SIEM Engineer

Zachary Piper
Newington, United States of America
9 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Compensation
$ 195K

Job location

Newington, United States of America

Tech stack

Microsoft Windows
Amazon Web Services (AWS)
Azure
Bash
Cloud Computing
Cloud Computing Security
CompTIA Security+
Computer Security
Linux
DNS
Monitoring of Systems
Hypertext Transfer Protocols (HTTP)
Intrusion Detection and Prevention
Intrusion Detection Systems
Python
Network Security
Log Analysis
Performance Tuning
Powershell
Security Information and Event Management
TCP/IP
Scripting (Bash/Python/Go/Ruby)
Google Cloud Platform
In-Plane Switching (IPS)
Data Ingestion
Mitre Att&ck
Cyber Threat Analysis
Firewalls (Computer Science)
Cybercrime
ArcSight Event Correlation
Cyber Warfare
Splunk
Security Orchestration, Automation & Response
Vulnerability Analysis

Job description

is seeking a to join a federal technology services organization supporting enterprise cybersecurity operations and mission-critical security programs. This role is and

This role will involve designing, implementing, tuning, and optimizing Splunk Enterprise and Splunk Enterprise Security to strengthen enterprise security monitoring, threat detection, incident response, and SIEM operations while partnering with security engineering, SOC, threat intelligence, and infrastructure teams to enhance overall cybersecurity visibility and resilience.

  • Design, implement, configure, and maintain and to support enterprise-scale security monitoring and threat detection.
  • Develop, optimize, and tune to improve detection accuracy and reduce false positives.
  • Analyze and correlate security events across to identify threats and support incident response.
  • Manage log ingestion, normalization, retention, and event correlation to ensure effective SIEM operations and data visibility.
  • Partner with to improve monitoring capabilities and overall security posture.
  • Support cybersecurity investigations by identifying, analyzing, and responding to security events across multiple data sources.
  • Implement automation and scripting solutions using to improve operational efficiency and SIEM functionality.
  • Support continuous improvement initiatives by integrating threat intelligence, cloud security monitoring, SOAR capabilities, and cybersecurity best practices into the enterprise security platform., Keywords: Splunk, Splunk Enterprise, Splunk Enterprise Security, Splunk ES, SIEM, SIEM Engineering, SIEM Administration, Security Information and Event Management, Security Monitoring, Security Analytics, Detection Engineering, Detection Rules, Correlation Searches, Event Correlation, Log Management, Log Analysis, Log Ingestion, Alert Tuning, Use Case Development, Threat Detection, Threat Hunting, Incident Response, Incident Investigation, Cybersecurity, Cyber Defense, SOC, Security Operations Center, SOC Analyst, Security Engineering, Threat Intelligence, Threat Intelligence Integration, Windows Logs, Linux Logs, Firewall Logs, IDS, IPS, IDS/IPS, Cloud Logs, AWS, Azure, GCP, Cloud Security, Cloud Security Monitoring, SOAR, Security Automation, Python, Bash, PowerShell, Scripting, Automation, TCP/IP, DNS, HTTP, HTTPS, Networking, Network Security, NIST, MITRE ATT&CK, Security Frameworks, Enterprise Security, Security Operations, Vulnerability Analysis, Security Event Analysis, Enterprise Monitoring, Data Correlation, Security Visibility, Federal, DoD, Department of Defense, Government, TS/SCI, Top Secret, SCI, Cleared, Security+, CompTIA Security+, CySA+, CISSP

Requirements

  • Bachelor's degree in , or a related field (or equivalent experience).
  • of experience in .
  • Hands-on experience with , , or other SIEM platforms such as .
  • Experience with .
  • Strong understanding of .
  • Experience with , along with knowledge of , and cybersecurity frameworks including and .
  • Experience with , , , and supporting is preferred.
  • Active

Benefits & conditions

  • Salary Range: $180,000 - $195,000 depending on experience
  • Comprehensive Benefits: Cigna Medical, Dental, Vision, 401k Plan, PTO, Holidays, Sick Leave if required by law

Apply for this position