Principal SIEM Engineer

1 month ago


Washington, United States Capgemini Government Solutions Full time

Capgemini Government Solutions (CGS) LLC seeks a highly motivated SIEM engineer with experience managing both ArcSight and Splunk. The ArcSight/Splunk Engineer will be responsible for configuring the collection, parsing, correlation, and visualization of events for a critical operational system. Ability to demonstrate strong skills in system administration, log management, event correlation, and threat detection and will support building and maintaining a system that analyzes collected data and derives facts, inferences, and projections to determine if the systems being monitored are operating normally. The individual will lead efforts for configuring the systems which support analysts and end-users. The successful candidate will support the collection and extraction of data used to refine existing and new reports, analytics, and dashboards, and will be involved with the drafting and creation of reports and dashboards based on end-user requirements. She/he will also support the integration of resources across teams to better define the audit data being collected to eliminate false positives and false negatives from the data.


As a Principal SIEM Engineer (ArcSight & Splunk), you will be:


  1. Responsible for design, implementation and support of ArcSight or Splunk core components, including ESM, Loggers, Smart Connectors, Indexers, Forwarders, Search Heads, and Cluster Managers.
  2. Responsible for configuration and administration of ArcSight or Splunk ingestion and forwarding for new and existing applications and data.
  3. Responsible for troubleshooting ArcSight or Splunk dataflow issues between the various event flow components.
  4. Responsible for configuring and deploying data collection for a variety of operating systems and networking platforms.
  5. Responsible for creating Dashboards and Analytics within SIEM tools.
  6. Working with monitoring systems supporting auditing, incident response, and system health.
  7. Responsible for understanding of networking components and devices, ports, protocols, and basic networking troubleshooting steps.

Required Qualifications:


  1. US citizenship is required.
  2. Ability to obtain TS/SCI clearance.
  3. Bachelor's degree in information technology, Computer Science, Information Systems, or related field.
  4. A minimum of 8 years of related cybersecurity experience.
  5. A minimum of at least 4 years of experience with either ArcSight or Splunk.
  6. Experience in design, implementation, and support of ArcSight or Splunk core components, including: ESM, Loggers, Smart Connectors, Indexers, Forwarders, Search Heads, and Cluster Managers.
  7. Experience with configuration and administration of ArcSight or Splunk ingestion and forwarding for new and existing applications and data.
  8. Experience with troubleshooting ArcSight or Splunk dataflow issues between the various event flow components.
  9. Experience configuring and deploying data collection for a variety of operating systems and networking platforms.
  10. Experience creating Dashboards and Analytics within SIEM tools.
  11. Experience working with monitoring systems supporting auditing, incident response, and system health.
  12. Understanding of networking components and devices, ports, protocols, and basic networking troubleshooting steps.
  13. The ability to troubleshoot issues with log feeds, search time, and field extractions.
  14. The ability to troubleshoot problems related to data solutions.

Desired Skills:


  1. Network Security Operations Center (SOC) experience.
  2. Experience and talent in data correlation.
  3. Experience creating workflows for Incident Response within a SIEM Tool.
  4. GIAC Certified Incident Handler Certification.
  5. GIAC Cyber Threat Intelligence Certification.
  6. Cybersecurity certifications.
  7. Formal SIEM training.

Life at Capgemini


Capgemini supports all aspects of your well-being throughout the changing stages of your life and career. For eligible employees, we offer:


  1. Flexible work.
  2. Healthcare including dental, vision, mental health, and well-being programs.
  3. Financial well-being programs such as 401(k) and Employee Share Ownership Plan.
  4. Paid time off and paid holidays.
  5. Paid parental leave.
  6. Family building benefits like adoption assistance, surrogacy, and cryopreservation.
  7. Social well-being benefits like subsidized back-up child/elder care and tutoring.
  8. Mentoring, coaching and learning programs.
  9. Employee Resource Groups.
  10. Disaster Relief.

About Capgemini


Capgemini is a global leader in partnering with companies to transform and manage their business by harnessing the power of technology. The Group is guided every day by its purpose of unleashing human energy through technology for an inclusive and sustainable future. It is a responsible and diverse organization of over 360,000 team members in more than 50 countries. With its strong 55-year heritage and deep industry expertise, Capgemini is trusted by its clients to address the entire breadth of their business needs, from strategy and design to operations, fueled by the fast-evolving and innovative world of cloud, data, AI, connectivity, software, digital engineering and platforms. The Group reported in 2022 global revenues of 22 billion.


