Sr. SIEM Engineer
Zachary Piper
Newington, VA, United States
20 days ago
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Apply on www.clearancejobs.com
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$175,000.0 - $195,000.0
Working hours
Shift work
Job source
Tech stack
Bash Shell
Cloud Computing
Cyber Security
Identity and Access Management
Intrusion Detection Systems
Python (Programming Language)
Network Protocols
Parsing
Performance Tuning
Windows PowerShell
Security Information and Event Management
Data Logging
+8 more
Scripting
In-Plane Switching (IPS)
Data Ingestion
Mitre Att&ck
Firewalls (Computer Science)
Information Technology
ArcSight Event Correlation
Splunk
Job description
Zachary Piper Solutions is seeking a Sr. SIEM Engineer to support a classified program located in Newington, VA. This position is 100% onsite, 5 days per week, and requires an active TS/SCI clearance. The Sr. SIEM Engineer will serve as a technical expert responsible for engineering, administering, and optimizing enterprise SIEM capabilities with a focus on Splunk Enterprise Security., * Architect, deploy, administer, and optimize Splunk Enterprise Security in a large-scale enterprise environment
- Develop and maintain correlation searches, detection rules, risk-based alerting (RBA), dashboards, and data models
- Lead data onboarding efforts including parsing, normalization, CIM mapping, and integration of security and IT data sources
- Perform platform health monitoring, troubleshooting, performance tuning, upgrades, and capacity planning for Splunk infrastructure
- Collaborate with SOC, Security Engineering, and Incident Response teams to enhance threat detection, threat hunting, and SIEM operations
Requirements
- Active TS/SCI clearance
- Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or related field (or equivalent experience)
- 5+ years of experience with SIEM engineering, cybersecurity monitoring, security analytics, or Splunk administration
- Hands-on experience with Splunk Enterprise Security, including data onboarding, event correlation, alert tuning, and detection development
- Strong knowledge of SPL, SIEM operations, MITRE ATT&CK, log management, and security monitoring
- Experience with Linux/Unix systems, networking protocols, and security technologies such as EDR, IDS/IPS, firewalls, IAM, and cloud logging
- Scripting experience with Python, Bash, or PowerShell
- Splunk certifications (Architect, Consultant, ES Admin, or similar) preferred
Benefits & conditions
- Salary Range: $175,000 - $195,000 (depending on experience)
- Comprehensive Benefits: Medical, Dental, PTO, Paid Holidays, and additional benefits
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on www.clearancejobs.com
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Loading talks and stories from around this role…