Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Senior SIEM Engineer

Valiant Solutions

Position Description

Valiant Solutions is seeking a Senior SIEM Engineer to join our rapidly growing and innovative cybersecurity team!

The Senior SIEM Engineer serves as the technical lead for the design, deployment, tuning, and sustainment of the enterprise Security Information and Event Management (SIEM) platform that supports the client's Security Operations Center (SOC). This role owns the health and performance of the SIEM environment that ingests logs and telemetry across endpoint, network, cloud, operating system, and application layers, and feeds the 24x7x365 monitoring mission. Working alongside SOC analysts, threat hunters, engineering teams, and the client's stakeholders, the Senior SIEM Engineer translates detection requirements into production-ready content, integrates the SIEm with SOAR, EDR, CDM, and identity platforms, and builds the dashboards, correlation searches, and data models that allow Tier 1 through Tier 3 analysts to triage, investigate, and respond to threats within the client's's contractual timeframes. The position requires deep, hands-on SIEM expertise, strong cloud and federal cybersecurity context, and the judgment to balance ingest costs, data quality, detection coverage, and compliance with OMB M-26-14, NIST SP 800-53, NIST SP 800-61, and NIST SP 800-137.

Named one of the Best Places to Work in the Washington DC area for 12 consecutive years , Valiant is proud of our employee-centric culture and commitment to excellence. If you are interested in learning more about Valiant and this opportunity, we invite you to apply now!

Location: Remote, ideally in the Washington, DC Metro Area. Remote work requires a high level of trust in our employees, and we strictly adhere to the details outlined in our Remote Work Policy below. 

Eligibility Requirements: U.S. Citizenship is required due to federal contract obligations, and applicants must be able to successfully pass a federal background investigation .

Required Experience:

  • Eight or more years of cybersecurity engineering experience, with at least five years dedicated to SIEM architecture, administration, and content development.
  • Hands-on experience designing and operating distributed SIEM deployments at enterprise scale, including indexer clusters, search head clusters, heavy and universal forwarders, deployment servers, and license management.
  • Demonstrated experience writing, tuning, and optimizing queries, correlation searches, data models, accelerated summaries, lookups, and macros.
  • Working knowledge of security focused SIEM components, including notable event framework, risk-based alerting, asset and identity frameworks, and adaptive response actions.
  • Experience in onboarding diverse data sources at scale, including operating system logs, network flow and packet data, cloud platform logs (AWS CloudTrail, GuardDuty, VPC Flow, Config), endpoint telemetry, application logs, and identity provider logs.
  • Experience integrating SIEM with SOAR platforms, Endpoint Detection and Response tools, Continuous Diagnostics and Mitigation (CDM) data feeds, vulnerability management platforms, and ticketing systems such as ServiceNow.
  • Working knowledge of AWS GovCloud services and the design patterns used to forward, normalize, and secure log data from cloud-native sources.
  • Familiarity with the MITRE ATT&CK framework and experience translating adversary techniques into SIEM detection content.
  • Working knowledge of NIST SP 800-53, NIST SP 800-61, and NIST SP 800-137, and the ability to map SIEM controls and continuous monitoring practices to those frameworks.
  • Experience supporting incident response activities, including building investigation dashboards, preserving log evidence, and producing artifacts for post-incident reporting.
  • Strong scripting and automation skills in at least one of Python, Bash, or PowerShell, and comfort with version control using Git.
  • Beneficial Splunk certifications: Splunk Core Certified Power User and Splunk Enterprise Certified Admin. Splunk Certified Architect, Splunk Enterprise Security Certified Admin, or Splunk Core Certified Consultant is strongly preferred.
  • Required to obtain and maintain a Non-Sensitive / High Risk (Public Trust) security clearance at the Tier 4/6c level.
  • Strong written and verbal communication skills, with the ability to brief technical findings to SOC leadership, ISSOs, and senior Government officials.

