Turn this role into an interview — a resume and cover letter built around what this employer wants.
Evans & Chambers Technology seeks a highly skilled SOC Technical SME to lead log analysis, SIEM tuning, and detection engineering for a 24/7 security operations center. You will interrogate diverse log sources, optimize detection, and drive improvements in coverage and tooling.
You will mentor Tier 1/2 analysts, collaborate with the SOC Program Manager on metrics, and stay ahead of adversary techniques to enhance defensive readiness in a high-stakes environment at Fort Meade, MD.
Evans & Chambers Technology is actively seeking a highly motivated Security Operations Center (SOC) Technical SME to join our team!
Evans & Chambers Technology is actively seeking a highly motivated Security Operations Center (SOC) Technical SME to join our team!
Evans & Chambers partners with the US national defense community to create fully integrated, resilient, and innovative digital solutions that enable them to make smart decisions in real-time. We work with our customers on everything from conquering their data to improving and safeguarding IT infrastructure. Our ultimate goal? To enhance our nation's ability to identify, address, and act - no matter what challenges arise.
TS/SCI with CI poly required
Fort Meade, MD (Onsite)
The SOC Technical SME reports directly to the SOC Program Manager and serves as the technical backbone of a 24/7 security operations center, providing deep expertise in log analysis, SIEM administration and tuning, and detection engineering. This role is responsible for interrogating high-volume log sources, identifying gaps in visibility and coverage, and ensuring the toolset and detection logic keep pace with evolving adversary tradecraft.
A degree in Computer Science, Information Systems, Engineering, or a related discipline is preferred. At least seven (7) years of information security experience, with demonstrated depth in SIEM administration/engineering, log analysis, and security tool stacks in a SOC environment. Experience with one or more SIEM platforms (e.g., Splunk, QRadar, Elastic, Sentinel) required. Familiarity with threat intelligence integration strongly preferred. CySA+, GCIA, GCIH, or CISSP required.
All employment opportunities are made without regard to age, race, creed, color, religion, sex national origin, ancestry, disability status, veteran status, sexual orientation, gender identity or expression, genetic information, marital status or any other basis protected by law.