SIEM Engineer
Washington, DC
Category: Security
Industry: Government
Reference ID: JN -062026-107233
Date Posted: 06/02/2026
Shortcut: http://careers.eliassen.com/8YP7pV
Description:Hybrid 2 Days Onsite/3 Days Remote in Washington, DC
Our client seeks a SIEM Engineer to support enterprise security monitoring, detection engineering, and log management within a federal SOC environment. The role administers SIEM platforms, onboards telemetry, tunes detections, and integrates security tools to improve visibility and response outcomes.
Due to client requirements, applicants must be willing and able to work on a w2 basis. For our w2 consultants, we offer a great benefits package that includes Medical, Dental, and Vision benefits, 401k with company matching, and life insurance.
Rate: $71.00 to $76.00/hr. w2
Responsibilities:
- Administer and support SIEM platforms such as Splunk and Microsoft Sentinel.
- Develop and maintain search queries, dashboards, alerts, and detection logic.
- Perform telemetry onboarding, including log source integration and troubleshooting.
- Analyze and optimize data pipelines for accurate, real-time monitoring.
- Tune alerts and detections to reduce false positives and improve signal quality.
- Develop and refine correlation rules and detection use cases.
- Integrate SIEM with EDR/XDR, vulnerability management, and ticketing systems.
- Collaborate with SOC analysts and engineers to improve detection and response workflows.
- Support incident investigations through log analysis and data correlation.
- Develop documentation for SIEM configurations, onboarding processes, and detection content.
- Contribute to operational reporting and metrics related to SIEM performance.
Experience Requirements:
- 5+ years in SIEM engineering, SOC operations, or cybersecurity engineering.
- Hands-on experience with Splunk administration, search, dashboards, alerting, or detection support.
- Experience with telemetry onboarding and log source troubleshooting.
- Background in alert tuning, correlation logic, detection refinement, and false-positive reduction.
- Experience integrating SIEM with security and IT operations tools.
- Understanding of log management, security monitoring, and detection methodologies.
- Experience in enterprise or 24x7 SOC environments.
- Preferred: experience supporting federal environments or regulated frameworks such as FISMA and NIST.
- Preferred: familiarity with detection engineering frameworks and threat modeling.
- Preferred: scripting for automation using Python or PowerShell.
- Preferred: knowledge of log normalization, parsing, and data enrichment.
- Preferred certifications: Splunk (Power User, Admin, Architect), Microsoft Security/Sentinel, Security+ or CySA+.
- Technical environment exposure: Splunk, Microsoft Sentinel, Microsoft Defender, Rapid7 InsightVM, Veracode, Jira, Confluence, AWS, Azure, Okta, Entra ID/PIM, CyberArk, Intune, Device42, Microsoft Purview, Appian, Oracle, and hybrid on-prem plus cloud.
Skills, experience, and other compensable factors will be considered when determining pay rate. The pay range provided in this posting reflects a W2 hourly rate; other employment options may be available that may result in pay outside of the provided range.
W2 employees of Eliassen Group who are regularly scheduled to work 30 or more hours per week are eligible for the following benefits: medical (choice of 3 plans), dental, vision, pre-tax accounts, other voluntary benefits including life and disability insurance, 401(k) with match, and sick time if required by law in the worked-in state/locality.
If anyone reaches out to you about an open position connected with Eliassen Group, please ensure that you are working directly with us by confirming the following:
· When you work with Eliassen Group, all email communication will come from an Eliassen.com address, never Gmail, Yahoo, etc.
· Eliassen Group will never ask you for personal information (home address, bank account, or check routing number) until you have worked with someone clearly associated with Eliassen Group.
If you have any indication of fraudulent activity, please contact fraud@eliassen.com.
-
Automation / SOAR Engineer
Washington, DC
Description: Hybrid 2 Days Onsite/3 Days Remote in Washington, DC Our client seeks an Automation / SOAR Engineer to design, develop, and implement automation solutions within a federal cybersecurity operations environment. The role focuses on building ...
Date Posted: 06/02/2026 Recommended
-
SOC Analyst
Washington, DC
Description: Hybrid 2 Days Onsite/3 Days Remote in Washington, DC Our client seeks a SOC Analyst to support continuous monitoring, detection, analysis, and response to cybersecurity events across hybrid cloud and on-premises environments. The analyst w...
Date Posted: 06/02/2026 Recommended
-
Lead Cybersecurity Engineer
Washington, DC
Description: Hybrid 2 Days Onsite/3 Days Remote in Washington, DC Our client seeks a Lead Cybersecurity Engineer to design and implement enterprise security solutions across a hybrid federal environment. The role will lead engineering initiatives spann...
Date Posted: 06/02/2026 Recommended
-
Sr. Solutions Architect III - Cyber
Washington, DC
Description: On-site in Washington, DC Our client seeks a Sr. Solutions Architect III - Cyber to design, implement, and manage scalable cybersecurity solutions across multiple domains. You will lead the implementation of a Security Operations Center an...
