SIEM Engineer

Zachary Piper
Durham, NC, United States
13 days ago
Apply on www.careerjet.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Compensation
$105,000.0 - $120,000.0
Working hours
Regular working hours

Tech stack

Amazon Web Services Intrusion Detection and Prevention Performance Tuning Security Information and Event Management Data Ingestion Splunk Security Orchestration, Automation & Response

Job description

Zachary Piper Solutions is seeking a SIEM Engineer to join a leading client in the cybersecurity and defense industry in the RTP area. The SIEM Engineer role is a hybrid position requiring onsite presence on Tuesdays and Thursdays. The SIEM Engineer is best suited for a security professional with strong Splunk expertise, AWS exposure, and experience in SOC or incident response environments who thrives in a fast-paced, mission-driven setting. Responsibilities of the SIEM Engineer include:

  • Engineer and enhance Splunk Enterprise Security detections, dashboards, and correlation searches to strengthen threat visibility

  • Build and support automation workflows and playbooks within Splunk SOAR to streamline response efforts

  • Integrate and normalize diverse security data sources into Splunk while ensuring data quality and performance optimization

  • Partner with SOC and engineering teams to refine detection capabilities and improve operational efficiency across the environment

  • Lead and support incident investigations, coordinating response actions and contributing to continuous monitoring coverage, Piper Companies is seeking a SOC / Security Automation & Integration Engineer to join a mission-driven cybersecurity environment supporting advanced security operations and threat …
  • 14 days ago

Requirements

  • Active Secret Clearance

  • 3+ years of experience in SIEM engineering, SOC operations, or incident response

  • Advanced proficiency with Splunk, including writing complex SPL queries and building production-grade dashboards (similar to Ashley Brown-level experience)

  • Experience integrating AWS services (such as AWS Security Hub) and other security tools into a centralized SIEM platform

  • Strong understanding of data onboarding, CIM normalization, and Splunk knowledge objects, with the ability to operate in high-pressure environments

  • Ability to work onsite twice weekly in RTP - Tuesday and Thursday

Benefits & conditions

  • $105,000 - 120,000 annually

  • Full Comprehensive Benefits: Health, Vision, Dental, PTO, Paid Holiday and Sick Leave if Required by Law., + $110,000-135,000 per year, + $115,000-145,000 per year Piper Companies is seeking a SOC / Security Automation & Integration Engineer to join a leading cybersecurity and defense-focused organization. The SOC / Security Automation & Inte…

  • 14 days ago +

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.careerjet.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:09 min

Core functions of security information and event monitoring

Mathias Palmersheim Mathias Palmersheim · Europe 2026 Virtual

8:32 min

Benchmarking GitOps engine constraints for extensive multi-cluster environments

Artem Lajko · Europe 2026 Virtual

1:06 min

Ingesting streaming data securely with managed hubs

Eldert Grootenboer +1 · World Congress 2023

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

4:10 min

Masking system latency through strategic character design

Ben Hopkins +1 · Coffee With Developers

Videos

See all

Related articles

See all