Responsibilities:

  • Lead the architecture, deployment, upgrade, and sustainment of the SIEM environment supporting the client's SOC, including indexer and search head clusters, forwarders, and supporting infrastructure.
  • Monitor SIEM platform health, license usage, indexing latency, search performance, and ingest rates, and proactively address capacity, performance, and availability issues.
  • Onboard new data sources by defining requirements, configuring inputs and forwarders, building parsing and field extractions, and validating Common Information Model (CIM) compliance.
  • Develop, tune, and maintain correlation searches, notable events, dashboards, reports, and data models that support Tier 1 triage within fifteen minutes of detection and Tier 2 analysis within four hours of escalation.
  • Build and maintain SOC dashboards that provide real-time visibility into the client's security posture, supporting both day-to-day operations and executive reporting.
  • Translate detection requirements from threat hunters, CTI analysts, and engineering teams into production SIEM content mapped to the MITRE ATT&CK framework.
  • Integrate SIEM with SOAR, EDR, NDR, DLP, CDM, vulnerability management, and identity platforms to support automated triage, enrichment, and response.
  • Reduce false positive rates and alert fatigue by tuning correlation rules, refining thresholds, and applying risk-based alerting techniques.
  • Support incident response by building investigation queries, producing timeline reconstructions, preserving evidence, and contributing artifacts to initial incident reports within one hour of confirmation and final reports within seventy-two hours.
  • Author and maintain Engineering Design Documents, Standard Operating Procedures, runbooks, and configuration guides for the SIEM environment, and review them on the cadence required by the SOC CONOPS.
  • Partner with the Security Architect and engineering leads to align SIEM design with Zero Trust principles, the client's Technology Standards, and the agency's broader cybersecurity reference architecture.
  • Manage SIEM-related changes through the client's change control process, including impact assessments, back-out plans, and presentations to the Engineering Review Board and Change Control Board.
  • Provide knowledge transfer and informal training to SOC analysts, engineers, and system owners on SIEM usage, search development, and dashboard interpretation.
  • Apply secure configuration baselines, role-based access controls, and audit logging to the SIEM environment to meet federal compliance requirements.
  • Track and report on SIEM-related metrics, including ingest volume by source, detection coverage by MITRE technique, mean time to detect, and platform availability.
  • Stay current on SIEM product roadmap items, new applications and add-ons, and emerging detection techniques, and recommend improvements to the client's SIEM strategy.

About Valiant Solutions

Valiant Solutions is a security-focused IT solutions provider with public clients nationwide. Named one of the fastest growing privately held companies by Inc. 5000, Washington Technology’s Fast 50, and Washington Business Journal’s Best Places to Work in the D.C. area, Valiant Solutions prides itself on providing its employees with great benefits and career development opportunities. As a company, we are just as committed to growing careers as we are to building world-class IT solutions, all while enjoying an unparalleled work-life balance. We are in a phase of tremendous growth and building the team that will take us to the next level. We seek people whose talents and accomplishments will contribute to a thriving company, who have the character to support their capacity, and can make a positive impact on our culture. Alongside our talented team, you’ll learn to think quickly on your feet and expand your own personal and professional skill set. Our management team will inspire you to consider new perspectives and challenge you to become a better practitioner in the fast-paced industry of IT security. We hire people we respect – and we trust them to deliver results leveraging their expertise. If you would enjoy working in a dynamic environment as part of a stellar team of professionals, then we invite you to apply online today.

Benefits Snapshot (includes, but not limited to) Valiant pays 99% of the Medical, Dental, and Vision Coverage for Full-time EmployeesValiant contributes 25% towards Health Coverage for Family and Dependents100% Paid Short Term Disability and Life Insurance Policy for Full-time Employees100% Paid Certifications401K Matching up to 4%Paid Time OffPaid Federal HolidaysWellness & Fitness ProgramValiant University – Online Education and Training PortalFSA programs for: Medical Costs, Dependent Care, Transit, and ParkingReferral Bonuses

Remote Work Policy  

Remote work necessitates a high level of trust in our employees. To ensure that employee performance does not suffer in a remote work environment, all employees who telecommute are expected to have a quiet and distraction-free workspace with adequate internet, dedicate their full attention and availability to their job duties during working hours, and maintain a schedule during core business hours that align with those of their coworkers and Valiant's clients. In alignment with Valiant's inclusive and engaging environment, cameras are encouraged and can be required to be on during virtual video conferences. Additionally, in alignment with the Office of the Inspector General’s effort to eliminate conflicting employment, all Valiant employees are required to disclose any current or future outside employment engagements. During onboarding and throughout employment, employees must disclose any current activities or intent to engage in outside employment or other professional activities and obtain written approval. Employees may not solicit or conduct any outside business during core business hours for Valiant Solutions and our clients.

Equal Employment Opportunity

Valiant Solutions is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, age, disability, genetic information, marital status, or veteran status, in accordance with applicable law.

Physical Demands

Sitting or standing at a desk for prolonged periods of time and consistent operation of a computer. Frequent communication and exchanging of accurate information via electronic communication, phones, and in person. Occasionally lift and/or move moderate amounts of weight, typically less than 20 pounds. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions of the job.

Authorization to Share Resume and Personal Information

By submitting your resume for this position, you authorize Valiant Solutions to share your resume, as well as, personal information included on the resume, with its subsidiaries, affiliates and teaming partners for the purpose of considering you for this position and other available positions requiring comparable skills, education and experience. Should Valiant Solutions or its affiliates and teaming partners wish to initiate pre-employment discussions, you will be asked to complete an employment application and related employment documents.

#LI-KW1

Vacancy posted 6 hours ago
Similar jobs that could be interesting for youBased on the Senior SIEM Engineer in United States vacancy
  • $130k - $145k

     ...Senior Siem Engineer Everforth ECS is seeking a senior siem engineer to work in our washington, dc office. please note: this position is contingent upon contract award. we are seeking a cleared senior siem engineer to support security monitoring, detection engineering... 
    Senior
    Contract work
    Work at office

    ECS Limited

    Washington DC
    3 days ago
  • Join a forward-thinking company as a SIEM Platform Specialist, where you will design and deploy cutting-edge security solutions. This role involves working closely with business units to create network hierarchies, troubleshoot SIEM issues, and develop custom API connectors... 
    Senior

    TechDigital Group

    Dallas, TX
    4 days ago
  • CrowdStrike, Inc. is seeking a Senior Engineer II for their NG-SIEM team in Austin, TX. This hybrid role involves ensuring the reliability and scalability of the security industry's largest SIEM platform. The ideal candidate has 10+ years of experience in software engineering... 
    Senior

    Koitecc Solutions

    Austin, TX
    3 days ago
  • $77.5k - $140.9k

     ...take your career wherever you want it to go.  Join EY and help to build a better working world. Job Title: CyberSecurity SIEM Engineer (Senior SDC) About the job At EY, you’ll have the chance to build a career as unique as you are, with the global scale, support... 
    Senior
    Work experience placement
    Summer holiday
    Flexible hours

    EY

    Rochester, NY
    3 days ago
  • $113k - $188k

     ...Active Top Secret SCI (TS/SCI) As a Senior Consultant in Guidehouse's cyber practice...  ...implementation, and continuous improvement of SIEM capabilities for a federal law...  ...environment. You'll combine hands on SIEM engineering with client facing consulting: translating... 
    Senior
    Temporary work
    Flexible hours

    Guidehouse

    Washington DC
    5 days ago
  •  ...ManTech is looking for a motivated Principal Cyber Systems Engineer to join our team in Chantilly, VA. You will leverage your technical background to support complex cybersecurity initiatives, delivering engineering expertise across various security technologies. The... 
    Senior

    ManTech

    Chantilly, Loudoun County, VA
    3 days ago
  •  ...Senior Engineer II NG-SIEM EPICS Team Our mission is to make all of our customers' security-relevant data continuously available for automated detection and response, threat hunting, and other Falcon platform use cases. To enable this, the systems behind NG-SIEM (next... 
    Senior
    Hourly pay
    Permanent employment
    Temporary work
    Work at office

    CrowdStrike

    Austin, TX
    23 hours ago
  •  ...Gartner is hiring a Senior Principal in Stamford, Connecticut, responsible for creating insights and strategies for clients in the Business...  ...matter expertise in Security Information and Event Management (SIEM), and a strong ability to engage with executive stakeholders.... 
    Senior

