Security Engineer III
Deloitte · Baltimore, MD · 2 days ago
Hybrid$108k–$189k/yrFull-time
Work you'll do
- Configure, maintain, and optimize SIEM content including correlation rules, alerts, dashboards, and reports
- Analyze security events and log data to identify suspicious activity, support investigations, and improve detection coverage
- Integrate and normalize log sources from endpoint, network, cloud, identity, and security platforms
- Partners with cybersecurity teams to support use case development, threat detection, incident triage, and response activities
- Document detection logic, operational procedures, and monitoring requirements to support consistent service delivery
Qualifications
- Bachelor's degree in computer science, Cybersecurity, Information Technology, Engineering, or a degree in related technical field
- 3+ years of experience in cybersecurity, security operations, or SIEM engineering
- 3+ years of experience with at least one of the following: Splunk, Palo Alto XSIAM, or CrowdStrike NG SIEM
- Security certification such as Splunk certification, Palo Alto Networks certification, or CrowdStrike certification is required
- 2+ years' experience in the following areas: creating, tuning, and maintaining correlation searches, alerts, dashboards, and reports in a Security Information and Event Management platform
- Reviewing and analyzing logs from endpoint, network, cloud, identity, and application sources
- Active Secret clearance or higher