SIEM Engineer

Zachary Piper
Raleigh, NC, United States
18 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Compensation
$105,000.0 - $120,000.0
Working hours
Regular working hours

Tech stack

Amazon Web Services Intrusion Detection and Prevention Performance Tuning Security Information and Event Management Data Ingestion Splunk

Job description

Zachary Piper Solutions is seeking a to join a leading client in the cybersecurity and defense industry in the RTP area. The role is a hybrid position requiring onsite presence on Tuesdays and Thursdays. The is best suited for a security professional with strong Splunk expertise, AWS exposure, and experience in SOC or incident response environments who thrives in a fast-paced, mission-driven setting.

  • Engineer and enhance Splunk Enterprise Security detections, dashboards, and correlation searches to strengthen threat visibility

  • Build and support automation workflows and playbooks within Splunk SOAR to streamline response efforts

  • Integrate and normalize diverse security data sources into Splunk while ensuring data quality and performance optimization

  • Partner with SOC and engineering teams to refine detection capabilities and improve operational efficiency across the environment

  • Lead and support incident investigations, coordinating response actions and contributing to continuous monitoring coverage

Requirements

  • 3+ years of experience in SIEM engineering, SOC operations, or incident response

  • Advanced proficiency with Splunk, including writing complex SPL queries and building production-grade dashboards (similar to Ashley Brown-level experience)

  • Experience integrating AWS services (such as AWS Security Hub) and other security tools into a centralized SIEM platform

  • Strong understanding of data onboarding, CIM normalization, and Splunk knowledge objects, with the ability to operate in high-pressure environments

  • Ability to work onsite twice weekly in RTP - Tuesday and Thursday

Benefits & conditions

  • $105,000 - 120,000 annually

  • Full Comprehensive Benefits: Health, Vision, Dental, PTO, Paid Holiday and Sick Leave if Required by Law.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:09 min

Core functions of security information and event monitoring

Mathias Palmersheim Mathias Palmersheim · Europe 2026 Virtual

8:32 min

Benchmarking GitOps engine constraints for extensive multi-cluster environments

Artem Lajko · Europe 2026 Virtual

1:06 min

Ingesting streaming data securely with managed hubs

Eldert Grootenboer +1 · WWC 2023

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

4:10 min

Masking system latency through strategic character design

Ben Hopkins +1 · Coffee With Developers

Videos

See all

Related articles

See all