SIEM Engineer

United StatesUnited States·Columbiamid
OtherEngineer
0 views0 saves0 applied

Quick Summary

Key Responsibilities

· Design, implement, configure, and maintain Palo Alto Cortex XSIAM and Cortex XDR platforms. · Support multi-tenant SIEM environments, including tenant onboarding, role-based access,

Requirements Summary

Executive management, Business users, Project managers, Technical teams, External stakeholders EducationBachelor's degree in Information Technology

Technical Tools
OtherEngineer

Founded on the principle that the right person in the right role can change everything, SEU-USA is more than just a staffing agency. Consequently, we are a strategic partner dedicated to building the powerful workforces that drive business success across the USA.

Responsibilities

~2 min read

We are seeking an experienced Security Architect Consultant – SIEM Engineer to support the Department of Administration's Division of Information Security. This role is focused on the design, implementation, administration, optimization, and operational support of Palo Alto Cortex XSIAM and Cortex XDR in a large-scale, multi-tenant enterprise security environment.

The successful candidate will work alongside enterprise security architects, engineers, and a 24x7 Security Operations Center (SOC) team to enhance SIEM, XDR, detection engineering, automation, incident response, and security monitoring capabilities across multiple state agencies. This role also provides secondary support for Cribl data pipelines, log management, and telemetry onboarding.

·        Design, implement, configure, and maintain Palo Alto Cortex XSIAM and Cortex XDR platforms.

·        Support multi-tenant SIEM environments, including tenant onboarding, role-based access, data segregation, dashboards, and reporting.

·        Develop and optimize: Detection rules, Correlation rules, Analytics, Threat hunting queries, Watchlists, Alert suppression logic

·        Design and manage Cribl log pipelines, including: Data modeling, Parsing, Normalization, Enrichment, Routing, Filtering, Replay, Log ingestion

·        Integrate telemetry from cloud, endpoint, network, identity, SaaS, Linux, Windows, and custom applications.

·        Develop and maintain automated playbooks and response workflows using Python and Bash.

·        Support incident response, threat hunting, and SOC operations.

·        Create and maintain: Runbooks, SOPs, Architecture diagrams, Data flow documentation, Knowledge articles

·        Support Tier 1–Tier 3 SOC analysts through troubleshooting, tuning, and knowledge transfer.

·        Monitor SIEM health, ingestion, availability, detection coverage, false positives, MTTD, MTTR, and operational metrics.

·        Ensure platform resilience, backup, recovery, lifecycle management, and change control.

·        Collaborate with security architects, engineers, analysts, and business stakeholders to improve enterprise security capabilities.

Requirements

~1 min read
  • Hands-on experience with Palo Alto Cortex XSIAM and Cortex XDR architecture, implementation, administration, and operational support.
  • Experience supporting enterprise SIEM platforms within large multi-tenant environments.
  • Experience supporting 24x7 Security Operations Centers (SOC).
  • Strong detection engineering experience including:
    • Correlation rules
    • Threat hunting
    • Analytics
    • Dashboards
    • Alert tuning
    • False-positive reduction
  • Hands-on Cribl administration including:
    • Data modeling
    • Log pipeline design
    • Parsing
    • Normalization
    • Enrichment
    • Routing
    • Ingestion
  • Experience developing automation using:
    • Python
    • Bash
  • Experience onboarding cloud, endpoint, network, identity, SaaS, Windows, Linux, and custom application telemetry.
  • Strong knowledge of:
    • Enterprise security architecture
    • Incident response
    • Secure system design
    • Networking
    • Identity & Access Management
    • Cybersecurity frameworks

Nice to Have

~1 min read

·        Excellent written and verbal communication skills.

·        Strong ability to create: Business Requirements Documents (BRD), Functional Requirements Documents (FRD), Use Cases, Process Documentation

·        Experience gathering requirements through stakeholder interviews, policy documents, regulations, and business rules analysis.

·        Knowledge of business modeling techniques and graphical process flow tools.

·        Ability to communicate effectively with: Executive management, Business users, Project managers, Technical teams, External stakeholders

  • CISSP
  • Security+
  • GIAC
  • Palo Alto Cortex Certification
  • Cribl Certification
  • Other relevant SIEM or cybersecurity certifications

Location & Eligibility

Where is the job
Columbia, United States
On-site at the office
Who can apply
US

Listing Details

First seen
September 26, 2026
Last seen
September 27, 2026

Posting Health

Days active
0
Repost count
0
Trust Level
57%
Scored at
September 27, 2026

Signal breakdown

freshnesssource trustcontent trustemployer trust
Newsletter

Stay ahead of the market

Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.

A
B
C
D
Join 12,000+ marketers

No spam. Unsubscribe at any time.

sunshine-enterprise-usa-llcSIEM Engineer