Skip to main content
BD
Open to opportunities

Bogdan Drabchuk

@bogdandrabchuk

I build Elastic-based SIEM pipelines, detection, and secure observability.

Kazakhstan
Message

What I'm looking for

I’m looking for an Elastic/SIEM-focused role where I can own ingestion and detection quality, improve cluster performance and data lifecycle, and grow into DevSecOps—preferably with security-minded engineering and measurable outcomes.

I’m a Security Engineer focused on Elastic Stack SIEM—bridging cluster architecture, data lifecycle (ILM/SLM), and practical ingestion for real-world logs. I’ve administered production Elasticsearch clusters and tuned settings like index templates, shard allocation, snapshot repositories, and logsdb mode to improve storage efficiency and reliability.

I integrate complex enterprise log ecosystems by building custom ingest pipelines and Grok patterns to normalize non-standard log sources. In practice, I’ve connected 10+ log sources (including Fortinet, Palo Alto, Cisco, CrowdStrike, Microsoft Defender for Endpoint, and others) using Logstash and Elastic Agent, so detections work across multiple vendors with consistent ECS alignment.

I also deploy and scale security tooling with Elastic Agent and Elastic Defend, configuring Fleet security policies and contributing to Ansible-based mass rollout. Alongside my engineering work, I actively run bug bounty activities and have confirmed, paid findings at High/Medium severity—fueling my mindset for threat-driven tuning and continuous improvement as I grow further into DevSecOps.

Experience

Work history, roles, and key accomplishments

BE
Current

SIEM Engineer

BESupply

Aug 2024 - Present (1 year 10 months)

Administer production Elasticsearch clusters by managing ILM policies, index templates, shard allocation, and snapshot repositories, and rolled out logsdb mode to reduce storage by ~40%. Integrated 10+ enterprise log sources using Logstash and Elastic Agent and built custom ingest pipelines and Grok patterns for ECS normalization, while deploying Elastic Agent + Elastic Defend via Fleet for 1,000–

Education

Degrees, certifications, and relevant coursework

Astana IT University logoAU

Astana IT University

Master of Science in Secure Software Engineering, Secure Software Engineering

2025 -

Pursuing an M.Sc. in Secure Software Engineering at Astana IT University since 2025.

Astana IT University logoAU

Astana IT University

Bachelor of Science in Cybersecurity, Cybersecurity

2022 - 2025

Completed a B.Sc. in Cybersecurity at Astana IT University from 2022 to 2025.

Find your dream job

Sign up now and join over 250,000+ remote workers who receive personalized job alerts, curated job matches, and more for free!

Sign up
Himalayas profile for an example user named Frankie Sullivan