Date Posted: 05/18/2026 Recommended
-
SOC/NOC Operations Manager
Washington, DC
Description: Hybrid 2 Days Onsite/3 Days Remote in Washington, DC Our client seeks a SOC/NOC Operations Manager to lead 24x7 cybersecurity and network operations within a complex federal enterprise environment. The manager will oversee security and net...
Date Posted: 06/02/2026 Recommended
-
Tier 2 Senior Cyber Security Analyst
Tustin, CA
Description: Santa Ana, CA | Onsite at OC Data Center Our client seeks a Tier 2 Senior Cyber Security Analyst to support a 24x7x365 Security Operations Center. The analyst will create, tune, monitor, and investigate SIEM alerts and support incident res...
Date Posted: 05/20/2026 Recommended
-
Reporting & Metrics Analyst
Washington, DC
Description: Hybrid 2 Days Onsite/3 Days Remote in Washington, DC Our client seeks a Reporting & Metrics Analyst to support operational, cybersecurity, and compliance reporting within a federal SOC/NOC environment. The role will develop dashboards, tra...
Date Posted: 06/02/2026 Recommended
-
NOC Analyst
Washington, DC
Description: Hybrid 2 Days Onsite/3 Days Remote in Washington, DC Our client seeks a NOC Analyst to support enterprise network and infrastructure monitoring within a 24x7 federal operations environment. The role encompasses real-time monitoring, event ...
Date Posted: 06/02/2026 Recommended
-
Associate Network Security Engineer
Fenton Cary, NC
Description: Associate Network Security Engineer Cary, NC • Hybrid Our client is seeking an Associate Cybersecurity Engineer for a 12‑month contract, with potential for permanent conversion, to support the Information Security organization. This role f...
Date Posted: 05/31/2026 Recommended
-
Backup Program Manager
Washington, DC
Description: Hybrid 2 Days Onsite/3 Days Remote in Washington, DC Our client seeks a Backup Program Manager to support day-to-day program execution for a large federal cybersecurity and operations program. The role will assist the Program Manager with ...
Date Posted: 06/02/2026 Recommended
-
Lead Privileged Access Management (PAM) Engineer
Washington, DC
Description: Hybrid 2 Days Onsite/3 Days Remote in Washington, DC Our client seeks a Lead Privileged Access Management (PAM) Engineer to design, implement, and operate enterprise PAM solutions across a complex federal hybrid cloud environment. The role...
Date Posted: 06/02/2026 Recommended
-
Senior Software Engineer
Westlake, TX
Description: On-site in Westlake, TX Our client seeks a Senior Software Engineer to lead initiatives for Security Master and Pricing applications. The role will interface with end users and product owners, support distributed systems, and improve busin...
Date Posted: 05/25/2026 Recommended
-
Cloud & Network Infrastructure Engineer
Washington, DC
Description: On-site 5 days/week in Washington, DC Our client requires a senior Cloud and Network Infrastructure Engineer to lead cloud and on‑premises network design, implementation, and operations. The role focuses on hybrid connectivity, security, a...
Date Posted: 05/09/2026 Recommended
-
Lead Software Engineer BaaS Team
Anywhere
Description: Remote Our client seeks a Lead Software Engineer for the BaaS team to support partner onboarding and platform enhancements. The role focuses on building scalable, secure, and high-performance systems that enable embedded financial services...
Date Posted: 05/12/2026 Recommended
-
AWS Cloud / GoLang Software Engineering Consultant
Merrimack, NH
Description: Hybrid 50% on site, locations available in North Carolina office, New Hampshire office, or our world class Texas office Our client seeks a customer-focused Software Engineer to help build and operate containerized services as well as authe...
Date Posted: 05/12/2026 Recommended
-
Operations Field Engineer
Petersburg, VA
Description: Onsite in Petersburg, VA Our client seeks an Operations Field Engineer to install, service, and troubleshoot access control and CCTV systems at customer sites. The role requires hands-on work with low-voltage electronics, cabling, readers,...
Date Posted: 05/13/2026 Recommended
-
Operations Field Engineer
Virginia Beach, VA
Description: Onsite in Virginia Beach, VA Our client seeks an Operations Field Engineer to install, service, and troubleshoot access control and CCTV systems in a customer-facing field environment. The role requires proficiency with low-voltage electro...
Date Posted: 05/13/2026 Recommended
-
Associate Security Engineer, Cyber Monitoring
Aiken, SC
Description: On site (100%) in Aiken, SC Our client seeks an Associate Security Engineer, Cyber Monitoring for a role on the Network Monitoring team. The selected candidate will support real-time alert monitoring, basic incident triage, email security ...
Date Posted: 05/20/2026 Recommended
-
AI Software Engineer
Greenwood Village, CO
Description: Hybrid 4 onsite / 1 work from home in Greenwood Village, CO Our client seeks an AI-focused Software Engineer to design, build, and deploy practical AI-driven tools that improve data analyst, data engineering, and QA workflows. The role cen...
