SIEM Engineer III

4 weeks ago


Fairfax, United States ECS Full time

ECS is seeking a SIEM Engineer III to work in our Fairfax, VA office.

Job Description:

Are you passionate about the ever-evolving field of cybersecurity and ready to embark on a career with a positive and lasting impact? Join our dynamic team at ECS, a leading provider of solutions in science, engineering, and advanced technologies, including cloud, cybersecurity, artificial intelligence (AI), data, and enterprise transformation solutions. As a SIEM Engineer II, you'll play a crucial role in our mission to safeguard organizations against cyber threats. If you're seeking a challenging yet rewarding position where you can enhance your skills, collaborate with experts in the field, and contribute significantly to the protection of digital assets, this opportunity is perfect for you.

Our SIEM Engineer III team members are at the forefront of our Managed Security Services Provider (MSSP) team, responsible for strengthening the digital defenses of our clients. Your primary focus will be on ensuring the reliability and security of our Security Information and Event Management (SIEM) systems, which are often the first line of defense against cyber adversaries. You'll delve deep into the intricacies of SIEM technology, assist in implementing cutting-edge solutions, and work closely with our experienced team to detect and mitigate emerging threats. If you're a tech-savvy individual with a strong desire to protect organizations from the evolving cyber threat landscape, this role offers a unique opportunity to hone your skills and make a significant impact in the world of cybersecurity.

Responsibilities

  • Independently lead the installation, configuration, and deployment of SIEM solutions for clients, ensuring customization to their unique needs and compliance requirements. Act as the primary point of contact for complex deployments.
  • Collaborate with senior engineers in the design and planning of deployment architectures. Lead the implementation of complex configurations tailored to specific security needs.
  • Perform and oversee advanced routine maintenance on SIEM systems, including critical patches, updates, and strategic upgrades. Optimize system performance and reliability through expert adjustments and tuning.
  • Lead the integration of the SIEM platform with a diverse array of tools and systems, ensuring seamless interoperability and enhanced security posture.
  • Develop and implement sophisticated scripts to automate tasks and enhance interactions between the SIEM and other systems, improving efficiency and reducing manual effort.
  • Conduct advanced system health checks, proactively monitor SIEM performance, and implement preemptive measures to maintain system integrity.
  • Independently document and resolve complex issues, leveraging deep technical expertise and collaborative problem-solving skills.
  • Take charge of SIEM configuration management, making strategic adjustments to optimize performance and data accuracy, and adapting to changes in the monitored environment.
  • Maintain detailed documentation of SIEM system configurations, operations, and procedures. Ensure documentation is comprehensive, up-to-date, and adheres to compliance standards.
  • Maintain detailed documentation of SIEM system configurations, operations, and procedures. Ensure documentation is comprehensive, up-to-date, and adheres to compliance standards.
  • Act as the primary liaison with vendors for advanced support and resolution of complex product-related issues.
  • Engage in and sometimes lead expert-level training on SIEM features and capabilities. Facilitate knowledge transfer sessions to elevate team expertise.
  • Provide high-level support and strategic advice to security analysts, ensuring that the SIEM system's capabilities are fully leveraged to meet security operations' needs.
  • Drive continuous improvement initiatives for SIEM-related processes, focusing on efficiency gains and advanced security enhancements.
  • Participate in continuous improvement initiatives to streamline SIEM-related processes.
  • Provide strategic feedback and suggestions for automating repetitive tasks and improving system configurations based on expert knowledge and experience.
Required Skills:

