Remote SIEM Detection Engineer — Growth & Equity

CloudDevs

Northern (KY)

Hybrid

USD 112,000 - 162,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Health benefits
Unlimited PTO
Equity
Parental leave

Job summary

Expel is seeking a detection engineer to join our growing professional services function. You will craft and tune detection content across SIEM platforms, reduce alert noise, and help customers optimize ingestion and costs.

This remote US role offers opportunity to lead and shape detection strategy with hands-on work across Splunk, Microsoft Sentinel, and CrowdStrike NG SIEM, plus AI-assisted tooling. Collaborate with SOC, Sales, and Customer Success.

Qualifications

  • 3+ years of detection and response tooling experience (SIEM/SOAR/EDR).
  • 3+ years writing, deploying, and tuning detections from research against common datasets (Windows Event Logs, CloudTrail, etc.).
  • Experience translating detection logic between SIEM platforms and log source re-pointing.

Responsibilities

  • Deliver end-to-end professional services engagements, including detection strategy and SIEM optimization.
  • Develop and validate detections for defined security use cases across environments.
  • Tune detections to reduce alert noise and improve ingestion efficiency.
  • Translate detection logic between SIEM platforms and author parsers for various log sources.
  • Collaborate with Detection Engineering and SOC to hand off environments for co-managed operations.

Skills

SIEM expertise
Detection engineering
Python/Go
Git/GitHub
Threat detection

Education

Bachelor’s degree in CS or InfoSec

Tools

Splunk
Microsoft Sentinel
CrowdStrike NG SIEM

Job description

Expel is seeking a detection engineer to join our growing professional services function. You will craft and tune detection content across SIEM platforms, reduce alert noise, and help customers optimize ingestion and costs.

This remote US role offers opportunity to lead and shape detection strategy with hands-on work across Splunk, Microsoft Sentinel, and CrowdStrike NG SIEM, plus AI-assisted tooling. Collaborate with SOC, Sales, and Customer Success.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Remote SIEM Detection Engineer: Build Detection Excellence
Remote SIEM Detection Engineer: Build Detection Excellence

Mosaec • Northern (KY)

Hybrid
USD 112,000 - 162,000
Unlimited PTO
Work location flexibility
Parental leave (up to 24 weeks)
Co-Managed SIEM Detection Engineer – Growth & Impact
Co-Managed SIEM Detection Engineer – Growth & Impact

Expel • United States

Remote
USD 110,000 - 170,000
Expel: Managed SIEM Detection Engineer
Expel: Managed SIEM Detection Engineer

Mosaec • Northern (KY)

Hybrid
USD 112,000 - 162,000
Unlimited PTO
Work location flexibility
Parental leave (up to 24 weeks)
Expel: Managed SIEM Detection Engineer
Expel: Managed SIEM Detection Engineer

CloudDevs • Northern (KY)

Hybrid
USD 112,000 - 162,000
Health benefits
Unlimited PTO
Equity
+1
Remote SIEM Engineer: Detection & Analytics Lead
Remote SIEM Engineer: Detection & Analytics Lead

PowerToFly • Washington

On-site
USD 89,000 - 163,000
Remote Splunk Detection Engineer - SIEM & Threat Detection
Remote Splunk Detection Engineer - SIEM & Threat Detection

Delan Associates, Inc • Lemont (IL)

Remote
USD 90,000 - 120,000
Remote work options
Government-furnished laptop
Flexible scheduling
Remote Splunk Detection Engineer - Advanced SIEM
Remote Splunk Detection Engineer - Advanced SIEM

DivIHN Integration Inc • United States

Remote
USD 100,000 - 130,000
Detection Engineer: SIEM/XDR & Cloud Security
Detection Engineer: SIEM/XDR & Cloud Security

Jobtailor • Arizona

On-site
USD 85,000 - 130,000
Remote Senior SIEM Engineer — Cloud & On-Prem
Remote Senior SIEM Engineer — Cloud & On-Prem

ECS • Richmond (VA)

On-site
USD 120,000 - 170,000
Senior Detection & Response Engineer — SIEM & Threat Hunt
Senior Detection & Response Engineer — SIEM & Threat Hunt

Cedarparktexasedc • Austin (TX)

On-site
USD 140,000 - 190,000