658 siem jobs at 285 companies in Washington, DC

2mo
Save
Mark Applied
Hide
Senior SIEM Engineer
Washington or Washington
$130k-$145k/yr OnsiteFull Time
ECS
ECSNYSE: ASGN: Provides advanced technology and engineering services to government agencies.
6+ YOEActive Top Secret clearance with SCI eligibility, 6+ years SIEM/cybersecurity engineering experience, expertise with Splunk/Elastic/QRadar, log ingestion, detection development, incident response, and strong documentation and communication skills.
Splunk, Elastic, QRadar, SIEM
2w
Save
Mark Applied
Hide
Elastic SIEM Engineer
Hanover, Maryland, United States
$150k-$165k/yr HybridFull Time
ASRC Federal
ASRC Federal: Provides engineering and IT services to federal government agencies.
5+ YOE5+ years Elastic engineering experience, active Secret clearance, Bachelor's in information security or equivalent, DoD 8140/8570-compliant cert (e.g., Security+, CISSP), AWS experience preferred, Python/Bash scripting, Elastic Stack and SIEM expertise.
Elasticsearch, Logstash, Kibana, Elastic Security, AWS, Azure, GCP, Python, Bash
2d
Save
Mark Applied
Hide
Security Operations / SIEM Analyst
Washington, District of Columbia, United States
OnsiteFull Time
Empower AI
Empower AI: Providing AI-enabled technology solutions for federal government agencies.
5+ YOERequires 5+ years of experience, a bachelor's degree in IT or related field, Security+, Splunk or SIEM certification, Secret clearance, and ITIL 4 Foundation preferred.
Splunk, Security Information and Event Management (SIEM), Defense Information Systems Agency (DISA) Security Technical Implementation Guides (STIGs)
1mo
Save
Mark Applied
Hide
SIEM / Threat Monitoring Analysts
Washington, District of Columbia, United States
OnsiteFull Time
Blue Rose Consulting Group
Blue Rose Consulting Group: Provides IT and management consulting services to government agencies.
3+ YOE3+ years SIEM administration and threat monitoring experience (Splunk preferred), OSINT monitoring, digital forensics, incident correlation, incident response knowledge; Secret clearance minimum, TS preferred.
Splunk
1mo
Save
Mark Applied
Hide
Senior Consultant, SIEM Engineer (Logstash)
Ashburn, Virginia, United States
$90k-$140k/yr OnsiteFull Time
Infinitive
Infinitive: Consultancy for modernizing and monetizing enterprise data through AI.
3+ YOE3+ years in security/data/devsecops roles; Logstash expertise, Regex, Splunk, Amazon SQS/SNS, GitHub, Jenkins, and SQL; strong analytical and troubleshooting skills; experience with CI/CD and cloud-native event-driven systems.
Logstash, Regex, Amazon SQS, Amazon SNS, GitHub, Jenkins, Splunk, SQL, Elasticsearch, Kibana, Docker, Kubernetes
1mo
Save
Mark Applied
Hide
Cybersecurity Operations Specialist -SIEM Services (Evergreen)
Springfield, Virginia, United States
$128k-$173k/yr OnsiteFull Time
General Dynamics Information TechnologyNYSE: GD: Provides mission-critical IT services to government and defense organizations.
6+ YOEUS citizen with active/obtainable TS/SCI clearance and polygraph, 6+ years SIEM experience, DoD 8570 IAT Level II/CSSP Infrastructure Support, Linux (RHEL) expertise, ArcSight/ElasticSearch/Kibana/Splunk experience, SIEM content and playbook development.
ArcSight SIEM, ElasticSearch, Kibana, Splunk, Event Broker, User Behavioral Analysis (UBA), Linux (RHEL)
1mo
Save
Mark Applied
Hide
Cybersecurity Operations Specialist -SIEM Services (Evergreen)
Springfield, Virginia, United States
$128k-$173k/yr OnsiteFull Time
GDIT
GDITNYSE: GD: Delivers IT and mission services to government agencies.
