Skip to content
All jobs

Senior SIEM Engineer

Fourans

Job
28296
Posted
Location
Harrisburg, PA
Work type
Contract
Tax terms
C2C
Experience
Experience open
Rate
$100 (Hourly)
Openings
1 opening

Opens your email app with a message to the employer, its subject naming this job. Attach your resume and send it from your own email.

Skills

  • SIEM
  • Splunk
  • Incident Response

About the job

Provide specialized engineering support for the Commonwealth's Security Information and Event Management (SIEM) environment. The contractor will support the design, configuration, integration, optimization, and ongoing operation of the SIEM platform to strengthen enterprise security monitoring, threat detection, incident response, and log management capabilities. This position reports to the Director and provides hands-on technical support for the SIEM environment. Strategic direction, governance, and overall program oversight remain with the Director

Duties

Engineer, configure, maintain, and optimize the enterprise SIEM platform, including Splunk and related security technologies.

Onboard new data sources and ensure logs are properly collected, parsed, normalized, indexed, and retained.

Develop and maintain correlation searches, alerts, dashboards, reports, detection rules, and other security monitoring content.

Integrate SIEM capabilities with security tools, cloud platforms, applications, infrastructure, and other enterprise systems.

Monitor SIEM platform performance, capacity, availability, and overall health and troubleshoot technical issues.

Tune alerts and detection logic to reduce false positives and improve the effectiveness of security monitoring.

Support SOC analysts and incident response personnel by providing technical expertise, queries, dashboards, and investigative capabilities.

Support upgrades, patches, configuration changes, testing, and implementation of supporting SIEM infrastructure.

Develop and maintain technical documentation operational procedures, system configurations, and knowledge-transfer materials.

Collaborate with SOC, infrastructure, cloud, networking, and application teams on SIEM-related initiatives.

Follow Commonwealth security standards, change-management processes, and applicable cybersecurity policies andr equirements.

Similar jobs

See all jobs