Skip to main content

IDBNY

SIEM Engineer

  • Confirmed live in the last 24 hours
  • $140k–$160k
  • Mid level
  • On-site · 1114 Avenue of the Americas, NYC, NY, 10036
  • 5+ yrs exp
  • Added 2 months ago

About this role

This role is for a skilled SIEM Engineer to build, maintain, and optimize the organization's Security Information and Event Management (SIEM) platform. You will collaborate with security teams to enhance threat visibility, improve incident response, and strengthen the overall cyber defense posture. This position requires expertise in SIEM administration, detection engineering, and integrating various security data sources across diverse environments.

What you'll do

  • Manage and maintain the organization's SIEM platforms.
  • Develop and tune detection rules to identify malicious activity and minimize false positives.
  • Integrate security data sources like firewalls, EDR/XDR, and cloud platforms.
  • Support SOC operations through advanced threat detection and incident analysis.
  • Automate SIEM tasks to improve operational efficiency.
  • Ensure SIEM infrastructure is available, scalable, and performs optimally.

What they're looking for

  • Microsoft Sentinel
  • Splunk
  • QRadar
  • LogRhythm
  • Elastic Security
  • KQL
  • PowerShell
  • Python

Benefits

  • Annual Bonus
  • Medical, Pharmacy, Dental, and Vision Plans
  • Life and Disability Insurance
  • Employee Wellness Program
  • Retirement and Savings Plans
  • Generous Paid Time Off
Apply with Autofill

Opens the application — the Jobs AI extension fills it for you. Set up autofill

Opens the official application on the employer’s site. No login required.

IDBNY

View all jobs at IDBNY

Likely interview questions

  • Describe your experience with SIEM platforms like Splunk, Sentinel, or QRadar. What are the strengths and weaknesses of each in your opinion?
  • Explain your approach to developing correlation rules and detection use cases. How do you ensure minimal false positives?