SIEM Engineer

Resourcesoft, Inc.
Columbia, United States of America
yesterday

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Senior
Compensation
$ 237K

Job location

Columbia, United States of America

Tech stack

ARM
Bash
Computer Security
Information Technology Consulting
Python
Routing
Parsing
Runbook
Security Information and Event Management
Cyber Threat Analysis
Cybercrime
Api Management

Job description

Design, implement, and optimize Palo Alto Cortex XSIAM and Cortex XDR in large-scale multi-tenant environments. Configure tenant-specific roles, secure access controls, and data segregation for multiple integrated agencies. Engineer detection rules, correlation analytics, threat-hunting queries, and alert suppression logic. Deploy Cribl log pipelines to route, parse, normalize, and enrich telemetry from cloud and endpoint sources. Develop and test automated response playbooks and playbooks for incident triage using Python and Bash. Support Security Operations Center analysts with platform troubleshooting, threat hunting, and technical escalation. Author operational runbooks, standard operating procedures, and architecture diagrams for SIEM services. Founded in 1999, Resourcesoft, Inc. is a leading Technology Consulting and Professional Services organization. Headquartered in Marlborough, MA, the company serves the technology needs of its clients nationwide. Resourcesoft has often been recognized by prominent rating agencies for its exemplary growth and stability. With over two decades of industry experience, the Company has evolved as a front runner in enabling project optimization. We partner with leading organizations to provide technology solutions within the financial, insurance, education, government, publishing, healthcare and pharmaceutical domains. We take pride in mentoring a workforce that is well positioned to respond to the emerging IT trends and needs. With the employees at the crux of every business endeavor, our success is driven by our expertise in pairing the right talent with the best jobs in the technology sector. We forge long term, personalized relationships with our employees to advance their career to the next level. We engage them in technology centric client projects that provide opportunities for them to evolve, innovate and deliver world class products and services. Our career opportunities offer challenging assignments and exposure to emerging and cutting edge technologies. We are committed to providing our employees with the tools necessary to accelerate their career progression, while maintaining a healthy, work-life balance. We are deeply committed to providing a workplace ambience that is both challenging and fulfilling.

Requirements

5 or more years of experience in enterprise security systems and large-scale SIEM deployments. Proficiency in Palo Alto Cortex XSIAM and Cortex XDR platform engineering. Experience with Cribl data modeling, log pipeline routing, parsing, and ingestion. Experience in engineering SIEM architectures for multi-tenant and 24x7 Security Operations Centers. Experience with developing correlation rules, threat-hunting queries, and automated playbooks. Experience in Python and Bash scripting for custom response workflows and API integrations. Excellent verbal and written communication skills.

Apply for this position