Provide specialized engineering support for the Security Information and Event Management (SIEM) environment.
Work Location:
Hybrid onsite 3 days/week at Harrisburg, PA 17120
Interview Type:
In-person
Complete Description:
The role involves supporting the design, configuration, integration, optimization, and ongoing operation of the SIEM platform to enhance enterprise security monitoring, threat detection, incident response, and log management capabilities. This position reports to the Director and provides hands-on technical support for the SIEM environment. Strategic direction, governance, and overall program oversight remain with the Director.
Duties:
Engineer, configure, maintain, and optimize the enterprise SIEM platform, including Splunk and related security technologies.
Onboard new data sources and ensure logs are properly collected, parsed, normalized, indexed, and retained.
Develop and maintain correlation searches, alerts, dashboards, reports, detection rules, and other security monitoring content.
Integrate SIEM capabilities with security tools, cloud platforms, applications, infrastructure, and other enterprise systems.
Monitor SIEM platform performance, capacity, availability, and overall health and troubleshoot technical issues.
Tune alerts and detection logic to reduce false positives and improve the effectiveness of security monitoring.
Support SOC analysts and incident response personnel by providing technical expertise, queries, dashboards, and investigative capabilities.
Support upgrades, patches, configuration changes, testing, and implementation of supporting SIEM infrastructure.
Develop and maintain technical documentation operational procedures, system configurations, and knowledge-transfer materials.
Collaborate with SOC, infrastructure, cloud, networking, and application teams on SIEM-related initiatives.
Follow security standards, change-management processes, and applicable cybersecurity policies and requirements.
Skills:
Professional IT experience including at least three years supporting SIEM, security engineering, cybersecurity operations, or security monitoring technology - Required
Demonstrated experience onboarding and integrating security log sources using technologies such as syslog, APIs, agents, or cloud-native integration - Required
Experience troubleshooting complex SIEM, logging, data ingestion, or integration issues - Highly desired
Familiarity with cybersecurity frameworks such as NIST and MITRE Telecommunication&CK - Highly desired
Questions:
Do you understand, and will abide by, the provision that it is prohibited for government equipment to be taken or used outside of the United States by your contractors?
Where does your candidate currently reside?
Is your candidate able to interview in-person as requested?
Numbers & Facts
Location
Dauphin County, PA
Salary
$3,232.50–$3,330 Per Week
🎯
Be found by employers
5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.
Level up your application
Professional resume templates
Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.