SIEM Engineer

2 weeks ago


Washington, DC, United States Tyto Athene, LLC Full time

Description

Tyto Athene is searching for an experienced SIEM Engineer that will be responsible for deployment, administration, log ingestion, health monitoring, and content creation for the SIEM. In addition to SIEM engineering, you will be helping to administer a variety of other security tools within the client environment.

Responsibilities:

  • Administer the client's SaaS SIEM, the supporting hardware/software, and additional client security tools

  • Develop, implement, review, and tune SOC detection content

  • SIEM health monitoring, optimization, and capacity planning

  • Onboard and maintain a wide variety of data sources including various OS, appliance, and application logs

  • Design and modify reports, dashboards, and visualizations to support the SOC's mission

  • Troubleshoot/solve complex integration challenges and configuration issues

  • Manage SOC knowledge base (Jira/Confluence)

  • Technical documentation of engineering tasks (tool onboarding, process documents, etc.).

Qualifications

Required:

  • Bachelor's Degree, or an equivalent combination of formal education, and experience.

  • Six (6) years of IT experience with two (2) years of experience configuring, deploying, and customizing a SIEM

  • Strong understanding of SaaS SIEM architecture, on-prem components, and data ingestion

  • Ability to create dashboards, reports, and detection content

  • Understanding of System Log Files and other structured and non-structured data

  • Strong knowledge of secure configurations

  • Scripting languages requires (ie Python)

  • Effective verbal and written communication skills, including the ability to describe highly technical concepts in non-technical terms

  • Understanding of the SOC's mission and how SIEM engineering supports the overall team.

Desired:

  • Knowledge of programming and best practices

Clearance :

  • Secret clearance required

About Tyto Athene

Compensation:

  • Compensation is unique to each candidate and relative to the skills and experience they bring to the position. This does not guarantee a specific salary as compensation is based upon multiple factors such as education, experience, certifications, and other requirements, and may fall outside of the above-stated range.

Benefits:

  • Highlights of our benefits include Health/Dental/Vision, 401(k) match, Paid Time Off, STD/LTD/Life Insurance, Referral Bonuses, professional development reimbursement, and parental leave.

Tyto Athene is a trusted leader in IT services and solutions, delivering mission-focused digital transformation that drives measurable success. Our expertise spans four core technology domains-Network Modernization, Hybrid Cloud, Cybersecurity, and Enterprise IT-empowering our clients with cutting-edge solutions tailored to their evolving needs. With over 50 years of experience, Tyto Athene proudly support Defense, Intelligence, Space, National Security, Civilian, Health, and Public Safety clients across the United States and worldwide.

At Tyto Athene, we believe that success starts with our people. We foster a collaborative, innovative, and mission-driven environment where every team member plays a critical role in shaping the future of technology. Are you ready to join #TeamTyto?

Tyto Athene, LLC is an Equal Opportunity Employer; all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, [sexual orientation, gender identity,] national origin, disability, status as a protected veteran, or any characteristic protected by applicable law.

Submit a Referral (https://careers-gotyto.icims.com/jobs/1581/siem-engineer/job?mode=apply&apply=yes&in_iframe=1&hashed=-1834326889)

Location US-DC-Washington

ID 2025-1581

Category Cybersecurity

Position Type Full-Time



  • Washington, DC, United States Special Aerospace Security Services, Inc. Full time

    Position Overview: The Cybersecurity Engineer will execute technical security engineering tasks across SAP IT systems, including vulnerability management, patch compliance, and security tool deployment. This role ensures operational security and compliance for classified systems. Key Responsibilities: Implement and validate DISA STIGs and SRGs for SAP IT...


  • Washington, DC, United States Special Aerospace Security Services, Inc. Full time

    Position Overview: The Cybersecurity Engineer will execute technical security engineering tasks across SAP IT systems, including vulnerability management, patch compliance, and security tool deployment. This role ensures operational security and compliance for classified systems. Key Responsibilities: Implement and validate DISA STIGs and SRGs for SAP IT...


  • Washington, DC, United States RIVA Solutions Full time

    Description Title: Endpoint Security Engineer Location: Hybrid - Washington, DC Terms: Full-Time Clearance: Must be a U.S. Citizen and able to obtain a Public Trust Travel: None RESULTS. INNOVATION. VALUES. ACCOUNTABILITY. That's RIVA. Our employee-first approach has created a culture that attracts the best and brightest. By investing in people first and...


  • Washington, DC, United States RIVA Solutions Full time

    Description Title: Endpoint Security Engineer Location: Hybrid - Washington, DC Terms: Full-Time Clearance: Must be a U.S. Citizen and able to obtain a Public Trust Travel: None RESULTS. INNOVATION. VALUES. ACCOUNTABILITY. That's RIVA. Our employee-first approach has created a culture that attracts the best and brightest. By investing in people first and...


  • Washington, DC, United States RIVA Solutions Full time

    Description Title: Endpoint Security Engineer Location: Hybrid - Washington, DC Terms: Full-Time Clearance: Must be a U.S. Citizen and able to obtain a Public Trust Travel: None RESULTS. INNOVATION. VALUES. ACCOUNTABILITY. That's RIVA. Our employee-first approach has created a culture that attracts the best and brightest. By investing in people first and...


  • Washington, DC, United States Mondo Staffing Full time

    Apply now: Infrastructure Engineer, Location is Remote (West Coast). The start date is 2 weeks from offer (or ASAP) for this 12-month contract position. Job Title: Infrastructure Engineer Location-Type: Remote (must be West Coast based, PST hours) Start Date Is: ASAP or 2 weeks from offer Duration: 12 months (Contract, potential extension up to 2 years)...


  • Washington, DC, United States E-Solutions Full time

    Special Skillset (optional) Serve as the SME in network design, system integration, and application development initiatives in order to assist project teams in adhering to company and IT security policies, standards, and operating requirements as well as governmental guidelines and industry best practices. Automate operations using various scripting...


  • Washington, DC, United States E-Solutions Full time

    Special Skillset (optional) Serve as the SME in network design, system integration, and application development initiatives in order to assist project teams in adhering to company and IT security policies, standards, and operating requirements as well as governmental guidelines and industry best practices. Automate operations using various scripting...


  • Washington, DC, United States E-Solutions Full time

    Special Skillset (optional) Serve as the SME in network design, system integration, and application development initiatives in order to assist project teams in adhering to company and IT security policies, standards, and operating requirements as well as governmental guidelines and industry best practices. Automate operations using various scripting...

  • SOC Engineer

    2 weeks ago


    Washington, DC, United States ABBTECH Professional Resources Full time

    Location: Remote with quarterly travel to DC Clearance: Active Public Trust This role focuses on engineering SOC data feed solutions, implementing SOAR capabilities, and ensuring feed health through cross-team collaboration. The ideal candidate will have strong cybersecurity expertise, including network security, SIEM, incident response, and threat...