At least three years of experience demonstrating proficiency in the following skills:
  • Proven experience with SIEM technologies, concepts, and common platforms such as Elastic, Splunk, IBM QRadar, or LogRhythm.
  • Experience with system administration for various operating systems, particularly those commonly used in corporate environments like Windows, Linux, and MacOS.
  • A strong grasp of fundamental cybersecurity principles, including threat landscapes, security protocols, and various types of cyberattacks.
  • Solid experience with scripting languages such as Python, PowerShell, or Bash for automation of tasks and integration of different systems with the SIEM.
  • Aptitude for troubleshooting and problem-solving, including being able to logically deduce where issues may lie and how to correct them.
  • The ability to work effectively in a team environment, often collaborating with other engineers, IT staff, and security analysts.
  • Good verbal and written communication skills for documenting processes, explaining technical concepts, and reporting to higher management or technical teams.
Other Requirements of the position include:
  • Able and willing to support domestic or international on-site travel with customers or at ECS offices. Any travel will be short in duration and well-planned.
  • Possess and maintain TS/SCI-CI Poly US Security Clearance.
  • Possess and maintain a U.S. Passport.
  • Wear professional business attire for in-person meetings and teleconferences with internal and external organizations.
  • Perform duties not explicitly listed in this position description, as assigned.
Desired Skills:
  • At least three years of hands-on experience with specific SIEM platforms, indicating a deeper understanding of their features and capabilities. Experience with Elastic is highly valued.
  • At least three years of experience integrating SIEMs with SOAR and IRCM.
  • Experience deploying, configuring, maintaining, and troubleshooting Elasticsearch and Kibana on bare metal, Elastic Cloud Enterprise (ECE), Elastic Cloud on Kubernetes (ECK), and/or Elasticsearch Service.
  • Configuration management experience through Ansible/Terraform/Chef/Puppet or like tools.
  • Security community contributions (blog posts, white papers, conference talks, tool development, etc.)
  • A stronger grasp of advanced network infrastructure, including cloud networks, virtual networks, and network segmentation, which can be crucial for more sophisticated SIEM deployments.
  • Skills in project management and familiarity with methodologies like Agile can be beneficial, particularly in managed service environments.
  • Familiarity with implementing machine learning pipelines and integrating AI-driven analytics into SIEM for improved incident detection and automated response.


ECS is an equal opportunity employer and does not discriminate or allow discrimination on the basis of race, color, religion, gender, age, national origin, citizenship, disability, veteran status or any other classification protected by federal, state, or local law. ECS promotes affirmative action for minorities, women, disabled persons, and veterans.

ECS is a leading mid-sized provider of technology services to the United States Federal Government. We are focused on people, values and purpose. Every day, our 3800 employees focus on providing their technical talent to support the Federal Agencies and Departments of the US Government to serve, protect and defend the American People.
  • SIEM Engineer III

    1 month ago


    Fairfax, United States ECS Full time

    ECS is seeking a SIEM Engineer III to work in our Fairfax, VA office.Job Description:Are you passionate about the ever-evolving field of cybersecurity and ready to embark on a career with a positive and lasting impact? Join our dynamic team at ECS, a leading provider of solutions in science, engineering, and advanced technologies, including cloud,...


  • Fairfax, United States ECS Full time

    ECS is seeking a SIEM Engineer III to work in our Fairfax, VA office. Job Description: Are you passionate about the ever-evolving field of cybersecurity and ready to embark on a career with a positive and lasting impact? Join our dynamic team at ECS, a leading provider of solutions in science, engineering, and advanced technologies, including cloud,...


  • Fairfax, United States Dunhill Professional Search Full time

    Observability Engineer *Full-Time Telework *U.S. Citizenship Required This role has the responsibility of adhering to the security and privacy requirements within Company security trainings and within relevant Company Information and Security Policy and Procedures such as Company Policy on Privacy and Personal Information and Company System Security...


  • Fairfax, United States Liquid Measurement Systems, Inc. Full time

    Job DescriptionJob DescriptionSalary: DESIGN -- AEROSPACEElectrical Engineer III We have work that will challenge you, interesting projects, and a smart, motivated team. You take the design & development process from initial concept to product delivery for our airborne electro-mechanical systems.OVERVIEWLMS is a growing company with a big mission: to deliver...


  • Fairfax, United States Liquid Measurement Systems, Inc. Full time

    Job DescriptionJob DescriptionSalary: DESIGN -- AEROSPACEElectrical Engineer III We have work that will challenge you, interesting projects, and a smart, motivated team. You take the design & development process from initial concept to product delivery for our airborne electro-mechanical systems.OVERVIEWLMS is a growing company with a big mission: to deliver...

  • Observability Engineer

    2 months ago


    Fairfax, United States Dunhill Professional Search & Government Solutions Full time

    Observability Engineer*Full-Time Telework*U.S. Citizenship RequiredThis role has the responsibility of adhering to the security and privacy requirements within Company security trainings and within relevant Company Information and Security Policy and Procedures such as Company Policy on Privacy and Personal Information and Company System Security...


  • Fairfax, United States ECS Full time

    Job Description: Are you passionate about the ever-evolving field of cybersecurity and ready to embark on a career with a positive and lasting impact? Join our dynamic team at ECS, a leading provider of solutions in science, engineering, and advanced technologies, including cloud, cybersecurity, artificial intelligence (AI), data, and enterprise...


