SIEM Infrastructure and Detection Engineer

Posted 3 Days Ago
Be an Early Applicant
Portland, OR
In-Office
Senior level
Artificial Intelligence • Cloud • Information Technology • Security • Software
The Role
The SIEM Engineer manages SIEM infrastructure for a federal cybersecurity program, ensuring reliability, optimizing performance, and meeting federal standards through collaboration and automation.
Summary Generated by Built In
Job Summary & Responsibilities

ECS is seeking a SIEM Infrastructure and Detection Engineer to work in our Portland, Oregon office


The SIEM Infrastructure and Detection Engineer supports a federal energy sector cybersecurity program by engineering, maintaining, and optimizing the SIEM infrastructure and security monitoring platform, including detections, visualizations, dashboards, and reporting. This role ensures the reliability and effectiveness of SIEM and related monitoring tools to meet Information Security Continuous Monitoring (ISCM) and Department of Homeland Security (DHS) Continuous Diagnostics and Mitigation (CDM) requirements. The engineer works directly with security analysts, system owners, and DHS CDM teams to ensure continuous visibility, timely detection, and compliance with federal cybersecurity standards.


Core Capabilities

  • Lead the design, deployment, and monitoring of enterprise SIEM platforms (e.g., Splunk, Elastic Stack)
  • Architect, implement, and maintain integrations with enterprise systems, cloud environments, and security tools (e.g., EDR, IDS/IPS, firewalls, TIP)
  • Develop and optimize dashboards, alerts, and data pipelines
  • Automate platform tasks and SIEM processes using scripting (e.g., Python, PowerShell, bash)
  • Monitor and tune platform performance to ensure high availability and accuracy of security data
  • Troubleshoot and resolve platform-related issues in coordination with analysts and engineers
  • Collaborate with federal stakeholders to align SIEM capabilities with ISCM and CDM reporting requirements
  • Maintain documentation of platform configurations, standard operating procedures, and system baselines
Preferred Qualifications
  • U.S. Citizenship with ability to obtain and maintain a DOE “L” clearance
  • Hands-on experience with at least one enterprise SIEM platform (Splunk, Elastic, QRadar, or LogRhythm)
  • Experience integrating SIEM with enterprise IT systems, cloud platforms, or endpoint detection tools
  • Experience onboarding diverse log sources (network, endpoint, cloud, SaaS) and tuning correlation rules
  • Proficiency in scripting (Python, PowerShell, or Bash) for automation and data integration
  • A Bachelor's or equivalent and minimum 5 years of experience in cybersecurity engineering and security monitoring, including 3+ years dedicated to SIEM engineering

Top Skills

Bash
Edr
Elastic Stack
Firewalls
Ids/Ips
Logrhythm
Powershell
Python
Qradar
Splunk
Tip
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Fairfax, VA
2,129 Employees
Year Founded: 1993

What We Do

ECS, a segment of ASGN (NYSE: ASGN), delivers advanced solutions and services in cloud, cybersecurity, artificial intelligence (AI), machine learning (ML), application and IT modernization, and science and engineering. The company solves critical, complex challenges for customers across the U.S. public sector, defense, intelligence and commercial industries.

ECS maintains partnerships with leading cloud, cybersecurity, and AI/ML providers and holds specialized certifications in their technologies.

Headquartered in Fairfax, Virginia, ECS has more than 3,400 employees throughout the U.S. and has been recognized as a Top Workplace by The Washington Post for the last five years.

Similar Jobs

Datadog Logo Datadog

Sales Engineer

Artificial Intelligence • Cloud • Security • Software • Cybersecurity
Easy Apply
Remote or Hybrid
2 Locations
149K-198K Annually

Wells Fargo Logo Wells Fargo

Teller East Woodburn

Fintech • Financial Services
Hybrid
Woodburn, OR, USA

Wells Fargo Logo Wells Fargo

Teller Part Time Canby Union

Fintech • Financial Services
Hybrid
Canby, OR, USA

PwC Logo PwC

Salesforce Engineer

Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
Remote or Hybrid
69 Locations
74K-244K

Similar Companies Hiring

Credal.ai Thumbnail
Software • Security • Productivity • Machine Learning • Artificial Intelligence
Brooklyn, NY
Standard Template Labs Thumbnail
Software • Information Technology • Artificial Intelligence
New York, NY
10 Employees
PRIMA Thumbnail
Travel • Software • Marketing Tech • Hospitality • eCommerce
US
15 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account