SIEM and Detection Engineer Minerva Cyber Technologies SMARTER CYBER

Minerva Cyber Tech

Columbia (MD)

On-site

USD 120,000 - 150,000

Full time

8 days ago
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Minerva Cyber Technologies is seeking a SIEM and Detection Engineer to boost security monitoring quality. You will onboard log sources, develop detections, and help SOC analysts investigate signals with actionable context.

You will assess coverage, build and test rules across multiple data domains, tune detections to reduce noise, and create dashboards and escalation workflows with SOC teams. This role emphasizes detection content, testing, and documentation.

Qualifications

  • Hands-on experience administering a SIEM or developing production detection content.
  • Ability to query security data and explain the behavior and limitations behind a detection.
  • Understanding of MITRE ATT&CK framework, log sources, and investigation workflows.
  • Practical scripting, version control, testing, and technical documentation skills.
  • Ability to travel to client sites as needed.

Responsibilities

  • Assess log coverage, collection health, parsing, normalization, and retention requirements.
  • Build and test detection rules across endpoint, identity, network, application, and cloud data.
  • Tune rules to reduce false positives and noise while measuring coverage.
  • Create investigation guidance, dashboards, and escalation workflows with SOC teams.
  • Version detection content (detection as code), document tests, and maintain change/deployment records.

Skills

SIEM engineering
Detection engineering
Threat detection
Scripting
Version control
Testing
Technical documentation
Client-site travel

Tools

Splunk
Elastic
Microsoft Sentinel
Sigma
SOAR workflows

Job description

SIEM and Detection Engineer

Minerva Cyber Technologies is seeking a SIEM and Detection Engineer to improve the quality and usefulness of security monitoring. You will onboard log sources and telemetry, develop threat detections, and help SOC analysts investigate meaningful signals with enough context to act.

What You Will Do
  • Assess log coverage, collection health, parsing, normalization, and retention requirements.
  • Build and test detection rules using endpoint, identity, network, application, and cloud data.
  • Tune rules to reduce false positives and avoidable noise while measuring detection coverage and limitations.
  • Create investigation guidance, dashboards, and escalation workflows with security operations teams.
  • Version detection content (detection as code), document tests, and maintain change and deployment records.
Required Qualifications
  • Hands-on experience administering a SIEM or developing production detection content.
  • Ability to query security data and explain the behavior and limitations behind a detection.
  • Understanding of common attack techniques, such as those in the MITRE ATT&CK framework, log sources, and investigation workflows.
  • Practical scripting, version control, testing, and technical documentation skills.
  • Ability to travel to client sites as needed.
Preferred Qualifications
  • Experience with Splunk, Elastic, Microsoft Sentinel, Sigma, SOAR workflows, or similar technologies.
  • Experience supporting threat hunts, safe detection validation, or security monitoring in regulated environments.
Why Join Minerva
  • Work on meaningful missions tied to critical infrastructure resilience and cybersecurity.
  • Join a team with deep hands‑on cyber and national security experience.
  • Help build and shape Minerva’s growing OT and critical infrastructure practice.
  • Contribute to practical, outcomes‑driven work rather than checkbox consulting.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Hands-on SIEM & Detection Engineer: Build Threat Signals
Hands-on SIEM & Detection Engineer: Build Threat Signals

Minerva Cyber Tech • Columbia (MD)

On-site
USD 120,000 - 150,000
Security Operations Center (SOC) Analyst Minerva Cyber Technologies SMARTER CYBER
Security Operations Center (SOC) Analyst Minerva Cyber Technologies SMARTER CYBER

Minerva Cyber Tech • Columbia (MD)

On-site
USD 70,000 - 110,000
SIEM/Detection Engineer
SIEM/Detection Engineer

Mantis Security Corporation • Reston (VA)

On-site
USD 140,000 - 190,000
Senior Security Engineer Minerva Cyber Technologies SMARTER CYBER
Senior Security Engineer Minerva Cyber Technologies SMARTER CYBER

Minerva Cyber Tech • Columbia (MD)

On-site
USD 120,000 - 150,000
IT Security Engineer
IT Security Engineer

Pike Corporation • Fort Mill (SC)

On-site
USD 120,000 - 180,000
SIEM Analyst
SIEM Analyst

Mantis Security Corporation • Reston (VA)

On-site
USD 110,000 - 170,000
Cybersecurity Remediation Engineer Minerva Cyber Technologies SMARTER CYBER
Cybersecurity Remediation Engineer Minerva Cyber Technologies SMARTER CYBER

Minerva Cyber Tech • Columbia (MD)

On-site
USD 90,000 - 150,000
SIEM Engineer - 174035
SIEM Engineer - 174035

ZP Group • Newington (VA)

On-site
USD 95,000 - 140,000
PTO
Medical benefits
401K
Malware Analyst and Reverse Engineer Minerva Cyber Technologies SMARTER CYBER
Malware Analyst and Reverse Engineer Minerva Cyber Technologies SMARTER CYBER

Minerva Cyber Tech • Columbia (MD)

On-site
USD 110,000 - 170,000
SOC Operations Lead Minerva Cyber Technologies SMARTER CYBER
SOC Operations Lead Minerva Cyber Technologies SMARTER CYBER

Minerva Cyber Tech • Columbia (MD)

On-site
USD 120,000 - 170,000