> Markdown version of [/jobs/ext/2579792-senior-siem-engineer](https://www.wearedevelopers.com/jobs/ext/2579792-senior-siem-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior SIEM Engineer - **Company:** Everforth Ecs - **Location:** Washington, DC, United States - **Experience:** Expert - **Salary:** $130,000.0 - $145,000.0 - **Contract:** Permanent contract - **Skills:** Data Analysis, Intrusion Detection and Prevention, Performance Tuning, Security Information and Event Management, Software Vulnerability Management, Enterprise Software Applications, Data Ingestion, QRadar, Splunk - **Published:** August 3, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=3568eb84c2194114 ## About the Role * Active Top Secret clearance with SCI eligibility; TS/SCI preferred. * 6+ years of SIEM engineering, cybersecurity engineering, SOC support, detection engineering, or security monitoring experience. * Experience with SIEM tools such as Splunk, Elastic, QRadar, or equivalent platforms. * Knowledge of log ingestion, correlation rules, dashboards, alerting, incident response, vulnerability management, and compliance reporting. * Ability to troubleshoot data ingestion and coordinate across technical teams. * Strong documentation, analytical, and communication skills. ## Description We are seeking a cleared Senior SIEM Engineer to support security monitoring, detection engineering, log management, alerting, reporting, and incident response capabilities for classified and sensitive law enforcement, national security, and criminal justice environments within the National Security Business Unit. The Senior SIEM Engineer will serve as a technical lead for SIEM operations, log onboarding, detection content development, dashboarding, alert tuning, incident triage, continuous monitoring, compliance reporting, and security analytics modernization. The Senior SIEM Engineer will support security monitoring, detection engineering, log management, alerting, reporting, and incident response capabilities for classified and sensitive environments serving law enforcement, national security, and criminal justice missions. This role focuses on improving visibility, analytics, and operational security across enterprise systems, applications, endpoints, networks, and security tools., The Senior SIEM Engineer will also contribute to National Security Business Unit growth by identifying opportunities to improve threat visibility, expand log coverage, automate security workflows, enhance insider threat support, improve compliance reporting, and develop new cybersecurity analytics capabilities., * Configure, operate, tune, and maintain SIEM and security analytics platforms. * Onboard log sources, troubleshoot data ingestion, and improve log coverage across systems, applications, networks, and endpoints. * Develop correlation rules, alerts, dashboards, reports, and detection content. * Support incident triage, investigation, security monitoring, compliance reporting, and continuous monitoring. * Tune detections, reduce false positives, and improve alert quality. * Coordinate with cybersecurity, infrastructure, application, network, and operations teams. * Support insider threat, audit, vulnerability, and enterprise security initiatives. * Mentor cybersecurity analysts, system administrators, ISSOs, incident responders, and infrastructure teams. * Develop reusable playbooks, detection documentation, reporting templates, and knowledge-transfer materials. * Identify opportunities for automation, expanded analytics, improved visibility, and new cybersecurity services. Salary Range: $130,000 - $145,000 ## Related Videos - [Data Science in Retail](https://www.wearedevelopers.com/videos/586-data-science-in-retail) - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Better Together: Leveraging Your Observability Tools as a SIEM](https://www.wearedevelopers.com/videos/2118-better-together-leveraging-your-observability-tools-as-a-siem) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Data Science on Software Data](https://www.wearedevelopers.com/videos/162-data-science-on-software-data) - [The Innovation Formula: Fast Prototyping, Data Analysis, and Real User Insights](https://www.wearedevelopers.com/videos/1421-the-innovation-formula-fast-prototyping-data-analysis-and-real-user-insights) ## Related Articles - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs)