SIEM Engineer - Mid

Everforth ECS

Washington (District of Columbia)

On-site

USD 90,000 - 130,000

Full time

3 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Everforth ECS in Washington, DC is seeking a Mid-level SIEM Engineer to join our federal contracting team. The role focuses on security engineering, SIEM administration, and real-time monitoring across government information systems.

The candidate will design architectures, develop dashboards, and implement secure interfaces while coordinating with the ISSO and cross-functional teams to maintain defense-in-depth in a federal environment.

Qualifications

  • 5+ years security engineering and SIEM administration experience.
  • Active Public Trust clearance or eligibility.
  • Experience with Windows, Linux, UNIX systems.
  • Knowledge of CRIBL, eGRC, and secure design principles.

Responsibilities

  • Design and develop cybersecurity architectures to meet requirements.
  • Develop dashboards using SIEM and eGRC for real-time monitoring.
  • Create security design docs for interfaces and components.
  • Apply security controls and vulnerability solutions in system designs.
  • Collaborate with ISSO and engineering teams to ensure defense-in-depth.

Skills

SIEM admin
Security engineering
Python scripting
REST API
Windows & Linux
Incident response
Network security

Education

Public Trust clearance

Tools

CRIBL
eGRC
STIGs

Job description

WASHINGTON, District Of Columbia, United States

Job Description

ECS is seeking a Mid-level SIEM Engineer to work in our Washginton, DC office.

ECS Federal is a leading information security and information technology company in Washington DC. We are looking to hire a Mid Security Engineer to support a full range of cyber security services on a long-term contract. The position is full-time/permanent and will support a US Government civilian agency. The position is available immediately upon finding a qualified candidate with the appropriate background clearance.

Position Responsibilities:

  • Design hardware, operating systems, and software applications to adequately address cybersecurity requirements.
  • Design and develop cybersecurity or cybersecurity-enabled products.
  • Develop dashboarding capabilities, utilizing the enterprise SIEM and Enterprise Governance Risk and Compliance ( eGRC ) solution, for the ISSO’s to perform real time monitoring of Agency information systems
  • Develop detailed security design documentation for component and interface specifications to support system design and development.
  • Incorporate cybersecurity vulnerability solutions into system designs (e.g., Cybersecurity Vulnerability Alerts).
  • Design, implement, test, and evaluate secure interfaces between information systems, physical systems, and/or embedded technologies.
  • Design, develop, integrate, and update system security measures that provide confidentiality, integrity, availability, authentication, and non-repudiation.
  • Perform security reviews and identify security gaps in architecture.
  • Strong written and verbal communication skills.
  • Knowledge of secure configuration management techniques. (e.g., Security Technical Implementation Guides (STIGs), cybersecurity best practices on cisecurity.org).
  • Knowledge of CRIBL.
  • Knowledge of software development models (e.g., Waterfall Model, Spiral Model).
  • Knowledge of software engineering.
  • Knowledge of structured analysis principles and methods.
  • Experience designing architectures and frameworks.
  • Knowledge of system design tools, methods, and techniques, including automated systems analysis and design tools.
  • Knowledge of the systems engineering process.
  • Knowledge of Supply Chain Risk Management Practices (NIST SP 800-161)
  • Knowledge of critical infrastructure systems with information communication technology that were designed without system security considerations.
  • Knowledge of network security architecture concepts including topology, protocols, components, and principles (e.g., application of defense-in-depth).
  • Knowledge of network systems management principles, models, methods (e.g., end-to-end systems performance monitoring), and tools.
  • Experience with Windows, Linux, UNIX, any other major operating systems
  • Experience with programming in Python, C, Java, Perl, Shell and/or bash shell scripting.
  • Familiarity with REST API best practices and usage
  • Familiarity with security technologies (firewalls, IDS/IPS, AV, etc.) and other SIEM products

Certifications/Licenses:

  • 5+ years’ experience security engineering experience and SIEM (security incident and event monitoring) administration, deployment, and/or architectural design
  • Certifications addressing security and risk management, asset security, security engineering, communications and network security, identity and access management, security assessment and testing, security operations, software development security, system security, network infrastructure
  • Active Public Trust clearance or eligible to obtain a Public Trust clearance
Desired Skills
  • In-depth knowledge of Information Theory (e.g., source coding, channel coding, algorithm complexity theory, and data compression).
  • Ability to apply system design tools, methods, and techniques, including automated systems analysis and design tools.
  • SIEM deployment, administration, and architecture design
  • SOAR experience in deployment and architecture design preferred
  • Knowledge of network protocols such as TCP/IP, Dynamic Host Configuration, Domain Name System (DNS), and directory services.
  • Ability to apply network security architecture concepts including topology, protocols, components, and principles (e.g., application of defense-in-depth).
  • Experience designing the integration of hardware and software solutions.

#EverforthECS1 (if funded or Indirect)

ECS Federal LLC is an equal opportunity employer and does not discriminate or allow discrimination on the basis any characteristic protected by law. All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, or local jurisdiction law.

Everforth ECS is the federal segment of Everforth , a $4B global organization with over 10,000 employees. Our nearly 3,500 professionals deliver advanced technology solutions in data and AI, cybersecurity, and enterprise transformation, serving defense, intelligence, and federal civilian agencies.

Our work powers mission-critical outcomes, strengthens technology partnerships, and creates meaningful opportunities for our people. We are defined by a commitment to excellence in delivery, a culture of innovation, and an environment where talent can thrive and grow.

We value:

  • Attracting and developing top talent and high-performing teams
  • Fostering a culture that is engaging, accountable, and mission-driven

Meet the challenge. Make a difference with Everforth ECS!

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SIEM Engineer - Mid
SIEM Engineer - Mid

ECS • Washington

On-site
USD 108,000 - 125,000
Mid-Level SIEM Engineer — Federal Cyber Defense
Mid-Level SIEM Engineer — Federal Cyber Defense

Everforth ECS • Washington

On-site
USD 90,000 - 130,000
Cyber Systems Analyst/Security Specialist
Cyber Systems Analyst/Security Specialist

Everforth ECS • Washington

On-site
USD 120,000 - 180,000
Information Systems Security Engineer SME
Information Systems Security Engineer SME

ECS • Stafford (VA)

On-site
USD 120,000 - 150,000
Linux SIEM System Engineer New Springfield, VA
Linux SIEM System Engineer New Springfield, VA

D2 Consulting • Springfield (VA), Northern (KY)

Hybrid
USD 135,000 - 145,000
Health/Dental/Vision
401(k) match
Accrued PTO
+3
Mid SIEM Engineer — Real-Time Security Monitoring
Mid SIEM Engineer — Real-Time Security Monitoring

ECS • Washington

On-site
USD 108,000 - 125,000
Senior Cybersecurity EngineerWashington DC Metro Area
Senior Cybersecurity EngineerWashington DC Metro Area

BuddoBot Inc. • Washington

Hybrid
USD 155,000 - 180,000
Hybrid work schedule
Senior Cyber Incident Analyst
Senior Cyber Incident Analyst

ECS • Arlington (VA)

On-site
USD 170,000 - 180,000
Senior Security Engineer
Senior Security Engineer

ECS • Arlington (VA)

Hybrid
USD 140,000 - 180,000
SIEM Engineer
SIEM Engineer

Nava • Washington

On-site
USD 100,000 - 130,000
Generous cost sharing for medical insurance
100% company paid dental insurance
100% company paid long-term and short-term disability insurance
+2