Date Posted: 05/19/2026 Recommended
-
Associate Security Engineer - Cyber Response
Aiken, SC
Description: 100% on site - Aiken, SC Our client is seeking an Associate Engineer to support cyber response activities aligned to the NIST Core Cybersecurity Framework functions of Identify, Detect, Respond, and Recover. The role support cyber security...
Date Posted: 05/20/2026 Recommended
-
AWS Cloud Architect
Anywhere
Description: Remote Our client seeks a cloud architect to design, implement, and govern secure AWS environments across development, testing, and production. The role covers enterprise architecture, AI implementation support, infrastructure as code, Dev...
Date Posted: 05/31/2026 Recommended
-
Salesforce Architect / Senior Developer
Washington, DC
Description: Hybrid Primary place of performance is HYBRID. The role involves travel to the client site in Washington, DC. At a minimum, 1-2 days per week, onsite is required. On-site attendance may also be required during system rollout activities. in...
Date Posted: 05/31/2026 Recommended
-
Senior AI Engineer
Charlotte, NC
Description: On-site 4/1 in Charlotte, NC Our client seeks a Senior AI Engineer to lead IVR and conversational AI initiatives for large-scale customer interactions in telecommunications and digital services. The role requires strong pre-LLM experience ...
Date Posted: 06/04/2026 Recommended
-
Principal Systems Analyst
Anywhere
Description: Remote Our client seeks Principal Systems Analysts to drive analysis and documentation supporting the modernization of brokerage, trading, reporting, and data processing systems to AWS. The role requires enterprise systems analysis, strong...
Date Posted: 05/10/2026 Recommended
-
Security Engineer
Washington, DC
Description: Onsite in Washington, DC Our client seeks a Security Engineer to support a federal cybersecurity mission that protects critical transportation infrastructure. The role focuses on endpoint vulnerability management, risk assessment and mitig...
Date Posted: 05/07/2026 Recommended
-
Project Manager III – Network & Infrastructure
Denver, CO
Description: Hybrid 4 days onsite in Denver, CO Our client seeks a Project Manager II to lead network and infrastructure initiatives supporting corporate and customer network environments in a large enterprise. The PM will manage full lifecycle deliver...
Date Posted: 05/28/2026 Recommended
-
Sr. SRE Developer
Lake Mary, FL
Description: Hybrid 4 in either Lake Mary, FL or Pittsburgh, PA Our client seeks a Senior SRE Developer to lead technical strategy for deployment automation and infrastructure reliability. The role emphasizes building software to automate operational t...
Date Posted: 05/11/2026 Recommended
-
Senior Software Engineer in Test
Durham, NC
Description: Hybrid 2 weeks per month in either Durham, NC or Location to be confirmed Our client seeks a Senior Software Engineer in Test to design, develop, and maintain automated test suites for digital healthcare products. The role focuses on UI an...
Date Posted: 05/23/2026 Recommended
-
Senior Configuration Management Engineer
herndon, VA
Description: Onsite in herndon, VA Our client seeks a Senior Configuration Management Engineer to lead and mature CM practices for a globally distributed mission system spanning enterprise infrastructure, cloud services, and networks. The role will def...
Date Posted: 05/10/2026 Recommended
-
Senior Program Manager – Cyber Testing & Release Acceleration (AI Program)
Anywhere
Description: Remote Our client is seeking a Senior Program Manager to lead a critical workstream within a large-scale AI-driven cybersecurity program. The initiative focuses on detecting emerging cyber threats and accelerating remediation timelines to ...
Date Posted: 06/03/2026 Recommended
Eliassen Group is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status. Eliassen Group’s Affirmative Action Plan (AAP) is available for inspection by any employee or applicant for employment upon request, during normal business hours of Monday through Friday, 8:30am to 5:30pm EST. Interested persons should contact Phaedra Wells at pwells@eliassen.com for assistance. It is unlawful in Massachusetts and Maryland to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.
Applicants with disabilities that believe they require an accommodation or assistance with a position, please email our HR team at hradmin@eliassen.com. This email inbox is designed exclusively to assist job seekers whose disability prevents them from being able to apply online. Emails sent for other purposes will not receive a response.
Please be advised that a number of fraudulent job postings have been released under the Eliassen Group brand.
Unfortunately, fraudulent job postings can happen. If anyone reaches out to you about an open position connected with Eliassen Group, never provide personal or financial information to anyone who is not clearly associated with Eliassen Group
If anyone seemingly from Eliassen Group has ever requested this personal information in the past or does so in the future, please contact fraud@eliassen.com.
Please ensure that you are working directly with us by confirming the following:
- When you work with Eliassen Group, all email communication will come from an Eliassen.com address, never Gmail, Yahoo, etc.
- Eliassen Group will never ask you for personal information (home address, bank account, or check routing number) until you have worked with someone clearly associated with Eliassen Group, as indicated above