EngineerJobs.io
← Back to all jobs

Job Description

Join Deloitte's Cyber Defense and Resilience team as a Security Engineer III with a focus on SIEM engineering. You will design and optimize detection content, refine alert fidelity, and conduct incident analysis across complex enterprise environments to strengthen clients' cyber defenses. This role is based in Baltimore, MD with remote work options, offering a salary range of $102,500 to $188,900 per year and requires an active Secret Clearance.

Responsibilities

  • Design, tune, and manage SIEM content, covering correlation rules, alerts, dashboards, and reports
  • Examine security events and log streams to detect anomalies, aid investigations, and broaden detection coverage
  • Ingest and normalize logs from endpoints, networks, cloud services, identity systems, and security tools
  • Collaborate with cybersecurity teams to develop use cases, enhance threat detection, and assist with incident triage and response
  • Document detection logic, runbooks, and monitoring requirements to ensure consistent service delivery

Requirements

  • Bachelor's degree in computer science, Cybersecurity, Information Technology, Engineering, or a related technical field
  • Active Secret Clearance
  • 3+ years of experience in cybersecurity, security operations, or SIEM engineering
  • 3+ years of experience with at least one of Splunk, Palo Alto XSIAM, or CrowdStrike NG SIEM
  • 2+ years creating, tuning, and maintaining correlation searches, alerts, dashboards, and reports in a SIEM platform
  • 2+ years reviewing and analyzing logs from endpoint, network, cloud, identity, and application sources
  • Security certification such as Splunk certification, Palo Alto Networks certification, or CrowdStrike certification is required
  • Ability to travel up to 20% on average
  • Willing to work onsite at a client location or Deloitte office for up to 5 days a week
  • Legally authorized to work in the United States without the need for employer sponsorship now or in the future

Technologies

  • Splunk
  • Palo Alto XSIAM
  • CrowdStrike NG SIEM
  • Amazon Web Services
  • Microsoft Azure
  • Google Cloud Platform
  • MITRE ATT&CK

Similar Jobs