Senior SOC Engineer - SIEM & Threat Detection (Onsite)

Amentum

Columbia (MD)

On-site

USD 120,000 - 180,000

Full time

6 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Amentum is seeking a highly skilled SOC Engineer to design, deploy, and optimize enterprise SIEM and log management capabilities in support of mission-critical environments. You will build detection content, automate responses, and collaborate with analysts, system admins, and customers to strengthen cyber defense.

The role emphasizes hands-on work in SIEM engineering, incident response, and threat detection, with opportunities to improve architectures and playbooks in a demanding, onsite

Qualifications

  • 6+ years of experience in SOC, cybersecurity engineering, SIEM engineering, or ISSE.
  • Experience deploying and maintaining Splunk Enterprise Security or other enterprise SIEMs.
  • Strong understanding of security event management, log management, and threat detection.
  • Experience developing SIEM correlation searches, analytic rules, dashboards, and detection use cases.
  • Experience in highly regulated/classified environments.
  • Strong knowledge of Windows and Linux OS, including administration.
  • Experience with scripting/automation (PowerShell, Python, Bash).
  • Experience in virtualized/containerized environments.
  • Knowledge of incident response, digital forensics, threat hunting and malware analysis.

Responsibilities

  • Design, implement, configure, and maintain SIEM, log management, and security monitoring solutions.
  • Evaluate existing SOC architectures and recommend improvements for scalability and threat visibility.
  • Engineer and optimize log collection pipelines across network, system, application, and cloud environments.
  • Develop, test, and maintain detection content, including correlation searches and analytics.
  • Identify gaps in detection coverage and implement threat-informed solutions.
  • Create and maintain SOC playbooks, SOPs, and incident response workflows.
  • Support investigations via log analysis, endpoint analysis, malware analysis, and forensics.
  • Design security automation/orchestration to reduce analyst workload and speed responses.
  • Develop SOC metrics, dashboards, and reporting for performance and health.
  • Participate in threat hunting to identify stealthy activity.
  • Support malware analysis activities and reverse engineering as needed.
  • Author scripts/tools in Python/PowerShell/Bash to improve SOC efficiency.
  • Document architectures, procedures, and engineering designs.
  • Provide technical recommendations on emerging security technologies.
  • Collaborate with customer stakeholders to translate mission requirements to solutions.

Skills

SIEM engineering
Log management
Threat detection
Security automation
Incident response
Python
PowerShell
Bash
Windows
Linux
MITRE ATT&CK
Threat hunting

Tools

Splunk Enterprise Security

Job description

Amentum is seeking a highly skilled SOC Engineer to design, deploy, and optimize enterprise SIEM and log management capabilities in support of mission-critical environments. You will build detection content, automate responses, and collaborate with analysts, system admins, and customers to strengthen cyber defense.

The role emphasizes hands-on work in SIEM engineering, incident response, and threat detection, with opportunities to improve architectures and playbooks in a demanding, onsite

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior SOC Engineer - SIEM & Threat Detection
Senior SOC Engineer - SIEM & Threat Detection

Socket.dev • Columbia (MD)

On-site
USD 145,000 - 190,000
Health insurance
401(k) matching
Educational reimbursement
+5
Senior SOC Engineer — SIEM, Threat Detection, TS/SCI
Senior SOC Engineer — SIEM, Threat Detection, TS/SCI

Amentum • Ellicott City (MD)

On-site
USD 145,000 - 190,000
Health, dental, and vision insurance
Paid time off and holidays
Retirement benefits (401(k) matching)
+6
Senior SOC Engineer - SIEM, Detection & Automation
Senior SOC Engineer - SIEM, Detection & Automation

Amentum • Columbia (AL)

On-site
USD 145,000 - 190,000
Health, dental, vision insurance
Paid time off & holidays
401(k) matching
+5
Senior SOC Engineer - SIEM/SOAR & Client-Facing Security
Senior SOC Engineer - SIEM/SOAR & Client-Facing Security

Inversion6 • Westlake (OH)

Hybrid
USD 110,000 - 150,000
Senior SOC Security Engineer - SIEM/IR & Automation
Senior SOC Security Engineer - SIEM/IR & Automation

Socket.dev • United States

Remote
USD 120,000 - 180,000
SOC Engineer
SOC Engineer

Amentum • Columbia (MD)

On-site
USD 120,000 - 180,000
Senior SIEM & SOAR Engineer - Client-Facing SOC
Senior SIEM & SOAR Engineer - Client-Facing SOC

TRG • Westlake (OH)

Hybrid
USD 110,000 - 160,000
Senior SOC Engineer - SIEM & Threat Detection
Senior SOC Engineer - SIEM & Threat Detection

cillium corp • Baltimore (MD)

On-site
USD 75,000 - 100,000
Senior SIEM/SOAR & IAM Engineer
Senior SIEM/SOAR & IAM Engineer

Apex Systems • Chandler (AZ)

Hybrid
USD 130,000 - 180,000
Medical, dental, vision
401K with match
HSA plan
+4
Cybersecurity Detection Engineer: SIEM & Threat Intel
Cybersecurity Detection Engineer: SIEM & Threat Intel

Age Solutions • Columbus (OH)

On-site
USD 85,000 - 120,000
26 Days Paid Leave
Performance Bonuses
401(k) with Match
+7