Назад
Company hidden
8 дней назад

Security Engineer (SIEM)

Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
middle
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Security Engineer (SIEM): Administering and optimizing SIEM platforms and monitoring tools for the Federal Communications Commission (FCC) with an accent on detection engineering and log management. Focus on integrating data sources, tuning correlation logic to reduce false positives, and supporting SOC operations within cloud and hybrid environments.

Location: Remote (USA). Must be able to obtain a Public Trust clearance.

Company

hirify.global provides professional engineering and technical support services for US federal government programs.

What you will do

  • Administer, configure, and optimize SIEM platforms and monitoring tools.
  • Integrate and onboard new data sources, ensuring proper normalization and validation.
  • Develop and tune detection rules, alerts, and correlation logic to reduce false positives.
  • Collaborate with SOC/NOC teams to improve detection and response capabilities.
  • Perform detection engineering and continuous improvement of monitoring outputs.
  • Participate in incident investigations, threat hunting, and root cause analysis.

Requirements

  • Bachelor’s degree in cybersecurity, IT, or related field (or equivalent experience).
  • Demonstrated experience in enterprise cybersecurity, SIEM engineering, or monitoring environments.
  • Proficiency with enterprise SIEM platforms (e.g., Splunk, Sentinel, QRadar).
  • Knowledge of cybersecurity frameworks such as NIST, RMF, and FISMA.
  • Experience with cloud and hybrid environments including Azure, AWS, and M365.
  • Ability to obtain a Public Trust clearance.
  • CompTIA Security+ certification required.

Nice to have

  • CISSP, GIAC (GCIA, GCIH), or SIEM platform certifications.
  • Experience with automation and SOAR platforms.
  • Knowledge of Zero Trust Architecture and modern security frameworks.
  • Scripting experience in Python or PowerShell.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →