SIEMEngineer

Hadiamondstar Software Solutions LLC

Washington (District of Columbia)

On-site

USD 130,000 - 170,000

Full time

4 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Hadiamondstar Software Solutions LLC in Washington, DC seeks a senior cybersecurity professional to lead SIEM operations, including Splunk SPL, data ingestion, dashboards, and platform troubleshooting in enterprise environments. The role requires 5+ years in IT/cybersecurity and hands-on SIEM administration.

You will onboard log sources, optimize telemetry flows, and collaborate across teams to detect threats, craft queries, and ensure data quality; strong Linux/Windows systems knowledge and

Qualifications

  • Bachelor's degree in Cybersecurity, Computer Science, Information Systems, Engineering, or a related technical discipline (4 years experience in lieu of degree)
  • 5+ years experience relevant IT/cybersecurity experience.
  • 3+ years of hands-on SIEM administration experience supporting enterprise or similarly complex environments.
  • Hands-on experience with Splunk Enterprise, including SPL, data ingestion, forwarders, indexes, searches, dashboards, alerts, and platform troubleshooting.
  • Experience onboarding and troubleshooting enterprise log sources and understanding telemetry flow from source systems through collection, ingestion, indexing, and search.
  • Working knowledge of SQL and experience querying data for analysis, troubleshooting, validation, or reporting.
  • Experience with or working knowledge of Elastic, Elasticsearch, Kibana, or comparable search and analytics technologies, with the ability to rapidly develop deeper Elastic expertise.
  • Understanding of enterprise logging concepts, including collection, parsing, normalization, enrichment, indexing, retention, and data quality.
  • Strong Linux command-line skills and working knowledge of Windows/Linux systems, networking, and common protocols such as TCP/IP, DNS, HTTP/HTTPS, TLS, and syslog.
  • Familiarity with enterprise cybersecurity technologies such as EDR, firewalls, IDS/IPS, identity systems, and vulnerability management platforms.
  • Demonstrated ability to independently troubleshoot technical problems, analyze unfamiliar data, test assumptions, identify root causes, and develop practical solutions.
  • Strong technical curiosity, ownership, accountability, and ability to learn new technologies, platforms, and query languages.
  • Strong written and verbal communication skills with the ability to document technical processes and collaborate effectively across teams.

Skills

Communication skills
Analytical thinking
Problem solving
Ownership & accountability

Education

Bachelor's degree in Cybersecurity, Computer Science, Information Systems, Engineering, or related technical discipline

Tools

Splunk Enterprise
Elastic Stack
SQL
Linux
Windows
Networking (TCP/IP)

