Senior SIEM Detection Engineer — Splunk Expert

Mantis Security Corporation

Reston (VA)

On-site

USD 110,000 - 170,000

Full time

25 hours ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Mantis Security Corporation is seeking a seasoned SIEM Engineer to enhance threat detection capabilities and SOC operations. You will develop and tune Splunk detections, collaborate with SOC analysts, and implement improved logging and alerting across multiple data sources.

The ideal candidate has extensive SIEM experience, strong Splunk skills, and a proven ability to translate attacker techniques into actionable detections within a security operations center environment.

Qualifications

  • 10+ years of cybersecurity experience with SIEM or security monitoring.
  • Strong Splunk experience including SPL searches, correlation searches, dashboards, and alert development.
  • Experience developing and tuning security detections in a SOC environment.
  • Understanding of security logging across Windows, Linux, network, endpoint, identity, and cloud environments.
  • Experience onboarding and troubleshooting security data sources within a SIEM.
  • Strong understanding of common attack techniques and how to translate them into detection logic.
  • Familiarity with MITRE ATT&CK, incident response, and threat hunting.
  • Relevant cybersecurity or SIEM certification such as Security+, CySA+, GIAC, or Splunk certification.

Responsibilities

  • Develop, tune, and maintain Splunk searches, alerts, correlation rules, and dashboards.
  • Build and improve detection logic to identify suspicious and malicious activity while reducing false positives.
  • Support the onboarding, parsing, normalization, and validation of security log sources.
  • Identify gaps in logging, telemetry, and detection coverage and help implement improvements.
  • Translate emerging threats and attacker techniques into actionable detections using MITRE ATT&CK.
  • Support SOC investigations and threat hunting by developing queries and correlating activity across multiple data sources.
  • Troubleshoot SIEM data ingestion, search, alerting, and performance issues.
  • Document detection logic, configurations, processes, and recommended improvements.

Skills

10+ yrs exp
Splunk expert
SOC detections
Security logging
SIEM onboarding
Threat detection
MITRE ATT&CK
Security certifications

Tools

Splunk
Python
PowerShell

Job description

Mantis Security Corporation is seeking a seasoned SIEM Engineer to enhance threat detection capabilities and SOC operations. You will develop and tune Splunk detections, collaborate with SOC analysts, and implement improved logging and alerting across multiple data sources.

The ideal candidate has extensive SIEM experience, strong Splunk skills, and a proven ability to translate attacker techniques into actionable detections within a security operations center environment.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Splunk SIEM & Threat Detection Engineer
Senior Splunk SIEM & Threat Detection Engineer

Mantis Security Corporation • Reston (VA)

On-site
USD 140,000 - 190,000
SIEM/Detection Engineer
SIEM/Detection Engineer

Mantis Security Corporation • Reston (VA)

On-site
USD 140,000 - 190,000
SIEM Analyst
SIEM Analyst

Mantis Security Corporation • Reston (VA)

On-site
USD 110,000 - 170,000
Senior Splunk SIEM Engineer — Threat Detection & Response
Senior Splunk SIEM Engineer — Threat Detection & Response

Mbi Llc • Richmond (VA)

On-site
USD 110,000 - 160,000
Senior SIEM Engineer — Splunk & Threat Detection Expert
Senior SIEM Engineer — Splunk & Threat Detection Expert

Leidos • Corridor North (MD)

On-site
USD 131,000 - 237,000
Remote SIEM Detection Engineer: Build Detection Excellence
Remote SIEM Detection Engineer: Build Detection Excellence

Mosaec • Northern (KY)

Hybrid
USD 112,000 - 162,000
Unlimited PTO
Work location flexibility
Parental leave (up to 24 weeks)
Senior SIEM Engineer (Splunk)
Senior SIEM Engineer (Splunk)

Quantum Sky • Washington

On-site
USD 140,000 - 210,000
Senior SIEM Engineer — Splunk & Threat Analytics
Senior SIEM Engineer — Splunk & Threat Analytics

Leidos • Maryland

On-site
USD 131,000 - 237,000
Competitive benefits
Paid Time Off
11 paid Holidays
+4
Senior SIEM Engineer: Splunk & Threat Analytics
Senior SIEM Engineer: Splunk & Threat Analytics

Leidos • Annapolis (MD)

On-site
USD 131,000 - 237,000
Paid Time Off
11 paid Holidays
401K with 6% match
+2
Senior Cybersecurity Engineer - Splunk SIEM
Senior Cybersecurity Engineer - Splunk SIEM

TALENT Software Services • Richmond (VA)

On-site
USD 120,000 - 170,000