SIEM Engineer
Zachary Piper Solutions · Raleigh, NC · Yesterday
Hybrid$105k–$120k/yrFull-time
Zachary Piper Solutions is seeking a SIEM Engineer to join a leading client in the cybersecurity and defense industry in the RTP area. This is a hybrid position requiring onsite presence on Tuesdays and Thursdays.
About the role
This role is best suited for a security professional with strong Splunk expertise, AWS exposure, and experience in SOC or incident response environments who thrives in a fast-paced, mission-driven setting.
Responsibilities
- Engineer and enhance Splunk Enterprise Security detections, dashboards, and correlation searches to strengthen threat visibility
- Build and support automation workflows and playbooks within Splunk SOAR to streamline response efforts
- Integrate and normalize diverse security data sources into Splunk while ensuring data quality and performance optimization
- Partner with SOC and engineering teams to refine detection capabilities and improve operational efficiency across the environment
- Lead and support incident investigations, coordinating response actions and contributing to continuous monitoring coverage
Requirements
- Active Secret Clearance
- 3+ years of experience in SIEM engineering, SOC operations, or incident response
- Advanced proficiency with Splunk, including writing complex SPL queries and building production-grade dashboards (similar to Ashley Brown-level experience)
- Experience integrating AWS services (such as AWS Security Hub) and other security tools into a centralized SIEM platform
- Strong understanding of data onboarding, CIM normalization, and Splunk knowledge objects
- Ability to operate in high-pressure environments
- Ability to work onsite twice weekly in RTP – Tuesday and Thursday
Pay
$105,000 – 120,000 annually
Benefits
- Health, Vision, and Dental coverage
- Paid Time Off (PTO)
- Paid Holiday and Sick Leave (if required by law)