Job description

  • Bachelor's degree in Cybersecurity, Computer Science, Information Systems, Engineering, or a related technical discipline (4 years experience in lieu of degree)
  • 5+ years experience relevant IT/cybersecurity experience.
  • 3+ years of hands-on SIEM administration experience supporting enterprise or similarly complex environments.
  • Hands-on experience with Splunk Enterprise, including SPL, data ingestion, forwarders, indexes, searches, dashboards, alerts, and platform troubleshooting.
  • Experience onboarding and troubleshooting enterprise log sources and understanding telemetry flow from source systems through collection, ingestion, indexing, and search.
  • Working knowledge of SQL and experience querying data for analysis, troubleshooting, validation, or reporting.
  • Experience with or working knowledge of Elastic, Elasticsearch, Kibana, or comparable search and analytics technologies, with the ability to rapidly develop deeper Elastic expertise.
  • Understanding of enterprise logging concepts, including collection, parsing, normalization, enrichment, indexing, retention, and data quality.
  • Strong Linux command-line skills and working knowledge of Windows/Linux systems, networking, and common protocols such as TCP/IP, DNS, HTTP/HTTPS, TLS, and syslog.
  • Familiarity with enterprise cybersecurity technologies such as EDR, firewalls, IDS/IPS, identity systems, and vulnerability management platforms.
  • Demonstrated ability to independently troubleshoot technical problems, analyze unfamiliar data, test assumptions, identify root causes, and develop practical solutions.
  • Strong technical curiosity, ownership, accountability, and ability to learn new technologies, platforms, and query languages.
  • Strong written and verbal communication skills with the ability to document technical processes and collaborate effectively across teams.
Requirements
  • Bachelor's degree in Cybersecurity, Computer Science, Information Systems, Engineering, or a related technical discipline (4 years experience in lieu of degree)
  • 5+ years experience relevant IT/cybersecurity experience.
  • 3+ years of hands-on SIEM administration experience supporting enterprise or similarly complex environments.
  • Hands-on experience with Splunk Enterprise, including SPL, data ingestion, forwarders, indexes, searches, dashboards, alerts, and platform troubleshooting.
  • Experience onboarding and troubleshooting enterprise log sources and understanding telemetry flow from source systems through collection, ingestion, indexing, and search.
  • Working knowledge of SQL and experience querying data for analysis, troubleshooting, validation, or reporting.
  • Experience with or working knowledge of Elastic, Elasticsearch, Kibana, or comparable search and analytics technologies, with the ability to rapidly develop deeper Elastic expertise.
  • Understanding of enterprise logging concepts, including collection, parsing, normalization, enrichment, indexing, retention, and data quality.
  • Strong Linux command-line skills and working knowledge of Windows/Linux systems, networking, and common protocols such as TCP/IP, DNS, HTTP/HTTPS, TLS, and syslog.
  • Familiarity with enterprise cybersecurity technologies such as EDR, firewalls, IDS/IPS, identity systems, and vulnerability management platforms.
  • Demonstrated ability to independently troubleshoot technical problems, analyze unfamiliar data, test assumptions, identify root causes, and develop practical solutions.
  • Strong technical curiosity, ownership, accountability, and ability to learn new technologies, platforms, and query languages.
  • Strong written and verbal communication skills with the ability to document technical processes and collaborate effectively across teams.
Preferred Qualifications
  • Hands-on experience with Elastic Stack / Elastic Security, including Elasticsearch, Kibana, Elastic Agent/Fleet, Beats, or Logstash.
  • Experience with KQL, ES|QL, EQL, Query DSL, or comparable search and analytics languages.
  • Experience supporting a SIEM migration, particularly Splunk-to-Elastic or a comparable enterprise migration.
  • Experience with Splunk ES, Splunk CIM, Elastic Common Schema (ECS), or distributed Splunk environments.
  • Experience with security detection engineering, correlation rules, alert tuning, threat hunting, or MITRE ATT&CK.
  • Experience with scripting or automation using Python, PowerShell, Bash, REST APIs, or similar technologies.
  • Experience working in or closely supporting a Security Operations Center (SOC).
  • Relevant technical certifications such as Splunk, Elastic, Security+, CySA+, GSEC, or comparable certifications.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Sr. Security Engineer - SIEM, Automation & Elastic Security
Sr. Security Engineer - SIEM, Automation & Elastic Security

Red Lobster, Inc. • Orlando (FL)

On-site
USD 90,000 - 130,000
Cybersecurity Engineer 3
Cybersecurity Engineer 3

Mbi Llc • Richmond (VA)

On-site
USD 110,000 - 160,000
Cybersecurity Engineer
Cybersecurity Engineer

Accylerate, LLC. • Richmond (VA)

On-site
USD 110,000 - 140,000
SIEM Engineer III
SIEM Engineer III

ecsfederal • Virginia (MN)

Hybrid
USD 120,000 - 170,000
Cybersecurity Engineer
Cybersecurity Engineer

SSV Technologies Inc. • Richmond (VA)

On-site
USD 120,000 - 180,000
Senior SIEM Engineer (Splunk)
Senior SIEM Engineer (Splunk)

Quantum Sky • Washington

On-site
USD 140,000 - 210,000
Cybersecurity Engineer 3
Cybersecurity Engineer 3

Delan Associates Inc. • Richmond (VA)

On-site
USD 110,000 - 160,000
Splunk Architect - Enterprise Security
Splunk Architect - Enterprise Security

Vinmar Digital Analytics • United States

Remote
USD 150,000 - 230,000
CYBERSECURITY ENGINEER 4 – SIEM / SPLUNK ENGINEER
CYBERSECURITY ENGINEER 4 – SIEM / SPLUNK ENGINEER

iP-Plus Consulting, Inc. • Richmond (VA)

On-site
USD 120,000 - 170,000
Information Security Analyst
Information Security Analyst

Cisive • Maryland

On-site
USD 80,000 - 110,000