SIEM Engineer
Core
Develop and implement the organization's security monitoring strategy to safeguard data, systems, and networks against potential threats.
Role type
SIEM Engineer
Builds
Security monitoring architecture, detection rules, dashboards, and reports
Domain
Cybersecurity / Information Systems
Required skills
SIEM solutions, Security Data Lake, log collection, log ingestion, log parsing, log normalization, detection rule development, incident investigation support, security architecture frameworks, cybersecurity frameworks
Preferred skills
Python, Bash, cloud-hosted infrastructure, AI agents, agentic systems, network security, endpoint protection, incident response
Technologies
Splunk, Fluentd, Cribl, QRadar, Elastic, ArcSight, Sentinel, Snowflake, AWS
Responsibilities
Configure and maintain SIEM and Security Data Lake components; Monitor health and performance of assigned components; Implement and test log source integrations; Validate log data quality and develop detection rules; Support incident investigations; Maintain documentation and support audits
Seniority
Mid-level, hands-on IC