IDBNY
SIEM Engineer
- Confirmed live in the last 24 hours
- $140k–$160k
- Mid level
- On-site · 1114 Avenue of the Americas, NYC, NY, 10036
- 5+ yrs exp
- Added 2 months ago
About this role
This role is for a skilled SIEM Engineer to build, maintain, and optimize the organization's Security Information and Event Management (SIEM) platform. You will collaborate with security teams to enhance threat visibility, improve incident response, and strengthen the overall cyber defense posture. This position requires expertise in SIEM administration, detection engineering, and integrating various security data sources across diverse environments.
What you'll do
- Manage and maintain the organization's SIEM platforms.
- Develop and tune detection rules to identify malicious activity and minimize false positives.
- Integrate security data sources like firewalls, EDR/XDR, and cloud platforms.
- Support SOC operations through advanced threat detection and incident analysis.
- Automate SIEM tasks to improve operational efficiency.
- Ensure SIEM infrastructure is available, scalable, and performs optimally.
What they're looking for
- Microsoft Sentinel
- Splunk
- QRadar
- LogRhythm
- Elastic Security
- KQL
- PowerShell
- Python
Benefits
- Annual Bonus
- Medical, Pharmacy, Dental, and Vision Plans
- Life and Disability Insurance
- Employee Wellness Program
- Retirement and Savings Plans
- Generous Paid Time Off
Opens the application — the Jobs AI extension fills it for you. Set up autofill
Opens the official application on the employer’s site. No login required.
IDBNY
Likely interview questions
- Describe your experience with SIEM platforms like Splunk, Sentinel, or QRadar. What are the strengths and weaknesses of each in your opinion?
- Explain your approach to developing correlation rules and detection use cases. How do you ensure minimal false positives?