SIEM Engineer

Delviom LLC
Alexandria, VA, United States
3 days ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Working hours
Regular working hours
Job source

Tech stack

Digital Forensics Identity and Access Management Intrusion Detection and Prevention Log Analysis ArcSight SIEM Tool Security Information and Event Management Cloud Platform System Mitre Att&ck QRadar Cyber Threat Analysis Cybercrime Microsoft Sentinel
+2 more
3-tier Architectures Splunk

Job description

  • Engineer, configure, maintain, and optimize enterprise SIEM platforms such as Splunk, Microsoft Sentinel, QRadar, ArcSight, or similar technologies.
  • Develop and tune correlation rules, detection logic, alerts, dashboards, reports, and security use cases.
  • Monitor and investigate security alerts across endpoints, networks, cloud environments, applications, and identity platforms.
  • Perform Tier 2 / Tier 3 SOC analysis, including event correlation, triage, escalation, and root cause analysis.
  • Conduct proactive threat hunting using SIEM, EDR, threat intelligence, network telemetry, and behavioral analytics.
  • Develop threat hunting hypotheses based on emerging threats, Indicators of Compromise, TTPs, and the MITRE ATT&CK framework.
  • Lead and support incident response activities including investigation, containment, eradication, recovery, and lessons learned.
  • Perform digital forensics involving endpoint, memory, disk, network, email, and log analysis to determine the scope and impact of security incidents.
  • Analyze malware activity, suspicious processes, authentication events, lateral movement, persistence mechanisms, and data exfiltration indicators.
  • Integrate SIEM platforms with security

Requirements

We are seeking an experienced SIEM Engineer / Senior SOC Engineer to support security monitoring, detection engineering, threat hunting, incident response, and digital forensics activities. The ideal candidate will have a strong combination of hands-on SIEM engineering experience and operational SOC expertise, with the ability to investigate complex security events and improve enterprise detection capabilities.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa · LIVE

1:09 min

Core functions of security information and event monitoring

Mathias Palmersheim Mathias Palmersheim · Europe 2026 Virtual

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

Videos

See all

Related articles

See all