





Mid-level metro role but niche SIEM/detection skills reduce broad applicant pool.
Requires specialized SIEM and detection engineering experience, so security-domain backgrounds are preferred.
Explicit 5+ years plus mandatory SIEM, detection engineering, AWS logging and platform integration requirements.
Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Own the integration and health monitoring of log sources and pipelines across global SaaS and corporate IT environments within the SIEM platform.
Develop, tune, and maintain detection rules and security use cases informed by internal incidents, threat intelligence, and MSSP outputs.
Automate logging and detection onboarding processes in collaboration with infrastructure, security, and engineering teams to ensure visibility and compliance.
Minimum 5 years experience in SIEM engineering, detection engineering, security platform engineering, or related technical security role.
Hands-on administration and integration experience with enterprise SIEM platforms.
Experience onboarding and troubleshooting log sources across cloud, infrastructure, network, identity, endpoint, application, and security platforms.
Working knowledge of AWS security logging sources such as CloudTrail, GuardDuty, VPC Flow Logs, Route 53, EKS, and EC2.
Expertise in detection engineering combining SIEM platform management, detection rule development, and log-source governance.
Experience collaborating cross-functionally with infrastructure, security, engineering, MSSPs, and compliance/GRC teams in cloud or SaaS environments.
Demonstrated ability to automate detection-as-code, version control, and integration pipelines using scripting tools (Python, PowerShell, Terraform, APIs).