2d ago
Senior SIEM Detection Engineer
United States
$120k-$150k / year
full-time Remoteconsulting
๐ Tech Stack
๐ผ About This Role
You'll lead detection content development within the SIEM platform for a Managed Security team, creating and tuning rules to improve threat coverage. Your work will directly reduce false positives and enhance incident response workflows. You'll also partner with clients to align detections with their risk profiles.
๐ฏ What You'll Do
- Lead detection content development in Elastic, Palo XSIAM, or Crowdstrike
- Manage health and performance of detection content
- Design dashboards and visualizations for triage and hunting
- Collaborate on SOAR workflow integration with Swimlane
๐ Requirements
- Experience with Elastic Security core components (Elasticsearch, Logstash, Kibana)
- Strong SIEM administration with detection use cases and correlation logic
- Scripting in Python or similar for automation of detection tasks
- 2โ4 years of experience in Security Detection Engineering
โจ Nice to Have
- Incident handling/response experience
- Certifications: CISSP, GCIA, GCIH, GPYC, GMON, GCDA, Elastic Certified Engineer
- Knowledge of common security technologies (IDS, Firewall, EDR)
๐ Benefits & Perks
- ๐๏ธ Remote work flexibility
- ๐ฅ Health insurance coverage
- ๐ฐ Competitive salary (120k-150k USD)
๐จ Hiring Process
Estimated timeline: 2-4 weeks ยท AI estimate
- 1Recruiter Screenยท 30 min
- 2Technical Interviewยท 60 min
- 3Client Interviewยท 45 min
0 0 0