6+ YOEUS citizen with active TS/SCI and ability to obtain TS/SCI + Polygraph; 6+ years SIEM experience (ArcSight, ElasticSearch, Splunk, Kibana); RHEL Linux admin; DoD 8570 IAT Level II and CSSP Infrastructure Support; SIEM content/playbook development.
ArcSight, ElasticSearch, Kibana, Splunk, Event Broker, User Behavioral Analysis (UBA), Linux (RHEL), Enterprise Audit, Joint Incident Management System
1mo
Save
Mark Applied
Hide
Senior Cyber Engineer
Arlington or United States
$170k-$182k/yr OnsiteFull Time
Deloitte
Deloitte: Global provider of audit, consulting, tax, and advisory services.
3+ YOERequires 3–5 years experience, scripting with Python and PowerShell, experience with SIEM (Splunk or ArcSight), system administration (Windows/Linux), Splunk Admin certification, and development/maintenance of SOC/SIEM content and processes.
Python, PowerShell, Splunk, ArcSight, Windows, Linux, Active Directory, Routers/Switches management, Firewall Management, SANS/NAS, Web servers, IAM/AAA, IDS/HDS, System vulnerability scanning tools, application/database vulnerability scanning tools, mobile device analysis, Secure coding, Service Now, SIEM
2mo
Save
Mark Applied
Hide
Cyber Threat Hunter
McLean, Virginia, United States
OnsiteFull Time
ManTech
ManTech: Provides technology solutions for defense and intelligence agencies.
2+ YOE2+ years in cyber security roles; experience with SIEM/EDR; cloud knowledge; strong communication; relevant certifications.
SIEM, EDR, Network traffic analysis, Cloud - AWS, Cloud - Azure, Windows endpoint security, MITRE ATT&CK
2mo
Save
Mark Applied
Hide
Cortex & Cloud Sales Specialist - Federal
Arlington or Virginia
RemoteFull Time
Palo Alto Networks
Palo Alto NetworksNASDAQ: PANW: Provides enterprise-grade network, cloud, and endpoint security software.
5+ YOE5+ years field sales in cybersecurity; enterprise accounts; SIEM/EDR/XDR/SOC/SOAR experience; channel partners; able to travel.
SIEM, EDR, XDR, SOC, SOAR
2mo
Save
Mark Applied
Hide
Information Security Engineer
Washington, District of Columbia, United States
$145k-$170k/yr OnsiteFull Time
Municipal Securities Rulemaking Board
Municipal Securities Rulemaking Board: Regulates the municipal securities market to ensure market integrity.
7+ YOE7+ years in information security; strong incident response, detection engineering, IAM, networking, cloud/app security; experience with SIEM and security tooling.
SIEM, Vulnerability Management, Endpoint Security
3mo
Save
Mark Applied
Hide
Senior Infrastructure Engineer, Cloud Security
New York or San Francisco or Washington or United States
$150k-$185k/yr HybridFull Time
Rocket Money
Rocket MoneyNYSE: RKT: Personal finance app for managing subscriptions, bills, and budgets.
6+ YOE6+ years in cloud engineering with production cloud security; Terraform; AWS/GCP; IAM; network design; vulnerability management; SIEM; on-call; collaboration.
Terraform, AWS, GCP, IAM, VPC, SIEM
2w
Save
Mark Applied
Hide
Incident Response Engineer Journeyman
Arlington, Virginia, United States
$101k-$142k/yr HybridFull Time
ASM ResearchNYSE: ACN: Provides IT and healthcare services to government agencies.
5+ YOE5+ years in security operations/incident response, TS/SCI clearance and U.S. citizenship required; experience with SIEM, forensics, log analysis, and incident handling.
SIEM, Splunk, Elastic, QRadar
1mo
Save
Mark Applied
Hide
ITDI Cyber Engineering Lead #830
Washington, District of Columbia, United States
OnsiteFull Time
Allen Integrated Solutions
Allen Integrated Solutions: Provides technical and engineering services for national security missions.