Get The Future You Want | www.capgemini.com


Disclaimer


Capgemini is an Equal Opportunity Employer encouraging diversity in the workplace. All qualified applicants will receive consideration for employment without regard to race, national origin, gender identity/expression, age, religion, disability, sexual orientation, genetics, veteran status, marital status or any other characteristic protected by law.

#J-18808-Ljbffr

  • Washington, United States Capgemini Full time

    Washington DC, District of Columbia, United StatesCapgeminiA global leader in consulting, technology services and digital transformation, we offer an array of integrated services combining technology with deep sector expertise.Capgemini Government Solutions (CGS) LLC seeks a highly motivated SIEM engineer with experience managing both ArcSight and Splunk....

  • Cloud SIEM Engineer

    2 weeks ago


    Washington, United States Apex Systems Full time

    Apex Systems, a World-Class Technology Solutions Provider, is seeking applicants for the below position on behalf of our client. Please apply if interested and qualified. Please note that only qualified candidates will be contacted.Position: Cloud SIEM EngineerLocations: Washington DC, Denver CO, Chicago IL - 3 days onsite/2 days remoteDuration: 12+ months...

  • Cybersecurity Expert

    3 weeks ago


    Washington, Washington, D.C., United States Capgemini Government Solutions Full time

    About the RoleCapgemini Government Solutions is seeking a highly skilled Principal SIEM Engineer to join our team. As a key member of our cybersecurity team, you will be responsible for designing, implementing, and supporting our ArcSight and Splunk core components.Your Key ResponsibilitiesDesign and implement ArcSight and Splunk core components, including...


  • Washington, United States Capgemini Full time

    Washington DC, District of ColumbiaCandidates are sought for a position as Principal SIEM Engineer with Capgemini Government Solutions (CGS) LLC.This is an exciting opportunity to utilize your knowledge and experience in managing both ArcSight and Splunk to configure the collection, parsing, correlation, and visualization of events for a critical operational...


  • Washington, United States Capgemini Full time

    We are seeking a Senior Cybersecurity Engineer with expertise in designing and implementing robust SIEM architectures to join our team at Capgemini.Job OverviewCandidates will have the opportunity to work on exciting projects, collaborate with talented professionals, and contribute to delivering innovative solutions that meet the ever-evolving needs of our...


  • Washington, Washington, D.C., United States Anvilogic Inc Full time

    Company OverviewAnvilogic Inc is a leading AI-powered multi-data platform SIEM company that is shaking up the legacy hold of platforms like Splunk at F1000 companies. Our mission is to democratize threat detection and hunting for today's SOC teams, making it easy to implement high-efficacy detection and hunting techniques without writing a single line of...


  • Washington, United States Sony Online Entertainment Full time

    Sony Corporation of America, located in New York, NY, is the U.S. headquarters of Sony Group Corporation, based in Tokyo, Japan. Sony's principal U.S. businesses include Sony Electronics Inc., Sony Interactive Entertainment LLC, Sony Music Entertainment, Sony Music Publishing and Sony Pictures Entertainment Inc. With some 900 million Sony devices in hands...


  • Washington, United States Sony Corporation of America Full time

    Sony Corporation of America, located in New York, NY, is the U.S. headquarters of Sony Group Corporation, based in Tokyo, Japan. Sony's principal U.S. businesses include Sony Electronics Inc., Sony Interactive Entertainment LLC, Sony Music Entertainment, Sony Music Publishing and Sony Pictures Entertainment Inc. With some 900 million Sony devices in hands...


  • Washington, United States Sony Full time

    Sony Corporation of America, located in New York, NY, is the U.S. headquarters of Sony Group Corporation, based in Tokyo, Japan. Sony's principal U.S. businesses include Sony Electronics Inc., Sony Interactive Entertainment LLC, Sony Music Entertainment, Sony Music Publishing and Sony Pictures Entertainment Inc. With some 900 million Sony devices in hands...

