SIEM Engineer

Zachary Piper
Raleigh, NC, United States
12 days ago
Apply on www.clearancejobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$115,000.0 - $135,000.0
Working hours
Regular working hours

Tech stack

Cloud Computing Security Cyber Security Data Normalization Information Model Intrusion Detection and Prevention Intrusion Detection Systems Security Information and Event Management Systems Integration In-Plane Switching (IPS) Firewalls (Computer Science) Splunk

Job description

  • Build, enhance, and maintain advanced Splunk SPL queries to support security analytics, monitoring, and threat detection initiatives
  • Integrate and onboard security tools and data sources into a centralized SIEM environment
  • Create, manage, and optimize Splunk knowledge objects, including dashboards, alerts, reports, and saved searches
  • Configure field extractions, lookups, and CIM-compliant data normalization to improve data quality and consistency
  • Assist in incident response activities through the investigation and analysis of security events, providing actionable recommendations
  • Partner with security and engineering stakeholders to develop detection content and improve overall SIEM effectiveness
  • Document SIEM configurations, processes, and best practices to support operational excellence

Requirements

  • Minimum of 5 years of experience in cybersecurity, security operations, or SIEM engineering
  • Active Secret security clearance is required
  • Ability to work in a hybrid capacity from Durham, NC, or Fulton, MD
  • Extensive hands-on experience with Splunk, including advanced SPL query development and optimization
  • Strong understanding of Splunk knowledge objects, data models, and Common Information Model (CIM) normalization
  • Experience integrating security technologies such as EDR, IDS/IPS, firewalls, and cloud security solutions into SIEM platforms
  • Proven incident response and security operations experience

Benefits & conditions

· Salary range: $115,000 - $135,000 depending on experience

· Comprehensive benefits package including medical, dental, vision, 401(k), and paid time off

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:10 min

Defining data semantics through standardized information modeling

Alexander Allmendinger · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

1:22 min

Introduction to specialized document extraction models

Etienne Bernard Etienne Bernard · World Congress 2026 Europe

Videos

See all

Related articles

See all