3,192 siem jobs at 1,653 companies in United States
1mo
Save
Mark Applied
Hide
1mo
SIEM Engineer
Huntsville or United States
$100k/yrRemoteFull Time
Summit 7 Systems: Cybersecurity and compliance consulting for the defense industry.
5+ YOEBachelor's in CS/IT/Cybersecurity (or equivalent), 5+ years enterprise IT experience, 3+ years SIEM experience, proficiency with SIEM/log formats, Azure/O365, SPL/SQL, Python/JavaScript, CI/CD, NIST/FISMA compliance, and strong communication skills.
ECSNYSE: ASGN: Provides advanced technology and engineering services to government agencies.
6+ YOEActive Top Secret clearance with SCI eligibility, 6+ years SIEM/cybersecurity engineering experience, expertise with Splunk/Elastic/QRadar, log ingestion, detection development, incident response, and strong documentation and communication skills.
Akima: Provider of mission-focused technical and administrative support for government agencies.
4+ YOE4+ years system/network/developer experience, 2+ years Splunk administration, Splunk Enterprise Certified Admin, Linux administration, SIEM content development, analytical/problem-solving skills, and an active Secret clearance.
ASRC Federal: Provides engineering and IT services to federal government agencies.
5+ YOE5+ years Elastic engineering experience, active Secret clearance, Bachelor's in information security or equivalent, DoD 8140/8570-compliant cert (e.g., Security+, CISSP), AWS experience preferred, Python/Bash scripting, Elastic Stack and SIEM expertise.
CGINYSE: GIB: Provides information technology and business consulting services.
3+ YOE3+ years SIEM/SOAR experience (Splunk/Sentinel), KQL/SPL/Python, API integration, enrichment/UEBA/automation, ability to obtain Public Trust clearance, US citizen or green card holder required.
CrowdStrikeNASDAQ: CRWD: Provides cloud-native endpoint protection and cybersecurity services.
5+ YOE5+ years in security operations/SIEM administration, familiarity with major SIEMs, query languages, detection engineering, scripting, cloud security, EDR and use of AI; strong communication and customer-facing consulting skills.
Alaka'ina Foundation Family of Companies: Provides technical solutions and mission support to federal agencies.
Implement, manage, and optimize SIEM infrastructure; ensure DISA STIG/SRG compliance; develop data integrations and pipelines; Linux/Windows administration; DoD 8140 qualification or listed certifications; U.S. citizen with Secret clearance and TS eligibility.
SIEM, Confluent, Elastic, RHEL, CentOS, Linux, Windows, DISA STIG, DISA SRG, CORA Inspections
HCLTechNational Stock Exchange of India: HCLTECH: Global provider of information technology services and software consulting.
12+ YOE5+ Mgmt12+ years in security operations with 5+ years leading SOC teams; hands‑on SIEM administration and detection engineering (Splunk, Sentinel, QRadar, LogRhythm); incident response, EDR/XDR, SOAR, vulnerability management, and cloud/identity telemetry experience.
Splunk, Microsoft Sentinel, LogRhythm, QRadar, Microsoft Defender for Endpoint, CrowdStrike, SentinelOne, Splunk SOAR, Cortex XSOAR, Microsoft Logic Apps, Qualys, Tenable, Rapid7, Palo Alto, Fortinet, Cisco, F5, Zscaler, MITRE ATT&CK, NIST 800-61, NIST CSF, ISO 27001
Ardent: Provides geospatial and digital transformation services to federal agencies.
10+ YOE10+ years software development; 7+ years in software development and technical operations; US citizen; degree; SIEM, SecDevOps, cloud, AWS; CNCF/Kubernetes.
Kroll: Provides global risk and financial advisory solutions.
7+ YOE2+ Mgmt7–10+ years in cybersecurity delivery/consulting; lead teams deploying CrowdStrike Falcon/LogScale; strong SIEM/SOAR, automation, and client-facing skills.
Infinitive: Consultancy for modernizing and monetizing enterprise data through AI.
3+ YOE3+ years in security/data/devsecops roles; Logstash expertise, Regex, Splunk, Amazon SQS/SNS, GitHub, Jenkins, and SQL; strong analytical and troubleshooting skills; experience with CI/CD and cloud-native event-driven systems.
MartinFed: Provides cybersecurity and engineering solutions for federal missions.
6+ YOEMust be US citizen with active Top Secret clearance; 6+ years related experience with Splunk data onboarding, parsing, normalization, SPL, regex, and log management; strong communication and problem-solving.
Splunk, SPL, props.conf, transforms.conf, Splunk Common Information Model (CIM), HTTP Event Collector (HEC), Python, Bash
Booz Allen HamiltonNYSE: BAH: Consulting and technology services for government and commercial clients
2+ YOE2+ years managing and configuring Splunk and Cribl, experience with Splunk architecture, data pipelines, scripting, Linux/Windows administration, and security requirements; active TS/SCI clearance required.
Booz Allen HamiltonNYSE: BAH: Provides technology and management consulting services to diverse organizations.
2+ YOE2+ years managing and configuring Splunk and Cribl, experience with Splunk architecture, data pipelines, props/transforms/inputs/outputs, Linux/Windows administration, Splunk REST API, and TS/SCI clearance.
Denver or Bozeman or Leawood or Dallas or Arlington or Austin or Jacksonville
$135k-$185k/yrRemoteFull Time
Optiv: Provides cybersecurity consulting, technology integration, and managed security services.
10+ YOE10–15 years in information security/technology consulting; 8–10 years in security architecture for SIEM/SOC; strong SIEM platform expertise; willing to travel; CISSP/CISM/CISA or SIEM certifications preferred.
Google SecOps, Microsoft Sentinel, CrowdStrike NG-SIEM, Palo Alto XSIAM, KQL, Python, PowerShell, YAML