  • Principal Engineer

    6 days ago


    Washington, Washington, D.C., United States DAN Solutions Full time

    We are seeking a highly skilled Principal Engineer to join our team at DAN Solutions. As a key member of our engineering team, you will be responsible for designing and deploying secure, high-performance cross-domain solutions.The estimated salary for this position is $120,000 - $180,000 per year, depending on experience.This role involves collaboration with...


  • Washington, United States Apex Systems Full time

    Cloud Security Engineer- Posture Management Locations: Chicago, IL / Denver, CO / Washington, DC - 3X A WEEK ON-SITE $80/hour on W2 W2 ONLY Unable to work C2C Join our team as a Cloud SIEM Engineer and play a crucial role in enhancing our security posture. We seek a dedicated professional passionate about security and innovation to help protect our assets...


  • Washington, United States Apex Systems Full time

    Cloud Security Engineer- Posture Management Locations: Chicago, IL / Denver, CO / Washington, DC - 3X A WEEK ON-SITE $70-$80/hour on W2 W2 ONLY Unable to work C2C Join our team as a Cloud SIEM Engineer and play a crucial role in enhancing our security posture. We seek a dedicated professional passionate about security and innovation to help protect our...


  • Washington, United States Apex Systems Full time

    Cloud Security Engineer- Posture Management Locations: Chicago, IL / Denver, CO / Washington, DC - 3X A WEEK ON-SITE $70-$80/hour on W2 W2 ONLY Unable to work C2C Join our team as a Cloud SIEM Engineer and play a crucial role in enhancing our security posture. We seek a dedicated professional passionate about security and innovation to help protect our...


  • Washington, Washington, D.C., United States Solvere Technical Group Full time

    Job Title: Principal Mechanical EngineerAbout Us: At Solvere Technical Group, we are committed to delivering innovative solutions and exceptional service to our clients. Our team of experts is dedicated to providing cutting-edge technical expertise in the field of mechanical engineering.Job Summary: We are seeking a highly skilled Principal Mechanical...

  • Principal Engineer

    5 days ago


    Washington, United States LEO A DALY Full time

    We're proud to offer a challenging and rewarding opportunity for a talented Principal Engineer at LEO A DALY, with an estimated salary of $150,000 per year.This leadership role demands technical excellence, strategic thinking, and effective communication. As Principal Engineer, you'll oversee the work of EITs and designers, guide the development of junior...


  • Washington, United States Capgemini Government Solutions Full time

    Estimated salary: $120,000 per year.About the RoleWe are seeking a highly skilled Cybersecurity Architect to join our team at Capgemini Government Solutions. As a Principal SIEM Engineer, you will be responsible for designing, implementing, and supporting ArcSight and Splunk core components, including ESM, Loggers, Smart Connectors, Indexers, Forwarders,...

  • Principal Engineer

    2 weeks ago


    Washington, United States LinTech Global Full time

    About the JobWe are looking for a Principal Engineer - Software to lead our software development efforts at LinTech Global. As a senior member of our engineering team, you will be responsible for providing technical direction and guidance to junior engineers and ensuring the delivery of high-quality software solutions to our clients in the DoD sector.The...


  • Washington, Washington, D.C., United States IQUASAR LLC Full time

    We are seeking a highly skilled Principal Cloud Engineer for AWS Infrastructure to join our team at MSM Technology, LLC.The estimated salary for this position is $120,000 - $180,000 per year, depending on experience.Company OverviewMSM Technology, LLC is a leading provider of cutting-edge technologies and innovative solutions. We strive to provide a dynamic...


  • Washington, United States ZipRecruiter Full time

    Job SummaryWe are seeking a highly skilled Cybersecurity Tools Engineer to join our team at BayFirst Solutions, a subsidiary of Versar, Inc. This exciting opportunity will have you working on the DHS' Homeland Security Enterprise Network (HSEN) project, where you will be responsible for providing enhanced security monitoring and owning the creation,...


  • Washington, Washington, D.C., United States Pini Group Full time

    We are a community of talented individuals specializing in the design and management of complex engineering projects. With global know-how and local best practices, our multidisciplinary teams develop smart, cost-effective and sustainable solutions for various sectors.Infrastructure & TransportationOur team in Washington DC is seeking a Principal Structural...