Security Operations Center Technical SME

Evans & Chambers Technology

Fort Meade (MD)

On-site

USD 120,000 - 150,000

Full time

4 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Evans & Chambers Technology seeks a highly skilled SOC Technical SME to lead log analysis, SIEM tuning, and detection engineering for a 24/7 security operations center. You will interrogate diverse log sources, optimize detection, and drive improvements in coverage and tooling.

You will mentor Tier 1/2 analysts, collaborate with the SOC Program Manager on metrics, and stay ahead of adversary techniques to enhance defensive readiness in a high-stakes environment at Fort Meade, MD.

Qualifications

  • Degree in Computer Science, Information Systems, Engineering, or related discipline preferred.
  • At least seven (7) years of information security experience with deep SIEM administration/engineering and log analysis in a SOC.
  • Experience with SIEM platforms such as Splunk, QRadar, Elastic, or Sentinel; threat intel integration preferred.

Responsibilities

  • Deeply analyze and interrogate logs across network, host, application, cloud, and identity sources.
  • Monitor, tune, and optimize SIEM platforms to improve detection fidelity and reduce false positives/negatives.
  • Evaluate log volume, retention, and ingestion pipelines to ensure data completeness.
  • Develop and maintain correlation rules, use cases, and detection content aligned to threat intel.
  • Escalate as an expert for Tier 1/2 analysts during complex triage and investigation.
  • Utilize security tool stacks including SIEM, EDR, NDR, SOAR, threat intel platforms, and packet analysis tools.
  • Support containment, eradication, and recovery during security incidents as a senior technical responder.
  • Collaborate to report SOC metrics, coverage, and operational effectiveness.
  • Recommend and help implement process improvements, automation, and playbooks.
  • Stay current on threats andTTPs; translate intel into detection strategy.
  • Mentor and upskill junior SOC analysts in log analysis and investigative techniques.

Skills

Log analysis
SIEM administration
Threat intelligence integration
Incident analysis
Mentoring analysts

Education

Bachelor's degree in Computer Science / Information Systems / Engineering

Tools

Splunk
QRadar
Elastic
Microsoft Sentinel
EDR tools
NDR tools
SOAR platforms

Job description

Brief Description

Evans & Chambers Technology is actively seeking a highly motivated Security Operations Center (SOC) Technical SME to join our team!

Brief Description

Evans & Chambers Technology is actively seeking a highly motivated Security Operations Center (SOC) Technical SME to join our team!

Evans & Chambers partners with the US national defense community to create fully integrated, resilient, and innovative digital solutions that enable them to make smart decisions in real-time. We work with our customers on everything from conquering their data to improving and safeguarding IT infrastructure. Our ultimate goal? To enhance our nation's ability to identify, address, and act - no matter what challenges arise.

Clearance Required

TS/SCI with CI poly required

Location

Fort Meade, MD (Onsite)

Description

The SOC Technical SME reports directly to the SOC Program Manager and serves as the technical backbone of a 24/7 security operations center, providing deep expertise in log analysis, SIEM administration and tuning, and detection engineering. This role is responsible for interrogating high-volume log sources, identifying gaps in visibility and coverage, and ensuring the toolset and detection logic keep pace with evolving adversary tradecraft.

Essential Duties
  • Deeply analyze and interrogate logs across diverse sources (network, host, application, cloud, identity) to identify anomalies, gaps, and indicators of compromise
  • Monitor, tune, and optimize SIEM platforms to improve detection fidelity and reduce false positive/negative rates
  • Evaluate log volume, retention, and ingestion pipelines to ensure completeness of data and identify blind spots in coverage
  • Develop, refine, and maintain correlation rules, use cases, and detection content aligned to current threat intelligence techniques
  • Serve as an escalation point for Tier 1/2 analysts on complex triage, investigation, and incident analysis
  • Utilize and maintain proficiency across relevant security tool stacks (SIEM, EDR, NDR, SOAR, threat intel platforms, packet capture/analysis tools)
  • Support containment, eradication, and recovery efforts during security incidents as a senior technical responder
  • Collaborate with the SOC Program Manager to report on SOC metrics, detection coverage, and operational effectiveness
  • Recommend and support implementation of process improvements, automation, and playbooks to increase SOC efficiency
  • Stay current on emerging threats, adversary TTPs, and industry best practices, incorporating relevant intelligence into detection strategy
  • Assist in mentoring and upskilling junior SOC analysts on log analysis and investigative techniques
Qualifications

A degree in Computer Science, Information Systems, Engineering, or a related discipline is preferred. At least seven (7) years of information security experience, with demonstrated depth in SIEM administration/engineering, log analysis, and security tool stacks in a SOC environment. Experience with one or more SIEM platforms (e.g., Splunk, QRadar, Elastic, Sentinel) required. Familiarity with threat intelligence integration strongly preferred. CySA+, GCIA, GCIH, or CISSP required.

All employment opportunities are made without regard to age, race, creed, color, religion, sex national origin, ancestry, disability status, veteran status, sexual orientation, gender identity or expression, genetic information, marital status or any other basis protected by law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Operations Center Technical SME
Security Operations Center Technical SME

Evans & Chambers • Fort Meade (MD), Northern (KY)

On-site
USD 140,000 - 190,000
SOC Technical SME: SIEM & Detection Expert (TS/SCI)
SOC Technical SME: SIEM & Detection Expert (TS/SCI)

Evans & Chambers Technology • Fort Meade (MD)

On-site
USD 120,000 - 150,000
SOC Analyst - Tier 1
SOC Analyst - Tier 1

Evans & Chambers • Maryland

On-site
USD 88,000 - 118,000
SOC Analyst - Tier 1
SOC Analyst - Tier 1

Evans & Chambers • Fort Meade (MD)

On-site
USD 88,000 - 118,000
Security Operations Center Technical Lead
Security Operations Center Technical Lead

Invictus International • Colorado Springs (CO)

On-site
USD 130,000 - 180,000
Security Operations Center Technical Lead
Security Operations Center Technical Lead

Invictus International Consulting, LLC. • Colorado Springs (CO)

On-site
USD 120,000 - 170,000
SOC Technical SME: SIEM & Incident Expert (Onsite Fort Meade)
SOC Technical SME: SIEM & Incident Expert (Onsite Fort Meade)

Evans & Chambers • Fort Meade (MD), Northern (KY)

Hybrid
USD 140,000 - 190,000
Security Operations Center Technical Lead
Security Operations Center Technical Lead

Invictus International Consulting, LLC • Colorado Springs (CO)

On-site
USD 200,000 - 230,000
Security Operations Center (SOC) Analyst
Security Operations Center (SOC) Analyst

10xTalents • Washington

On-site
USD 80,000 - 110,000
Security Operation Center (SOC) Analyst – Level II
Security Operation Center (SOC) Analyst – Level II

TAC Integrated Solutions • United States

On-site
USD 90,000 - 130,000