SIEM/SOAR Engineer

Valiant Solutions

South Carolina

On-site

USD 90,000 - 120,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Valiant Solutions is looking for a Secret-cleared SIEM/SOAR Engineer to join their cybersecurity team in Charleston, SC. This role involves managing SIEM and SOAR platforms, ensuring their performance, availability, and security.

The ideal candidate must have a Bachelor's degree in a related field, at least 3 years of experience with Elastic clusters, and proficiency in scripting languages. The position requires strong communication skills and offers a collaborative environment.

Qualifications

  • Minimum of 3 years of experience maintaining an enterprise Elastic cluster.
  • Proficiency in managing and maintaining SIEM and SOAR solutions.
  • Understanding of security event and incident management processes.

Responsibilities

  • Design, implement, and maintain the SIEM and SOAR infrastructure.
  • Monitor and analyze security events and incidents to protect information assets.
  • Integrate SIEM and SOAR systems with other security tools.

Skills

Elastic cluster maintenance
SIEM and SOAR management
Elasticsearch, Logstash, and Kibana
Scripting languages (Python, PowerShell)
Linux Administration (RHEL)
Networking protocols experience
Troubleshooting skills
Documentation skills
Communication skills

Education

Bachelor's degree in a related field

Job description

Position Overview

Valiant Solutions is seeking a Secret-cleared SIEM/SOAR Engineer to join our rapidly growing and innovative cybersecurity team. This engineer will manage and maintain the CSSP's Security Information and Event Management (SIEM) and Security Orchestration, Automation, and Response (SOAR) platforms, administer an enterprise Elastic cluster, and ensure the performance, availability, and security of these critical systems.

Location

Onsite in Charleston, SC.

Clearance Required

Active Secret

Education Requirement

Bachelor's degree in a related field.

Certification Required

DoD 8570 IAT Level II and DoD 8140 CSSP Auditor compliant.

Required Experience
  • Minimum of 3 years of experience maintaining an enterprise Elastic cluster.
  • Proficiency in managing and maintaining SIEM and SOAR solutions.
  • Experience with Elasticsearch Enterprise (including Logstash and Kibana) for SIEM operations.
  • Understanding of security event and incident management processes.
  • Knowledge of scripting languages (Python, PowerShell) for automation and integration.
  • Experience with threat detection and response methodologies.
  • Extensive experience with Linux Administration of RHEL Operating Systems.
  • Strong experience with networking protocols, solutions, and methodologies.
  • Excellent troubleshooting and problem solving skills.
  • Strong documentation skills.
  • Strong communication and interpersonal skills.
  • Ability to work in a team-oriented, collaborative environment.
  • Ability to prioritize and execute tasks in a high-pressure environment.
  • Availability for on-call after-hours rotational support as needed.
Responsibilities
  • Design, implement, and maintain the SIEM and SOAR infrastructure (Elastic and Splunk).
  • Manage and maintain an enterprise Elastic cluster to support SIEM operations for the CSSP.
  • Monitor and analyze security events and incidents to protect information assets.
  • Assist in the development and maintenance of use cases, rules, and alerts for threat detection and response.
  • Integrate SIEM and SOAR systems with other security tools and data sources.
  • Automate security operations workflows and incident response procedures using SOAR platforms.
  • Perform regular system monitoring and health checks to ensure the integrity and availability of SIEM and SOAR systems.
  • Conduct performance tuning, capacity planning, and scalability assessments for SIEM and SOAR solutions.
  • Implement and manage data ingestion pipelines for security event data.
  • Perform regular updates, patches, and upgrades for SIEM and SOAR systems.
  • Create and maintain documentation for system configurations, processes, and standard operating procedures.
  • Collaborate with security analysts, operations analysts, incident responders, and other CSSP teams to ensure effective use of SIEM and SOAR capabilities.
  • Provide guidance and support to operations analysts on the use of SIEM and SOAR tools.
  • Stay updated with the latest trends, tools, and best practices in SIEM and SOAR technologies.
  • Conduct research and recommend improvements to enhance the effectiveness of the SIEM and SOAR solutions.
Equal Employment Opportunity

Valiant Solutions is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, age, disability, genetic information, marital status, or veteran status, in accordance with applicable law.

Physical Demands

Sitting or standing at a desk for prolonged periods of time and consistent operation of a computer. Frequent communication and exchange of accurate information via electronic communication, phones, and in person. Occasionally lift or move moderate amounts of weight, typically less than 20 pounds. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions of the job.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Full Stack Developer (Secret Clearance Required)
Full Stack Developer (Secret Clearance Required)

Valiant Solutions • South Carolina

On-site
USD 80,000 - 120,000
Employee-centric culture
Commitment to excellence
Secret-Cleared SIEM & SOAR Engineer — Elastic & Automation
Secret-Cleared SIEM & SOAR Engineer — Elastic & Automation

Valiant Solutions • South Carolina

On-site
USD 90,000 - 120,000
Sr. Splunk / SIEM Engineer (TS Required)
Sr. Splunk / SIEM Engineer (TS Required)

augustschell • Alexandria (VA)

Hybrid
USD 100,000 - 130,000
Detection Analyst (Elastic)
Detection Analyst (Elastic)

Valiant Solutions • South Carolina

On-site
USD 80,000 - 110,000
Tier 3 DCO (Defensive Cyber Operations) Watch Analyst
Tier 3 DCO (Defensive Cyber Operations) Watch Analyst

Valiant Solutions • South Carolina

On-site
USD 80,000 - 120,000
Security Information Event Manager (SIEM) Administrator
Security Information Event Manager (SIEM) Administrator

Castalia Systems • Waipahu (HI)

On-site
USD 120,000 - 124,000
Systems Engineer
Systems Engineer

Valiant Integrated Services • Herndon (VA)

On-site
USD 90,000 - 120,000
Sr. Security Engineer - SIEM, Automation & Elastic Security
Sr. Security Engineer - SIEM, Automation & Elastic Security

Red Lobster, Inc. • Orlando (FL)

On-site
USD 90,000 - 130,000
SIEM Engineer (Splunk/ Secret)
SIEM Engineer (Splunk/ Secret)

Insight Global • Fulton (MD)

Hybrid
USD 120,000 - 180,000
Benefits from Day 1
Splunk SOAR Engineer
Splunk SOAR Engineer

Leidos • Suitland (MD)

On-site
USD 108,000 - 195,000