Principal Consultant - SIEM (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Principal Consultant - SIEM (Cybersecurity): Architect and validate SIEM solutions including Google SecOps, Microsoft Sentinel, CrowdStrike NG-SIEM, and Palo Alto XSIAM with an accent on log collection, detection engineering, and SOC operations. Focus on designing architectures, leading deployments and migrations, and integrating with SOAR and EDR platforms to meet risk reduction and visibility objectives.
Location: Remote, USA. Offices in Denver CO, Bozeman MT, Leawood KS, Dallas TX, Arlington VA. Willingness to travel required. Valid US driver’s license and passport required.
Salary: $134,600 - $184,500 Annual
Company
Cybersecurity consulting firm delivering SIEM and security operations services to strategic clients.
What you will do
- Articulate customer business and security requirements into SIEM use cases, architectures, and operational models.
- Lead SIEM platform design, deployment, migration, and optimization across modern platforms.
- Develop SOC transformation plans for detection, response, and analytics strategies.
- Rationalize SIEM and security analytics technologies against business needs, risks, and costs.
- Mentor consultants, provide technical direction, and present to technical/executive audiences.
- Contribute to thought leadership in SIEM, SOC, and security operations.
Requirements
- Bachelor’s degree and 10–15 years in information security/technology consulting; 8–10 years hands-on SIEM/security operations.
- Deep expertise in SIEM concepts: log collection/normalization, detection engineering, alerting, SOC workflows, SOAR/EDR integration.
- Strong experience with Google SecOps, Microsoft Sentinel, CrowdStrike NG-SIEM, or Palo Alto XSIAM.
- Knowledge of networking, OS (Windows/Linux), cloud, EDR, NDR, scripting (KQL, Python, PowerShell, YAML).
- Understanding of compliance (PCI DSS, GLBA, GDPR, US privacy laws).
- Strong client-facing, leadership, and communication skills.
Nice to have
- Relevant certifications (CISSP, CISM, CISA, SIEM-specific).
- Experience integrating SIEM into enterprise/cloud environments.
Culture & Benefits
- Work/life balance and remote work capabilities.
- Professional training resources.
- Employee Resource Groups for inclusion.
- Volunteer opportunities via “ Chips In”.
- Comprehensive compensation including variable incentives.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →