Sr. SIEM Engineer

Zachary Piper
Newington, VA, United States
20 days ago
Apply on www.clearancejobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$175,000.0 - $195,000.0
Working hours
Shift work

Tech stack

Bash Shell Cloud Computing Cyber Security Identity and Access Management Intrusion Detection Systems Python (Programming Language) Network Protocols Parsing Performance Tuning Windows PowerShell Security Information and Event Management Data Logging
+8 more
Scripting In-Plane Switching (IPS) Data Ingestion Mitre Att&ck Firewalls (Computer Science) Information Technology ArcSight Event Correlation Splunk

Job description

Zachary Piper Solutions is seeking a Sr. SIEM Engineer to support a classified program located in Newington, VA. This position is 100% onsite, 5 days per week, and requires an active TS/SCI clearance. The Sr. SIEM Engineer will serve as a technical expert responsible for engineering, administering, and optimizing enterprise SIEM capabilities with a focus on Splunk Enterprise Security., * Architect, deploy, administer, and optimize Splunk Enterprise Security in a large-scale enterprise environment

  • Develop and maintain correlation searches, detection rules, risk-based alerting (RBA), dashboards, and data models
  • Lead data onboarding efforts including parsing, normalization, CIM mapping, and integration of security and IT data sources
  • Perform platform health monitoring, troubleshooting, performance tuning, upgrades, and capacity planning for Splunk infrastructure
  • Collaborate with SOC, Security Engineering, and Incident Response teams to enhance threat detection, threat hunting, and SIEM operations

Requirements

  • Active TS/SCI clearance
  • Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or related field (or equivalent experience)
  • 5+ years of experience with SIEM engineering, cybersecurity monitoring, security analytics, or Splunk administration
  • Hands-on experience with Splunk Enterprise Security, including data onboarding, event correlation, alert tuning, and detection development
  • Strong knowledge of SPL, SIEM operations, MITRE ATT&CK, log management, and security monitoring
  • Experience with Linux/Unix systems, networking protocols, and security technologies such as EDR, IDS/IPS, firewalls, IAM, and cloud logging
  • Scripting experience with Python, Bash, or PowerShell
  • Splunk certifications (Architect, Consultant, ES Admin, or similar) preferred

Benefits & conditions

  • Salary Range: $175,000 - $195,000 (depending on experience)
  • Comprehensive Benefits: Medical, Dental, PTO, Paid Holidays, and additional benefits

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com
Prepare application

Good distractions

Loading talks and stories from around this role…