SIEM Engineer - 173870

Piper Companies

Raleigh (NC)

Hybrid

USD 115,000 - 135,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Medical
Dental
Vision
401(k)
Paid time off

Job summary

Piper Companies is seeking an experienced SIEM Engineer to strengthen enterprise security monitoring for a leading technology organization. This hybrid role is based in either Durham, NC or Fulton, MD, with a strong focus on Splunk and incident response.

You will design and optimize SPL queries, onboard data sources, build dashboards and alerts, and help normalize CIM data to improve detection. Collaboration with security and engineering teams is required to advance the SIEM program.

Qualifications

  • Minimum 5 years in cybersecurity, security operations, or SIEM engineering.
  • Active Secret security clearance required.
  • Hybrid work from Durham, NC or Fulton, MD with Splunk expertise.

Responsibilities

  • Build, enhance, and maintain Splunk SPL queries for analytics and detection.
  • Onboard diverse security tools and data sources into a centralized SIEM.
  • Create dashboards, alerts, reports, and saved searches in Splunk.
  • Configure CIM data normalization and field extractions.
  • Assist in incident response investigations and recommendations.
  • Collaborate with security and engineering teams to improve SIEM detection.

Skills

Splunk SPL
Incident response
Security operations
CIM normalization
EDR integration
Threat detection

Tools

Splunk
EDR
IDS/IPS
Firewalls

Job description

Piper Companies is seeking an experienced SIEM Engineer to help strengthen and advance enterprise security monitoring capabilities for a leading technology organization. This opportunity is well suited for a cybersecurity professional with extensive Splunk expertise, a strong background in incident response, and experience integrating diverse security technologies into a centralized SIEM ecosystem. This is a hybrid position based in either Durham, North Carolina, or Fulton, Maryland.

Responsibilities of the SIEM Engineer:
  • Build, enhance, and maintain advanced Splunk SPL queries to support security analytics, monitoring, and threat detection initiatives
  • Integrate and onboard security tools and data sources into a centralized SIEM environment
  • Create, manage, and optimize Splunk knowledge objects, including dashboards, alerts, reports, and saved searches
  • Configure field extractions, lookups, and CIM-compliant data normalization to improve data quality and consistency
  • Assist in incident response activities through the investigation and analysis of security events, providing actionable recommendations
  • Partner with security and engineering stakeholders to develop detection content and improve overall SIEM effectiveness
  • Document SIEM configurations, processes, and best practices to support operational excellence
Qualifications of the SIEM Engineer:
  • Minimum of 5 years of experience in cybersecurity, security operations, or SIEM engineering
  • Active Secret security clearance is required
  • Ability to work in a hybrid capacity from Durham, NC, or Fulton, MD
  • Extensive hands-on experience with Splunk, including advanced SPL query development and optimization
  • Strong understanding of Splunk knowledge objects, data models, and Common Information Model (CIM) normalization
  • Experience integrating security technologies such as EDR, IDS/IPS, firewalls, and cloud security solutions into SIEM platforms
  • Proven incident response and security operations experience
Compensation for the SIEM Engineer includes:
  • Salary range: $115,000 – $135,000 depending on experience
  • Comprehensive benefits package including medical, dental, vision, 401(k), and paid time off

This job opens for applications on 9/4/2026. Applications for this job will be accepted for at least 30 days from the posting date.

Keywords:

SIEM Engineer, Splunk, Cybersecurity, Security Operations, SOC, Security Information and Event Management, SPL, Splunk Enterprise, Threat Detection, Threat Hunting, Incident Response, Security Monitoring, Log Analysis, Security Engineering, Security Analytics, SIEM Administration, Data Normalization, CIM, Common Information Model, Field Extractions, Security Alerts, Dashboard Development, Security Automation, Splunk Dashboards, Splunk Reports, EDR, IDS, IPS, Firewall Security, Cloud Security, Security Tools Integration, Detection Engineering, Security Events, Information Security, Network Security, Enterprise Security, Active Secret Clearance, Secret Clearance, Hybrid, Durham NC, North Carolina, Fulton MD, Maryland

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SIEM Engineer
SIEM Engineer

Piper Companies • Raleigh (NC)

Hybrid
USD 115,000 - 135,000
Splunk / SOC Engineer - 174235
Splunk / SOC Engineer - 174235

Piper Companies • United States

Hybrid
USD 100,000 - 120,000
Splunk / SOC Engineer
Splunk / SOC Engineer

Piper Companies • North Carolina

Hybrid
USD 100,000 - 120,000
Medical benefits
Dental benefits
Vision benefits
+2
Hybrid SIEM Engineer - Splunk & Incident Response Expert
Hybrid SIEM Engineer - Splunk & Incident Response Expert

Piper Companies • Raleigh (NC)

Hybrid
USD 115,000 - 135,000
SIEM Engineer - 174002
SIEM Engineer - 174002

Zachary Piper Solutions • Newington (VA), Northern (KY)

Hybrid
USD 120,000 - 180,000
PTO
Paid Holidays
Medical
+5
SIEM Engineer - 174002
SIEM Engineer - 174002

Piper Companies • Newington (VA)

On-site
USD 120,000 - 180,000
SIEM Engineer - 174035
SIEM Engineer - 174035

Zachary Piper Solutions • Newington (VA)

Hybrid
USD 95,000 - 135,000
Full Benefits Package
SIEM Engineer - 174035
SIEM Engineer - 174035

Piper Companies • Newington (VA)

On-site
USD 110,000 - 150,000
PTO
Paid Holidays
Medical
+5
SIEM/Splunk Engineer - TS/SCI Cleared - 174468
SIEM/Splunk Engineer - TS/SCI Cleared - 174468

Zachary Piper Solutions • Newington (VA), Northern (KY)

Hybrid
USD 165,000 - 190,000
SIEM/Splunk Engineer - TS/SCI Cleared - 174468
SIEM/Splunk Engineer - TS/SCI Cleared - 174468

Piper Companies • Newington (CT)

On-site
USD 149,000 - 182,000
Medical benefits
Dental benefits
Vision benefits
+4