Principal SIEM Engineer

4 days ago


Washington, United States Capgemini Full time
Washington DC, District of Columbia, United States

Capgemini

A global leader in consulting, technology services and digital transformation, we offer an array of integrated services combining technology with deep sector expertise.

Capgemini Government Solutions (CGS) LLC seeks a highly motivated SIEM engineer with experience managing both ArcSight and Splunk. The ArcSight/Splunk Engineer will be responsible for configuring the collection, parsing, correlation, and visualization of events for a critical operational system. The individual will lead efforts for configuring the systems which support analysts and end-users. The successful candidate will support the collection and extraction of data used to refine existing and new reports, analytics, and dashboards.

As a Principal SIEM Engineer (ArcSight & Splunk), you will be:

  • Responsible for design, implementation and support of ArcSight or Splunk core components, including ESM, Loggers, Smart Connectors, Indexers, Forwarders, Search Heads, and Cluster Managers.
  • Responsible for configuration and administration of ArcSight or Splunk ingestion and forwarding for new and existing applications and data.
  • Responsible for troubleshooting ArcSight or Splunk dataflow issues between the various event flow components.
  • Responsible for configuring and deploying data collection for a variety of operating systems and networking platforms.
  • Responsible for creating Dashboards and Analytics within SIEM tools.
  • Working with monitoring systems supporting auditing, incident response, and system health.
  • Responsible for understanding of networking components and devices, ports, protocols, and basic networking troubleshooting steps.

Required Qualifications:

  • US citizenship is required.
  • Ability to obtain TS/ SCI clearance.
  • Bachelor's degree in information technology, Computer Science, Information Systems, or related field.
  • A minimum of 8 years of related cybersecurity experience.
  • A minimum of at least 4 years of experience with either ArcSight or Splunk.
  • Experience in design, implementation, and support of ArcSight or Splunk core components.
  • Experience with configuration and administration of ArcSight or Splunk ingestion and forwarding.
  • Experience with troubleshooting ArcSight or Splunk dataflow issues.
  • Experience configuring and deploying data collection for various operating systems and networking platforms.
  • Experience creating Dashboards and Analytics within SIEM tools.
  • Experience working with monitoring systems supporting auditing, incident response, and system health.
  • Understanding of networking components and devices, ports, protocols, and basic networking troubleshooting steps.
  • The ability to troubleshoot issues with log feeds, search time, and field extractions.

Desired Skills:

  • Network Security Operations Center (SOC) experience.
  • Experience and talent in data correlation.
  • GIAC Certified Incident Handler Certification.
  • Cybersecurity certifications.
  • Formal SIEM training.

Disclaimer

Capgemini is an Equal Opportunity Employer encouraging diversity in the workplace. All qualified applicants will receive consideration for employment without regard to race, national origin, gender identity/expression, age, religion, disability, sexual orientation, genetics, veteran status, marital status or any other characteristic protected by law.

#J-18808-Ljbffr

  • Washington, United States Capgemini Government Solutions Full time

    Capgemini Government Solutions (CGS) LLC seeks a highly motivated SIEM engineer with experience managing both ArcSight and Splunk. The ArcSight/Splunk Engineer will be responsible for configuring the collection, parsing, correlation, and visualization of events for a critical operational system. Ability to demonstrate strong skills in system administration,...


  • Washington, United States Capgemini Government Solutions Full time

    Capgemini Government Solutions (CGS) LLC seeks a highly motivated SIEM engineer with experience managing both ArcSight and Splunk. The ArcSight/Splunk Engineer will be responsible for configuring the collection, parsing, correlation, and visualization of events for a critical operational system. Ability to demonstrate strong skills in system administration,...

  • DHS HSEN

    1 week ago


    Washington, United States Versar, Inc. Full time

    Job DescriptionJob DescriptionPosition SummaryBayFirst Solutions, a subsidiary of Versar, Inc., is seeking a Security Architect (SIEM & SOAR) to support the DHS’ Homeland Security Enterprise Network (HSEN) within the Office of the Chief Information Officer (OCIO), IT Operations, Enterprise Engineering Division (EED). This resource will be a member of a...


  • Washington, United States Sony Electronics Inc. Full time

    Sony Corporation of America, located in New York, NY, is the U.S. headquarters of Sony Group Corporation, based in Tokyo, Japan. Sony's principal U.S. businesses include Sony Electronics Inc., Sony Interactive Entertainment LLC, Sony Music Entertainment, Sony Music Publishing and Sony Pictures Entertainment Inc. With some 900 million Sony devices in hands...


  • Washington, United States Sony Full time

    Sony Corporation of America, located in New York, NY, is the U.S. headquarters of Sony Group Corporation, based in Tokyo, Japan. Sony's principal U.S. businesses include Sony Electronics Inc., Sony Interactive Entertainment LLC, Sony Music Entertainment, Sony Music Publishing and Sony Pictures Entertainment Inc. With some 900 million Sony devices in hands...


  • Washington, United States Sony Corporation of America Full time

    Sony Corporation of America, located in New York, NY, is the U.S. headquarters of Sony Group Corporation, based in Tokyo, Japan. Sony's principal U.S. businesses include Sony Electronics Inc., Sony Interactive Entertainment LLC, Sony Music Entertainment, Sony Music Publishing and Sony Pictures Entertainment Inc. With some 900 million Sony devices in hands...


