Security information and event management detection engineer

AI-organized
Job description
The SIEM Detection Engineer helps identify, assess, and communicate security risks to HSS leadership and IT teams while serving as the owner of critical Security Operations monitoring technologies. The role manages SIEM operations, designs MITRE ATT&CK-aligned detections, and provides subject matter expertise on security standards and best practices.
Hard requirements
  • Bachelor’s degree in computer science, Information Security, or a related field (or equivalent experience)
  • Minimum 5 years of hands-on experience with enterprise SIEM platforms such as Microsoft Sentinel, Splunk, IBM QRadar, Securonix, or comparable solutions
  • Minimum 4 years of experience in SIEM administration, detection engineering, security monitoring, or a related cybersecurity role
  • Strong understanding of cybersecurity principles, threat detection, incident response, and SIEM technologies
  • Hands-on experience with enterprise SIEM platforms and endpoint detection and response (EDR) solutions
  • Proficiency in scripting and automation using PowerShell, Python, KQL, or similar languages
  • Experience with log ingestion, data normalization, correlation rules, detection use cases, and security monitoring
  • GIAC, CISSP, or comparable Information Security certification preferred