Senior SOC Engineer - SIEM, Detection & Automation

Amentum

Columbia (AL)

On-site

USD 145,000 - 190,000

Full time

5 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Health, dental, vision insurance
Paid time off & holidays
401(k) matching
Educational reimbursement
Parental leave
Employee stock purchase plan
Life & disability insurance
Pet insurance

Job summary

Amentum is seeking a highly skilled SOC Engineer to design, deploy, and continually improve enterprise SIEM and security monitoring across classified environments. You will own log pipelines, detections, automation, incident response, and cross-team collaboration to strengthen cyber defense capabilities.

The role emphasizes hands-on SIEM engineering, threat hunting, and playbook development, with modern tooling and a focus on reducing analyst load.

Qualifications

  • 6+ years of experience in SOC, cybersecurity engineering, SIEM engineering, or ISSE.
  • Experience deploying and maintaining Splunk Enterprise Security and/or other enterprise SIEM platforms.
  • Strong knowledge of Windows and Linux system administration and troubleshooting.
  • Experience scripting or automation using PowerShell, Python, Bash, or similar.

Responsibilities

  • Design, implement, configure, and maintain SIEM, log management, and security monitoring solutions.
  • Evaluate SOC architectures and recommend improvements for scalability and threat visibility.
  • Engineer and optimize log collection pipelines across network, system, application, and cloud environments.
  • Develop, test, tune, and maintain detection content, correlations, alerts, signatures, and analytics.
  • Create and maintain SOC playbooks, SOPs, and incident response workflows.
  • Support incident investigations via log analysis, endpoint analysis, malware analysis, and forensics.
  • Design security automation to reduce analyst workload and improve response times.
  • Develop dashboards and reports to measure SOC performance and health.
  • Participate in threat hunting and malware analysis efforts as needed.

Skills

Scripting / Automation
SIEM engineering
Cloud & containers
Network security concepts
Threat detection & incident response
Stakeholder communication

Education

High School Diploma or equivalent
Bachelor's Degree in IT/Engineering/CS

Tools

Splunk Enterprise Security
SIEM platforms
Logstash
Docker
Podman
Zeek / Suricata / Elastic
VMware / Hyper-V
Cloud security basics (AWS/Azure/GCP)

Job description

Amentum is seeking a highly skilled SOC Engineer to design, deploy, and continually improve enterprise SIEM and security monitoring across classified environments. You will own log pipelines, detections, automation, incident response, and cross-team collaboration to strengthen cyber defense capabilities.

The role emphasizes hands-on SIEM engineering, threat hunting, and playbook development, with modern tooling and a focus on reducing analyst load.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior SOC Engineer — SIEM, Threat Detection, TS/SCI
Senior SOC Engineer — SIEM, Threat Detection, TS/SCI

Amentum • Ellicott City (MD)

On-site
USD 145,000 - 190,000
Health, dental, and vision insurance
Paid time off and holidays
Retirement benefits (401(k) matching)
+6
Senior SOC Engineer - SIEM & Threat Detection
Senior SOC Engineer - SIEM & Threat Detection

Socket.dev • Columbia (MD)

On-site
USD 145,000 - 190,000
Health insurance
401(k) matching
Educational reimbursement
+5
Senior SOC Engineer - SIEM & Threat Detection (Onsite)
Senior SOC Engineer - SIEM & Threat Detection (Onsite)

Amentum • Columbia (MD)

On-site
USD 120,000 - 180,000
SOC Engineer
SOC Engineer

Amentum • Columbia (MD)

On-site
USD 120,000 - 180,000
Senior SOC Security Engineer - SIEM/IR & Automation
Senior SOC Security Engineer - SIEM/IR & Automation

Socket.dev • United States

Remote
USD 120,000 - 180,000
Senior SOC Engineer - SIEM/SOAR & Client-Facing Security
Senior SOC Engineer - SIEM/SOAR & Client-Facing Security

Inversion6 • Westlake (OH)

Hybrid
USD 110,000 - 150,000
Senior Splunk Security Engineer - SIEM & Threat Hunting
Senior Splunk Security Engineer - SIEM & Threat Hunting

Ampcus Inc • Richmond (VA)

On-site
USD 110,000 - 160,000
Senior SOC Engineer - Detection, Threat Hunting & SIEM
Senior SOC Engineer - Detection, Threat Hunting & SIEM

IT Data Consulting, LLC • Reston (VA)

On-site
SIEM Analyst
SIEM Analyst

Mantis Security Corporation • Reston (VA)

On-site
USD 110,000 - 170,000
SOC Security Engineer: Detection & Response
SOC Security Engineer: Detection & Response

11:11 Systems • United States

On-site
USD 120,000 - 160,000