  • Fairfax Station, United States ECS Limited Full time

    ECS is seeking a Sr. Observability Engineer to work in our Fairfax, VA office.Please Note: This position is contingent upon contract award. Job Description: Are you passionate about the ever-evolving field of cybersecurity and ready to embark on a career with a positive and lasting impact? Join our dynamic team at ECS, a leading provider of solutions in...

  • Project Engineer III

    2 months ago


    Fairfax, United States ENSCO Full time

    3643BRInternal Position Title:Project Engineer IIIRecruiter:Ashlee HolmesJob Description:Formulate and apply mathematical modeling and other optimizing methods to develop and interpret information that assists management with decision-making, policy formulation, or other managerial functions. May collect and analyze data and develop decision support...

  • Project Engineer III

    2 months ago


    Fairfax, United States ENSCO Full time

    Job Description Formulate and apply mathematical modeling and other optimizing methods to develop and interpret information that assists management with decision-making, policy formulation, or other managerial functions. May collect and analyze data and develop decision support software, services, or products. May develop and supply optimal time, cost, or...

  • IT Analyst

    4 weeks ago


    Fairfax, United States INSPYR Solutions Full time

    Title: Business System Analyst III- Digital Location: Local to Vienna, Virginia Duration: Initial 6 month contract with extension Compensation: $50-70/hr Work Requirements: US Citizen, GC Holders or Authorized to Work in the U.S. Skillset / Experience The ideal candidate is self-motivated, imaginative, and energetic about building highly competitive digital...

  • Sr. Data Architect

    3 weeks ago


    Fairfax, United States Foxhole Technology Full time

    Sr. Data Architect Job Locations US Job ID 2024-1834 Category Information Technology Type Regular Full-Time Clearance Required Top Secret Overview Title: Sr. Data Architect Location: Washington D.C. (Hybrid) Clearance: Top Secret Start: Based on Contract Award Foxhole Technology...


  • Fairfax, United States Tiber Creek Consulting Full time

    **Information System Security Officer (ISSO) / Information Assurance (IA) AnalystFairfax, VA / Telework** Tiber Creek Consulting, Inc. is seeking an experienced ISSO / IA Analyst to serve as an information security subject matter expert (SME) as part of a growing cybersecurity operations team in Fairfax VA / Telework. You will support federal agency ATO...


  • Fairfax, United States Tevora Full time

    Job DescriptionJob DescriptionDirector, Incident Responseat TevoraIf you haven't heard of Tevora, it's because we've done our job!Tevora is a tight-knit community of professionals with a shared passion for our craft. Every day, we combine in-depth knowledge of cybersecurity, technology, and compliance to help create more secure digital...


  • Fairfax, United States MBA CSi Full time

    MBA Consulting Services, Inc. (MBA) is a federal government IT systems integrator committed to delivering solutions that solve mission challenges with agility, experience, and innovation. As a mission-focused integrator, we provide a comprehensive range of information technology, engineering, professional services, and facilities management solutions. We...


  • Fairfax, United States TechWish Full time

    To compile, research, analyze and document data, requirements, workflow/processes, functionality and or controls for respective ISD group. To develop and evaluate information, and prepare recommendations based on analysis for use in decision making. Applies extensive and diversified knowledge of principles and practices in broad areas of assignments and...


  • Fairfax, United States Elasticsearch B.V. Full time

    Elastic is a free and open search company that powers enterprise search, observability, and security solutions built on one technology stack that can be deployed anywhere. From finding documents to monitoring infrastructure to hunting for threats, Elastic makes data usable in real-time and at scale. Thousands of organizations worldwide, including Barclays,...


  • Fairfax, United States MBA Consulting Service, Inc Full time

    MBA Consulting Services, Inc. (MBA) is a federal government IT systems integrator committed to delivering solutions that solve mission challenges with agility, experience, and innovation. As a mission-focused integrator, we provide a comprehensive range of information technology, engineering, professional services, and facilities management solutions. We...


  • Fairfax, United States Genesis Consulting Full time

    Job Description Genesis Consulting has an immediate opportunity for an experienced, forward thinking Functional Business Analyst with a passion for growth and business transformation for a Public Sector client in Fairfax County, Virginia. Join our team and work on challenging, complex solutions that are driving innovation and technology advancement in the...


  • Fairfax, United States The One 23 Group Full time

    Job DescriptionJob DescriptionDescription:At The One 23 Group, our mission is to set the benchmark for excellence in government services. We empower our clients in the Department of Defense, Intelligence Community, and Federal Civilian sectors to excel with our advanced capabilities. Our dedication lies in fostering a people-first culture, underpinned by...