SIEM (Security Information and Event Management) Engineer

AnaVation, LLC
Washington, DC, United States
1 day ago
Apply on startup.jobs
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Job source

Tech stack

Microsoft Windows Bash Shell Cyber Security Information Systems Data Retention Data Security Networking Hardware Intrusion Detection and Prevention Intrusion Detection Systems Python (Programming Language) Linux Security Modules Network Protocols
+14 more
Parsing Windows PowerShell Zero Trust Network Access Security Information and Event Management Traffic Analysis Data Logging Cloud Platform System In-Plane Switching (IPS) Mitre Att&ck Firewalls (Computer Science) Storage Technologies Information Technology Cyber Warfare Network Server

Job description

AnaVation is seeking an experienced SIEM (Security Information and Event Management) Engineer to provide support to a mission critical customer. The selected candidate will be responsible for the design, deployment, configuration, and maintenance of SIEM systems across multiple classification enclaves., · Support the architecture, engineering, optimization, and sustainment of Security Information and Event Management (SIEM) platforms supporting defensive cyber operations, advanced threat detection, incident response, and compliance initiatives · Perform configuration, management and maintenance of network firewalls, security and encryption devices, including IDS, NAC and SIEM systems. · Integrate diverse log sources including firewalls, IDS/IPS, EDR, servers, network devices, security appliances, and cloud environments. · Optimize SIEM performance, storage architecture, data retention policies, and system scalability. This position is on site with the customer in Washington, DC and cannot be supported remotely. The selected candidate must possess an active TS clearance with the ability to obtain SCI accesses. Candidates without an active TS cannot be considered.

Requirements

  • 6+ years of cybersecurity experience, with at least 5 years focused on SIEM engineering in enterprise environments.
  • Experience supporting federal government systems at multiple security levels, strong knowledge of federal cybersecurity frameworks, and the ability to provide technical support within a secure environment.
  • Hands-on experience with one or more enterprise SIEM platforms.
  • Experience engineering and sustaining SIEM solutions in classified or air-gapped environments.
  • Familiarity with cross-domain solutions and secure data transfer controls.
  • Strong expertise in:
  • Log normalization and parsing
  • Advanced correlation rule development
  • Threat detection engineering
  • Network protocols and traffic analysis
  • Windows and Linux security logging
  • Active TS clearance with the ability to obtain SCI accesses., * Bachelor’s degree in Information Technology, Computer Science, Information Systems or related field
  • Proficiency in scripting/automation (Python, PowerShell, Bash).
  • Deep understanding of MITRE ATT&CK and threat detection methodologies.
  • Demonstrated ability to work independently and lead technical initiatives in highly regulated environments.
  • Knowledge of Zero Trust architecture principles.
  • Relevant certifications such as GIAC (GCIA, GCIH, GCED) or CISSP a plus, but not required. Benefits

Benefits & conditions

  • Generous cost sharing for medical insurance for the employee and dependents
  • 100% company paid dental insurance for employees and dependents
  • 100% company paid long-term and short-term disability insurance
  • 100% company paid vision insurance for employees and dependents
  • 401k plan with generous match and 100% immediate vesting
  • Competitive Pay
  • Generous paid leave and holiday package
  • Tuition and training reimbursement
  • Life and AD&D Insurance

About the company

In a world of technology, people make the difference. We believe if we invest in great people, then great things will happen. At AnaVation, we provide unmatched value to our customers and employees through innovative solutions and an engaging culture., AnaVation is the leader in solving the most complex technical challenges for collection and processing in the U.S. Federal Intelligence Community. We are a US owned company headquartered in Chantilly, Virginia. We deliver groundbreaking research with advanced software and systems engineering that provides an information advantage to contribute to the mission and operational success of our customers. We offer complex challenges, a top-notch work environment, and a world-class, collaborative team. If you want to grow your career and make a difference while doing it, AnaVation is the perfect fit for you! AnaVation is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to sex, race, color, religion, national origin, disability, protected Veteran status, age, or any other characteristic protected by law.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on startup.jobs
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:38 min

Using language models to self-detect and flag software vulnerabilities

Julian Totzek-Hallhuber Julian Totzek-Hallhuber · World Congress 2026 Europe

3:52 min

Avoiding remote code execution from unsanitized inputs

Alexander Pirker · World Congress 2022

2:56 min

Open-sourcing a complex parsing library for game data

Johan Hutting Johan Hutting · World Congress 2024

1:09 min

Core functions of security information and event monitoring

Mathias Palmersheim Mathias Palmersheim · Europe 2026 Virtual

54 sec

Interpreting complex terminal commands safely using external explanation utilities

Dan Cranney +2 · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

Videos

See all

Related articles

See all