Bachelor's degree, experience maintaining SIEM/XDR/DLP/GRC, implementing automation for cybersecurity operations, and providing expert guidance; Public Trust clearance required.
SIEM, XDR, DLP, GRC, Microsoft Excel
3w
Save
Mark Applied
Hide
Cybersecurity Threat Intelligence Manager
Fairfax or Knoxville
$102k-$251k/yr HybridFull Time
CGI
CGINYSE: GIB: Provides information technology and business consulting services.
7+ YOE7+ years in threat intelligence or related roles, bachelor's degree or CISSP/CISM, experience with PIR/CIR, SIEM/TIP, strong analytical and communication skills.
SIEM, TIP, SOAR
3w
Save
Mark Applied
Hide
Endpoint Automation Staff Engineer
Palo Alto or Dallas or Bethesda or Seattle
$110k-$230k/yr OnsiteFull Time
GEICO
GEICO: Provides vehicle and property insurance services to consumers.
3+ YOE3+ years cybersecurity/endpoint engineering experience, degree or equivalent, EDR administration, scripting (PowerShell/Python/Bash), SIEM familiarity, troubleshooting and communication skills.
Endpoint Detection and Response (EDR/XDR), PowerShell, Python, Bash, SIEM, Ansible, SCCM, Intune, Jamf, Puppet, Azure, AWS, Google Cloud, Active Directory, Entra ID, API
1mo
Save
Mark Applied
Hide
Evergreen: Senior Network/Security Engineer
McLean, Virginia, United States
$153k-$187k/yr RemoteFull Time
Ad Hoc
Ad Hoc: Builds user-centered digital services and platforms for government agencies.
Expertise with Palo Alto/PAN-OS/Panorama, proxy engineering, packet-level troubleshooting, SIEM/log correlation, secure network design and compliance with federal standards.
Palo Alto, PAN-OS, Panorama, Strata Cloud Manager, SIEM, Splunk, ELK, tcpdump, Wireshark
2mo
Save
Mark Applied
Hide
Cyber Threat Analyst (I&W) with Splunk and Analyst1 / Active Top Secret
Arlington, Virginia, United States
$104k-$166k/yr OnsiteFull Time
Peraton
Peraton: Provides advanced technology and mission support for government agencies.
9+ YOEBachelor’s degree and 9 years of relevant experience; security certs required; Splunk SIEM and Analyst1 experience; strong threat intel and MITRE ATT&CK knowledge.
Splunk SIEM, Analyst1, Threat intelligence platform
3w
Save
Mark Applied
Hide
SOC Analyst
McLean, Virginia, United States
$96k-$112k/yr OnsiteFull Time
ID.me
ID.me: Provides secure digital identity verification and authentication services.
1+ YOE1–2 years experience in information security or IT, familiarity with threat detection, incident response, SIEM/EDR tools, basic cloud knowledge, analytical and communication skills.
SIEM, IDS/IPS, EDR, Splunk, Chronicle, Python, Bash, AWS, GCP, Azure, LLMs
1w
Save
Mark Applied
Hide
Principle Cybersecurity Analyst - Remote
Washington or Minneapolis or United States
$113k-$193k/yr RemoteFull Time
UnitedHealth Group
UnitedHealth GroupNYSE: UNH: Provides health insurance and technology-enabled health care services.
3+ YOE3+ years in threat intelligence, security engineering, IR or malware analysis; strong software engineering and cybersecurity integration experience; experience with TIPs, SIEM, SOAR, and automation.
Splunk, Microsoft Sentinel, IBM QRadar, Elastic, Python, Java, JavaScript/Node.js, Go, REST APIs, JSON, STIX/TAXII, Bash, PowerShell, Git, CI/CD, Linux, Ubuntu, CentOS, RHEL, Kali, AWS, Docker, Windows Server, Active Directory, Mac OS X, LLM, MCP, RAG, SIEM, SOAR, EDR, NDR, MISP, OpenCTI, ThreatConnect, Anomali, ThreatQuotient, Cortex XSOAR, Splunk SOAR, Swimlane, Tines, Kafka, Spark, Elasticsearch