurity while working with the latest technologies.
- Qualifications: Experience in Splunk, Kubernetes, and strong scripting skills are essential.
The predicted salary is between 63000 - 77000 £ per year.
For our SPEAR Technology (Security, Platform Engineering, Automation and Runtime) division in London we are looking to hire a Platform Engineer – Monitoring, Observability & SIEM (MONSO).
Do you:
- Like solving puzzles with an inquisitive mind?
- Think outside the box and challenge the status quo?
- Prefer simplicity over complexity and automation over manual effort?
- Have a self-starter mindset with a drive to take proactive ownership?
Then consider joining Berenberg’s SPEAR Technology programme. SPEAR consists of our CyberSecurity team and several platform engineering teams responsible for Monitoring, Observability, Kubernetes, Developer Platform, Network, and Datacentre Infrastructure.
Your role in the team:
The MONSO (Monitoring and Security Operations) platform team is evolving towards a modern platform engineering and self-service model. Rather than handling manual operational requests, our focus is building "as-code" platforms and automations that enable other teams to do more themselves—such as empowering our SOC/CyberSec team to develop (including AI-assisted workflows), test, and deploy SIEM use cases independently via CI/CD.
The platform spans Splunk Enterprise on-prem (running on Kubernetes), Splunk Observability Cloud, and SolarWinds, with future expansion into Cisco Secure Network Analytics, Cisco XDR, and Rapid7.
What will you do?
- Build and maintain our monitoring, observability, and SIEM tooling using modern platform engineering practices (Infrastructure/Configuration as Code).
- Deploy, scale, and automate platform workloads (including Splunk and custom automations) on our internal Kubernetes platform.
- Develop pipelines and self-service automations that allow the CyberSec/SOC team and developers to onboard data and deploy detection use cases autonomously.
- Ensure robust integration across hybrid infrastructure, log pipelines, and network telemetry.
Who are we looking for?
- Self-Starter & DevOps Mindset: Proactive problem solver who champions automation-first, CI/CD pipelines, code reviews, and self-service enablement.
- Modern Observability & Telemetry: Strong background in Splunk (SPL, dashboards, alerts, data ingestion, forwarders) and also configuring OpenTelemetry collectors and pipelines; knowledge of Prometheus and Grafana or similar tools.
- Kubernetes (Power User): Strong, hands-on experience deploying and operating workloads, stateful applications, Helm charts, and manifests on K8s (cluster administration is managed by a dedicated team).
- Good Networking Knowledge: Firm grasp of networking fundamentals (TCP/IP, DNS, TLS, load balancing, firewalls) and network telemetry (NetFlow/IPFIX, SNMP, syslog).
- Scripting & Automation: Strong proficiency in Python and Linux/Bash scripting to build integrations, CLI tools, and automated pipelines.
- Linux: Confident with enterprise Linux administration, troubleshooting, and system performance.
Desirable:
- Splunk administration, Splunk on Kubernetes (Splunk Operator), Enterprise Security (ES), or ITSI.
- Familiarity with network security/XDR tooling (Cisco Secure Network Analytics / Stealthwatch, Cisco XDR, Rapid7).
- Experience with CI/CD tooling (GitLab CI, GitHub Actions) and GitOps practices.
- Exposure to automated or AI-assisted SIEM detection engineering and SOAR concepts.
- Incident and Capacity Management understanding.
What we offer you:
- Private pension plan - 10% of base salary contribution by Berenberg.
- Generous 30 day holiday allowance.
- Private Health Insurance.
- Life Insurance scheme.
- Flexible working hours.
- Enhanced parental leave policies.
- Employee Assistance Programme offering counselling sessions related to mental health, financial wellbeing and other topics.
Apply online now to join our team – we look forward to receiving your application!
Berenberg is an Equal Opportunities Employer and prides itself on being a modern, dynamic and internationally orientated organisation. We value the rich diversity, skills and abilities and creative potential that people from differing backgrounds and experiences bring to the workplace. Every employee plays a vital role in providing quality service to all our customers and helping to create an inclusive working environment, where everyone can realise their full potential.
Platform Engineer – Monitoring, Observability & SIEM (MONSO) employer: Berenberg
Berenberg is an exceptional employer that fosters a collaborative and innovative work culture in the heart of London. With a strong commitment to employee growth, we offer extensive training opportunities, flexible working hours, and a generous benefits package including a private pension plan and health insurance. Join us to be part of a forward-thinking team that values diversity and encourages you to reach your full potential while shaping the future of banking technology.