SIEM/Detection Engineer with Security Clearance

Mantis Security Corporation

Reston (VA)

On-site

USD 110,000 - 160,000

Full time

2 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Mantis Security Corporation is seeking a SIEM / Detection Engineer to enhance threat detection, logging, and response. You will develop, tune, and maintain Splunk searches, alerts, and dashboards while collaborating with SOC analysts to improve visibility and detections across Windows, Linux, network, and cloud environments.

The role focuses on translating attacker techniques into actionable detections, onboarding data sources, and reducing false positives.

Qualifications

  • 3+ years in cybersecurity with hands-on SIEM or security monitoring experience
  • Strong Splunk experience with SPL searches, correlation searches, dashboards and alert development
  • Experience developing and tuning detections in a SOC environment
  • Understanding of logging across Windows, Linux, network, endpoint, identity and cloud
  • Experience onboarding and troubleshooting security data sources within a SIEM
  • Ability to translate attacker techniques into detection logic (MITRE ATT&CK)
  • Familiarity with incident response, threat hunting and DoD/Ironclad security practices
  • Relevant cybersecurity or SIEM certifications (Security+, CySA+, GIAC, Splunk)

Responsibilities

  • Develop, tune, and maintain Splunk searches, alerts, correlation rules, and dashboards
  • Build and improve detection logic to identify malicious activity while reducing false positives
  • Support onboarding and validation of security log sources
  • Identify gaps in logging and detection coverage and implement improvements
  • Translate threats into actionable detections using MITRE ATT&CK framework
  • Assist SOC investigations and threat hunting with queries across data sources
  • Troubleshoot SIEM data ingestion, search, alerting, and performance issues
  • Document detection logic, configurations, and recommended improvements

Skills

SIEM monitoring
Splunk SPL
Detection engineering
SOC operations
Threat hunting
MITRE ATT&CK
Incident response
Log source analysis

Education

Security+ / CySA+ / GIAC / Splunk certs

Tools

Splunk
AWS
Python

Job description

What You'll Be Doing As a SIEM / Detection Engineer at Mantis Security, you'll help improve how we identify and respond to threats by ensuring our security data is collected, correlated, and turned into effective detections. You'll work closely with SOC analysts and engineers to continuously improve the team's visibility and detection capabilities. * Develop, tune, and maintain Splunk searches, alerts, correlation rules, and dashboards

  • Build and improve detection logic to identify suspicious and malicious activity while reducing false positives
  • Support the onboarding, parsing, normalization, and validation of security log sources
  • Identify gaps in logging, telemetry, and detection coverage and help implement improvements
  • Translate emerging threats and attacker techniques into actionable detections using frameworks such as MITRE ATT&CK
  • Support SOC investigations and threat hunting by developing queries and correlating activity across multiple data sources
  • Troubleshoot SIEM data ingestion, search, alerting, and performance issues
  • Document detection logic, configurations, processes, and recommended improvements
What We're Looking For
  • * 3+ years of cybersecurity experience, including hands-on experience with SIEM or security monitoring technologies
  • * Strong Splunk experience, including SPL searches, correlation searches, dashboards, and alert development
  • * Experience developing and tuning security detections in a SOC environment
  • * Understanding of security logging across Windows, Linux, network, endpoint, identity, and cloud environments
  • * Experience onboarding and troubleshooting security data sources within a SIEM
  • * Strong understanding of common attack techniques and how to translate them into detection logic
  • * Familiarity with MITRE ATT&CK, incident response, and threat hunting
  • * Relevant cybersecurity or SIEM certification such as Security+, CySA+, GIAC, or Splunk certification
Nice to Have
  • * Previous SOC Analyst or incident response experience
  • * Experience supporting DoD, Intelligence Community, or other federal environments
  • * Experience with AWS and cloud-based security telemetry
  • * Experience with Python, PowerShell, or other scripting languages
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SIEM/Detection Engineer
SIEM/Detection Engineer

Mantis Security Corporation • Reston (VA)

On-site
USD 140,000 - 190,000
SIEM Analyst
SIEM Analyst

Mantis Security Corporation • Reston (VA)

On-site
USD 110,000 - 170,000
SIEM & Detection Engineer — Build Real-Time Threat Detections
SIEM & Detection Engineer — Build Real-Time Threat Detections

Mantis Security Corporation • Reston (VA)

On-site
USD 110,000 - 160,000
Senior SIEM Detection Engineer — Splunk Expert
Senior SIEM Detection Engineer — Splunk Expert

Mantis Security Corporation • Reston (VA)

On-site
USD 110,000 - 170,000
Senior Splunk SIEM & Threat Detection Engineer
Senior Splunk SIEM & Threat Detection Engineer

Mantis Security Corporation • Reston (VA)

On-site
USD 140,000 - 190,000
SOC Analyst
SOC Analyst

Mantis Security Corporation • Reston (VA)

On-site
USD 100,000 - 150,000
Cybersecurity Engineer
Cybersecurity Engineer

Global Sumi Technologies Inc., • Richmond (VA)

On-site
USD 110,000 - 170,000
SIEM Engineer - 174035
SIEM Engineer - 174035

Zachary Piper Solutions • Newington (VA)

Hybrid
USD 95,000 - 135,000
Full Benefits Package
SIEM Engineer - 174035
SIEM Engineer - 174035

Piper Companies • Newington (VA)

On-site
USD 110,000 - 150,000
PTO
Paid Holidays
Medical
+5
Cyber Analyst- Level 3
Cyber Analyst- Level 3

CRI Advantage, Inc. • Idaho Falls (ID)

On-site
USD 110,000 - 170,000