SIEM Engineer - Secret Cleared

Zachary Piper
Fulton, MD, United States
about 1 month ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$115,000.0 - $125,000.0
Working hours
Regular working hours

Tech stack

Cloud Computing Security Cyber Security Database Queries Intrusion Detection and Prevention Intrusion Detection Systems Security Information and Event Management Systems Integration In-Plane Switching (IPS) Data Ingestion Firewalls (Computer Science) Splunk

Job description

Piper Companies is seeking a to support and enhance enterprise security monitoring for a leader in the technology industry. This role is ideal for a seasoned security professional with deep Splunk expertise, strong incident response experience, and a background integrating security tools into a centralized SIEM environment. The position is hybrid and available in either Durham, North Carolina or Fulton, Maryland.

  • Design, develop, and optimize complex Splunk SPL queries to support security monitoring and threat detection

  • Integrate multiple security tools and data sources into a centralized SIEM platform

  • Develop and manage Splunk knowledge objects, including dashboards, alerts, reports, and saved searches

  • Perform field extractions, lookups, and CIM normalization to ensure high-quality and consistent data ingestion

  • Support incident response efforts by analyzing security events and providing actionable insights

  • Collaborate with security and engineering teams to improve detection use cases and SIEM performance

  • Maintain documentation and best practices related to SIEM architecture and processes

Requirements

  • 5+ years of experience in cybersecurity or SIEM engineering roles

  • Active Secret security clearance (required)

  • Ability to work in a hybrid environment in Durham, NC or Fulton, MD

  • Heavy hands-on experience with Splunk, including advanced SPL query writing

  • Strong knowledge of Splunk knowledge objects, data models, and CIM normalization

  • Experience integrating security tools (EDR, IDS/IPS, firewalls, cloud security tools) into a SIEM

  • Solid background in incident response and security operations

Benefits & conditions

  • Salary range: $115,000 - $125,000 depending on experience

  • Comprehensive benefits package including medical, dental, vision, 401(k), and paid time off

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

1:06 min

Ingesting streaming data securely with managed hubs

Eldert Grootenboer +1 · WWC 2023

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

1:49 min

One-way data ingestion for IoT devices

Timothy Marland · WWC 2023

Videos

See all

Related articles

See all