SIEM Threat Detection Engineer – Hybrid/Remote (EMEA)

Pragmatike

United States

Hybrid

USD 80,000 - 125,000

Full time

3 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Pragmatike is seeking a Security Operations Analyst focused on SIEM administration and detection engineering within a global cybersecurity operations team. You’ll build, tune, and validate monitoring capabilities across multi-tenant environments and collaborate with Threat Intelligence and Incident Response teams.

Ideal candidates have 5+ years in IT security, hands-on SIEM experience (Splunk or Microsoft Sentinel), cloud security knowledge (Azure/AWS/GCP), and strong English communication.

Qualifications

  • 5+ years of relevant IT/cybersecurity experience.
  • Hands-on experience administering a SIEM platform (Splunk or Microsoft Sentinel).
  • Strong experience with SIEM/EDR environments and technical security analysis.
  • Deep knowledge of Microsoft Security technologies.
  • Strong cloud security knowledge across Azure, AWS, and/or GCP.

Responsibilities

  • Develop, implement, validate, tune, and maintain security monitoring and detection capabilities.
  • Administer and optimize SIEM platforms across multiple customer environments.
  • Manage security detection rules and use cases throughout their lifecycle.
  • Onboard, integrate, test, and validate new security data sources and telemetry feeds.
  • Review and improve detection logic, security content, and monitoring configurations.
  • Collaborate with Threat Intelligence and Incident Response teams to translate threats into actionable detection capabilities.
  • Support cybersecurity architecture reviews and provide recommendations to improve security monitoring.
  • Build and maintain security metrics, dashboards, KPIs, and service-performance reports.
  • Evaluate detection effectiveness and identify opportunities to reduce false positives.
  • Contribute to quality assurance, process reviews, control validation, and corrective actions.
  • Maintain SOC procedures, standards, documentation, knowledge bases, and operational guidance.
  • Prepare technical reports, findings, and recommendations for internal and external stakeholders.

Skills

SIEM administration
Threat detection
Security content
Data-source onboarding
Use-case lifecycle
Detection optimization
English communication
Linux/macOS/Windows
Cloud security
Azure/AWS/GCP

Tools

Splunk
Microsoft Sentinel
QRadar
ArcSight
ELK
EDR platforms (Defender for Endpoint, CrowdStrike)

Job description

Pragmatike is seeking a Security Operations Analyst focused on SIEM administration and detection engineering within a global cybersecurity operations team. You’ll build, tune, and validate monitoring capabilities across multi-tenant environments and collaborate with Threat Intelligence and Incident Response teams.

Ideal candidates have 5+ years in IT security, hands-on SIEM experience (Splunk or Microsoft Sentinel), cloud security knowledge (Azure/AWS/GCP), and strong English communication.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Security Operations Analyst (SIEM & Threat Detection)
Security Operations Analyst (SIEM & Threat Detection)

Pragmatike • United States

Hybrid
USD 80,000 - 125,000
Security Operations Analyst - 24/7 SOC | Hybrid/Remote
Security Operations Analyst - 24/7 SOC | Hybrid/Remote

Pragmatike • United States

Hybrid
USD 53,000 - 84,000
Senior SIEM & Threat Detection Analyst (Remote)
Senior SIEM & Threat Detection Analyst (Remote)

Trigyn Technologies Limited • United States

Remote
USD 90,000 - 130,000
Security Operations Analyst (Cyber Defense Operations)
Security Operations Analyst (Cyber Defense Operations)

Pragmatike • United States

Hybrid
USD 53,000 - 84,000
Security Operations Engineer – SIEM & IR (Hybrid)
Security Operations Engineer – SIEM & IR (Hybrid)

Trintech • United States

Hybrid
USD 90,000 - 130,000
Open PTO
Hybrid schedule
Healthcare program
+4
Remote SIEM Engineer: Detection & Analytics Lead
Remote SIEM Engineer: Detection & Analytics Lead

PowerToFly • Washington

On-site
USD 89,000 - 163,000
Remote SIEM Detection Engineer: Build Detection Excellence
Remote SIEM Detection Engineer: Build Detection Excellence

Mosaec • Northern (KY)

Hybrid
USD 112,000 - 162,000
Unlimited PTO
Work location flexibility
Parental leave (up to 24 weeks)
SIEM/Detection Engineer
SIEM/Detection Engineer

Mantis Security Corporation • Reston (VA)

On-site
USD 140,000 - 190,000
Sr. SIEM Engineering Consultant
Sr. SIEM Engineering Consultant

ecsfederal • Virginia (MN)

Hybrid
USD 140,000 - 180,000
Remote Senior SIEM Engineer — Cloud & On-Prem
Remote Senior SIEM Engineer — Cloud & On-Prem

ECS • Richmond (VA)

On-site
USD 120,000 - 170,000