XSIAM Engineer

Entelligence

Virginia (MN)

On-site

USD 90,000 - 120,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Competitive base salary
Medical, dental, vision, and life insurance
Vacation, sick time, and paid holidays
Matching 401(k) program

Job summary

A leading IT solutions provider is looking for an XSIAM Engineer to support customers in developing a robust log migration and detection strategy. This role involves working closely with the technical lead, onboarding log sources, and ensuring compliance with best practices. Candidates should have strong communication skills, experience with SIEM technologies, and a relevant bachelor's degree. Benefits include a competitive salary and comprehensive insurance coverage.

Qualifications

  • 3+ years experience deploying and integrating SIEM into large enterprise environments.
  • Fluent in English; additional languages are advantageous.
  • Experience with Security Operations Center tooling and processes.

Responsibilities

  • Work with technical lead to develop log ingestion strategy.
  • Contribute to detection strategy based on best practices.
  • Create and optimize correlation rules.

Skills

Strong communication skills
SIEM deployment and integration
Log management
Correlation and detection rule creation
Understanding logs and technical documentation

Education

Relevant bachelor’s degree
CISSP, GIAC, SIEM Vendor Qualification

Tools

Splunk
IBM QRadar

Job description

XSIAM Engineer – Loudoun County

Entelligence is seeking an Engineer to support our Palo Alto’s clients. The successful candidate must be able to work in a cross‑functional environment and interact with representatives from Entelligence, Palo Alto Networks, and the end‑user.

As an Engineer for Cortex XSIAM, you will be responsible for assisting with the log migration and detection strategy of our customers. You will work closely with the technical lead to ensure that all of the relevant log sources are onboarded and ingested into XSIAM in accordance with industry best practices and customer requirements. You will then work to determine a suitable detection strategy, helping to protect customers from threats, by designing and implementing correlation rules.

RESPONSIBILITIES
  • Work with technical lead to develop log ingestion strategy
  • Contribute to detection strategy based on industry best practices
  • Detail step‑by‑step process to ingest high quality log sources
  • Perform log source monitoring and optimization
  • Create high quality correlation rules
  • Tune log sources and correlation rules
  • Be an SME for SIEM, Correlation, and Log Source Ingestion
  • Recognize opportunities where automation can improve analyst alert handling
  • Collaborate with internal and external teams to ensure product adoption
  • Create technical documentation detailing SIEM aspects of the engagement
  • Travel to customer meetings and workshops as needed (10%)
JOB REQUIREMENTS
  • Strong communication (written and verbal) and presentation skills, both internally and externally
  • Fluent English is a requirement – any other language is a plus
  • 3+ years of deploying and integrating SIEM to enterprise or large enterprise‑level environments
  • Coordinating and conducting event collection, log management, event management, compliance automation, and identity monitoring activities using SIEM platforms
  • The ability to create and develop correlation and detection rules within a SIEM to support alerting capabilities
  • Experience working with and deploying a variety of SIEM technologies (i.e., Splunk, IBM QRadar)
  • A proven ability to offer suggestions on detection strategy based on customer requirements
  • Ability to understand logs, locate and understand third‑party documentation where needed
  • Familiarity with reports on the status of the SIEM to include metrics such as number of logging sources, log collection rate, and other performance metrics
  • Knowledge of Security Analysis & Response a plus, including both endpoint, network & cloud‑based environments
  • 3 years experience with Security Operation Center tooling and processes
  • Relevant bachelor’s degree or industry‑recognized qualifications (CISSP, GIAC, SIEM Vendor Qualification, etc.)
  • Ability to read and understand technical design documentation
  • Ability to create technical design documentation
BENEFITS
  • Competitive base salary
  • Medical, dental, vision, and life insurance
  • Vacation, sick time, and paid holidays
  • Matching 401(k) program

ENTELLIGENCE. ALWAYS READY.

Since 1997, Entelligence has provided mission‑critical project delivery capacity for uninterrupted growth and long‑term market leadership to the industry’s biggest enterprise IT brands. Our commitment to close working partnerships and a proven approach for sustainable success is why Entelligence is always ready to help the world’s technology leaders quickly deliver their most advanced IT solutions to their most important customers.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

XSIAM Consultant - EMEA 2
XSIAM Consultant - EMEA 2

Entelligence • Germany (OH)

On-site
USD 80,000 - 120,000
Competitive base salary
Medical, dental, vision, and life insurance
Vacation, sick time, and paid holidays
+1
XSIAM SIEM Specialist – EMEA
XSIAM SIEM Specialist – EMEA

Entelligence • Germany (OH)

On-site
USD 80,000 - 120,000
Senior Cyber Security Engineer
Senior Cyber Security Engineer

CSC • Wilmington (DE)

Hybrid
USD 100,000 - 130,000
Annual leave
Tuition reimbursement
Referral bonuses
+1
Senior MSIAM SOC Engineer (Unit 42)
Senior MSIAM SOC Engineer (Unit 42)

Palo Alto Networks • Town of Texas (WI)

Hybrid
USD 126,000 - 205,000
Cortex XSIAM Security Engineer
Cortex XSIAM Security Engineer

CELESTIAL INNOVATIONS GROUP LLC • Washington

Hybrid
USD 100,000 - 130,000
401(k)
Competitive salary
Dental insurance
+3
Principal Consultant – SOC Transformation and XSIAM Deployment
Principal Consultant – SOC Transformation and XSIAM Deployment

Palo Alto Networks • Atlanta (GA)

On-site
USD 163,000 - 225,000
Senior Cyber Security Engineer
Senior Cyber Security Engineer

Visa Hunt • United States

Hybrid
USD 120,000 - 180,000
Principal Consultant – SOC Transformation and XSIAM Deployment
Principal Consultant – SOC Transformation and XSIAM Deployment

Palo Alto Networks • Chicago (IL)

On-site
USD 163,000 - 225,000
Principal Consultant – SOC Transformation and XSIAM Deployment
Principal Consultant – SOC Transformation and XSIAM Deployment

Palo Alto Networks • Santa Clara (CA)

Remote
USD 163,000 - 184,000
Competitive salary
Restricted stock units
Bonus potential
Principal Product Intelligence (Cortex XSIAM)
Principal Product Intelligence (Cortex XSIAM)

Palo Alto Networks • Burbank (CA)

On-site
USD 134,000 - 216,000