  • Washington, United States Sony Online Entertainment Full time

    Sony Corporation of America, located in New York, NY, is the U.S. headquarters of Sony Group Corporation, based in Tokyo, Japan. Sony's principal U.S. businesses include Sony Electronics Inc., Sony Interactive Entertainment LLC, Sony Music Entertainment, Sony Music Publishing and Sony Pictures Entertainment Inc. With some 900 million Sony devices in hands...


  • Washington, United States Apex Systems Full time

    Cloud Security Engineer- Posture Management Locations: Chicago, IL / Denver, CO / Washington, DC - 3X A WEEK ON-SITE $80/hour on W2 W2 ONLY Unable to work C2C Join our team as a Cloud SIEM Engineer and play a crucial role in enhancing our security posture. We seek a dedicated professional passionate about security and innovation to help protect our assets...


  • washington, United States Apex Systems Full time

    Cloud Security Engineer- Posture Management Locations: Chicago, IL / Denver, CO / Washington, DC - 3X A WEEK ON-SITE $80/hour on W2 W2 ONLY Unable to work C2C Join our team as a Cloud SIEM Engineer and play a crucial role in enhancing our security posture. We seek a dedicated professional passionate about security and innovation to help protect our assets...


  • Washington, United States Quadrant Inc Full time

    Job ID: 24-04119 Principal Engineer - ML/AI Remote Pay From: $225,000 per year MUST: Experienced Principal Engineer 15+ years of hands-on experience in architecting, designing, and deploying scalable ML/AI solutions. Proven expertise in developing machine learning algorithms and NLP tools that drive business outcomes. Strong command of...


  • Washington, United States Apex Order Pickup Solutions Full time

    Apex Order Pickup Solutions is looking for a Principal Mechanical Engineer to join the team at our global headquarters in Mason, Ohio. Are you looking for a great opportunity to become a key mechanical technical contributor on various exciting new development initiatives in the IoT & SaaS space? We leverage many of the latest emerging technologies to bring a...


  • Washington, United States Zachary Piper Full time

    Zachary Piper Solutions is seeking aSr Linux Principal Systems Engineer to join our team in supporting a Global Government Client. This role is onsite with potential for a hybrid schedule in Washington, DC. The Sr Linux Principal Systems Engineerwill integrate Linux systems into a Windows environment.Responsibilities of the Sr Linux Principal Systems...


  • Washington, United States Wilson Engineering, LLC Full time

    Principal Civil Engineer: Water / WastewaterJob DescriptionWilson Engineering is driven by our core values of Professional Excellence, Building Long Lasting Relationships, Trust, and Community Involvement. We are committed to our clients and our employees with continuous improvement and technical expertise. Since 1967, we have been a regional leader in civil...

  • DHS HSEN

    1 week ago


    Washington, United States Versar, Inc. Full time

    Job DescriptionJob DescriptionPosition SummaryBayFirst Solutions, a subsidiary of Versar, Inc., is seeking a Senior Security Tools Engineer to support the DHS’ Homeland Security Enterprise Network (HSEN) within the Office of the Chief Information Officer (OCIO), IT Operations, Enterprise Engineering Division (EED). This Security Tools Engineer will be a...

  • DHS HSEN

    3 weeks ago


    Washington, United States VERSAR, INC. Full time

    Position SummaryBayFirst Solutions, a subsidiary of Versar, Inc., is seeking a Senior Security Tools Engineer to support the DHS' Homeland Security Enterprise Network (HSEN) within the Office of the Chief Information Officer (OCIO), IT Operations, Enterprise Engineering Division (EED). This Security Tools Engineer will be a member of a high functioning team...

  • DHS HSEN

    6 days ago


    Washington, United States ZipRecruiter Full time

    Position SummaryBayFirst Solutions, a subsidiary of Versar, Inc., is seeking a Senior Security Tools Engineer to support the DHS’ Homeland Security Enterprise Network (HSEN) within the Office of the Chief Information Officer (OCIO), IT Operations, Enterprise Engineering Division (EED). This Security Tools Engineer will be a member of a high functioning...


  • Washington, United States Versar Full time

    Position Summary BayFirst Solutions, a subsidiary of Versar, Inc., is seeking a Senior Security Tools Engineer to support the DHS’ Homeland Security Enterprise Network (HSEN) within the Office of the Chief Information Officer (OCIO), IT Operations, Enterprise Engineering Division (EED). This Security Tools Engineer will be a member of a high functioning...


  • Washington, United States SMART TECH SKILLS LLC Full time

    Job DescriptionJob DescriptionRequirements:5 or more years of experience in information security engineering roles.Proficiency in Azure administration and hybrid environments.Experience with application security, threat remediation, and vulnerability management tools.Experience in network security tools, including firewalls, VPNs, and intrusion detection...


  • Washington, Washington, D.C., United States Anvilogic Inc Full time

    At Anvilogic Inc, we're revolutionizing the cybersecurity landscape with our cutting-edge AI-powered Multi-Data Platform SIEM. As a Sales Engineer, you'll play a pivotal role in helping our clients unlock the full potential of our platform and overcome the complex challenges of detection engineering and threat hunting.Company OverviewAnvilogic is a leading...


  • Washington, United States General Dynamics Information Technology Full time

    Senior Principal Security Engineer for Hardware Security Module (HSM)Seize your opportunity to make a personal impact as a Senior Principal Security Engineer for HSMwith GDIT. A career in systems engineering means designing and implementing the systems that matter most. You will ensure that HSM services are functioning properly and securely across the...