    Gartner

    Stamford, CT
    3 days ago
  • $55 - $70 per hour

     ...Description Senior SIEM & Detection Engineer (Contract) Mandatory Shift: 3:00 PM – 11:00 PM EDT Contract Length: 6 months (extension possible) Work Model: Remote Start: ASAP The goal is to leave the environment cleaner, quieter, and more defensible than... 
    Senior
    Contract work
    Temporary work
    Immediate start
    Remote work
    Shift work
    Appleton, WI
    4 hours ago
  •  ...team solving these complex problems, then Rotary and Mission Systems is the place for you. THE WORK We are seeking a talented engineer to report directly to the Manager of RF & Microwave Engineering. The Sr RF Engineer will significantly contribute to the design... 
    Senior
    Flexible hours

    Lockheed Martin

    Moorestown, NJ
    -34
  • COMFORT SYSTEMS is seeking a Splunk Content Developer in Arlington, Virginia to support a strategic cybersecurity task order. The ideal candidate must have extensive experience in system administration and Splunk, managing installations in both on-premise and cloud environments...
    Senior

    COMFORT SYSTEMS

    Arlington, VA
    4 days ago
  • $150k - $200k

     ...building a high-growth CrowdStrike Next Gen SIEM and MDR Enablement practice, and we are seeking...  ..., and managed response services. As a Senior Manager / Principal Consultant, you will oversee a team of detection engineers and client delivery professionals deploying... 
    Senior
    Temporary work
    Remote work
    United States
    14 days ago
  • $100k

     ...Frameworks. ~ Experience developing detection use cases using a SIEM (e.g Splunk, Elastic), big data/data lake query platforms (e.g....  ..., and/or other benefits.    Location The Galvanick engineering team is based in Seattle. Given that we are an early-stage startup... 
    Senior
    Permanent employment
    Work at office
    Relocation

    Galvanick

    Seattle, WA
    29 days ago
  •  ...Quincy, Massachusetts is seeking an Advanced Defensive - Detection Engineer to enhance its cybersecurity capabilities. The role includes...  ...background in detection engineering, threat hunting, and experience with SIEM and EDR tools. A Bachelor’s degree in a relevant field is... 
    Senior

    STATE STREET CORPORATION

    Quincy, MA
    4 days ago
  • $110k - $120k

     ...Provide technical leadership for the IT Engineering team, raising the bar on execution and quality...  ...to cross-functional stakeholders and senior leadership without the director in the room...  ...environments Experience with logging, SIEM integrations, auditing, monitoring, and... 
    Senior
    Full time

    Beyond Finance, Inc.

    Chicago, IL
    23 hours ago
  •  ...Overview SUMMARY Serve as a senior member of the Cybersecurity Engineering team responsible for designing, implementing, and optimizing enterprise...  ...architecture and operational maturity of the organization's SIEM platform with a focus on Elasticsearch and security... 
    Senior
    Work at office

    Red Lobster

    Orlando, FL
    4 days ago
  •  ...Senior Detection And Response Engineer Northwood is a modern space infrastructure company focused on connecting space and Earth. The world runs on...  ...tune detection rules - Develop custom detection logic for SIEM platforms that can identify threats specific to satellite... 
    Senior
    Permanent employment

    Northwood Space

    Los Angeles, CA
    1 day ago
  •  ...MANTECH seeks a motivated, career and customer-oriented Senior Principal Cyber Systems Engineer to join our team in Chantilly, VA . The Senior...  ...firewalls, web application firewalls, proxy servers, and SIEMs Applying Systems Engineering best practices specific... 
    Senior
    Work at office

    MANTECH

    Chantilly, Loudoun County, VA
    -34
  • $103.14k - $126.06k

     ...including your own. We're actively seeking a talented Senior Endpoint Projection Engineer to join our Cloud Shared Services team in Charlotte,...  ...~ Ensure alerts integrate effectively with SIEM and ITSM platforms ~ Support triaging and investigating... 
    Senior
    Flexible hours

    Pacific Life

    Charlotte, NC
    2 days ago
  •  ...Senior Threat Detection Engineer Tenex is seeking a highly motivated and skilled Senior Threat Detection Engineer to join our growing Security Operations...  ...) solutions Security Information and Event Management (SIEM) systems Network security devices (firewalls, intrusion... 
    Senior
    Remote work

    TenEx

    United States
    1 day ago
  • $146k - $184k

     ...Senior Threat Detection and Response Engineer At CarGurus, our mission is to give people the power to reach their destination. We started as a small team...  ...and data engineering, especially centralized logging, SIEM tools, and data lakes Desire to measure the success... 
    Senior
    Flexible hours

    Venturefizz Product Management Community

    Boston, MA
    1 day ago
  •  ...Job Description Job Description Overview Senior Cybersecurity Engineer LOCATION: Eglin AFB, FL JOB STATUS: Full-time CLEARANCE:...  ...experience with security tools and technologies, such as SIEM, intrusion detection/prevention systems, vulnerability scanners... 
    Senior
    Full time
    Contract work

    Astrion

    Eglin Air Force Base, FL
    15 days ago
  • $148.5k - $223.9k

     ...future of Salesforce. Overview of the Role: As a Senior Threat Assessment Engineer on the Environmental Threat Assessment team, you will utilize...  ...and events from various security tools like EDR, CSPM, SIEM, etc. ~ In-depth understanding of cloud security and... 
    Senior

    Salesforce.Com Inc

    Seattle, WA
    4 days ago
  • $85.19k - $185k

     ...cybersecurity, network architecture, reverse engineering, software and hardware development...  ...a division of HII, is hiring a part-time Senior CND Engineer to support our team in delivering...  ...WANs 4+ years experience with SIEM and/or vulnerability scanner products... 
    Senior
    Hourly pay
    Part time
    Work experience placement
    Local area
    Worldwide

    Huntington Ingalls Industries

    Springfield, VA
    1 day ago
  • $243.29k - $295.25k

     ...shared experiences for everyone. About the role: As a Senior Security Engineer on the Detection and Response (D&R) team at Roblox, you’ll...  ...like Terraform and query languages like SQL. * Hands on with SIEM, EDR, NDR, and SOAR technologies: You have on-boarded logs... 
    Senior
    Full time
    H1b
    Work at office
    Local area
    Visa sponsorship
    Monday to Friday

    Roblox

    San Mateo, CA
    3 days ago
  • $140k

     ...Job Description Job Description Job Title: Senior Cybersecurity Engineer Location: 405 Lexington Avenue, New York, NY 10174 Duration: FTE...  ...and products: Security Information and Event Management (SIEM), security automation, Data Loss Prevention (DLP), endpoint... 
    Senior
    Work at office
    2 days per week
    3 days per week

    The Rockridge Group

    New York, NY
    20 days ago
  • $100k - $130k

     ...needs. Job Summary As a member of the Level 3 Engineering team, this role serves as a senior technical resource and one of the highest escalation points...  ...and alerting through Aria Operations for Logs and SIEM integration. Serve as VMware subject matter expert... 
    Senior
    Work at office
    Local area
    Worldwide

    ComPsych

    Chicago, IL
    3 days ago
  •  ...Senior Threat Detection Engineer Job Category: Information Technology Location: Poland - Krakow | Poland - Remote Meet Our Team: As a member...  ...technologies including a sophisticated cloud-native SIEM, advanced threat intelligence platforms, and cloud-native... 
    Senior
    Work experience placement
    Remote work
    Flexible hours

    Pegasystems

    United States
    23 hours ago
  •  ...The Senior PBAC Engineer helps architect, deploy and operate a secure application infrastructure that aligns with business needs. The position...  ...& compliance pipelines by streaming PBAC decision logs to SIEM/compliance dashboards and support of reporting needs Support... 
    Senior
    Remote work

    EPAM Systems Inc

    Chicago, IL
    6 hours ago
  •  ...Senior Cybersecurity Engineer Advansys is a leading technology solutions provider specializing in delivering innovative, secure, and scalable...  ...infrastructure including firewalls, IDS/IPS, endpoint protection, and SIEM systems. Lead security incident identification,... 
    Senior
    Remote work

    Advansys

    United States
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Senior SIEM Engineer. Be the first to apply!