SOC Engineer 2 - Secret Clearance
Role details
Job location
Tech stack
Job description
Zachary Piper Group is seeking a SOC Engineer II to support advanced SIEM engineering and detection development within a high-impact federal cybersecurity environment. The SOC Engineer II is a long term contract, hybrid role located in Fulton, MD (2 days onsite Tuesday/Thursday) requiring an active Secret Clearance, strong Splunk expertise, and AWS experience. The SOC Engineer II will focus on building and optimizing Splunk detections, dashboards, and automation workflows while supporting incident response across cloud platforms. The SOC Engineer II is ideal for a candidate who wants hands-on ownership of detection engineering in a fast-paced SOC environment., · Develop and optimize Splunk Enterprise Security detections, dashboards, and correlation searches to improve threat visibility
· Build and maintain Splunk SOAR playbooks to automate incident response workflows
· Troubleshoot ingestion, indexing, and search performance issues within distributed Splunk environments
· Investigate alerts and support incident response efforts across AWS and integrated security tools
· Work directly with SOC analysts and engineers to enhance detection coverage and security operations efficiency
Requirements
· 5+ years of experience in SIEM Engineering, Security Operations, or Incident Response
· Strong Splunk expertise (SPL queries, dashboards, data normalization, Enterprise Security)
· Experience with AWS configurations and integrating cloud security tools into SIEM environments
· Bachelor's degree in Cybersecurity, Information Technology, or related field (or equivalent experience)
· Active Secret Clearance (non-negotiable)
Benefits & conditions
· Salary range: $115,000-$125,000 annually, based on experience
· Comprehensive Benefits: Medical, Dental, Vision, 401K, PTO, Sick Leave as required by law, and Holidays