Senior SIEM Developer/Engineer - Northeast region (Remote)

3 weeks ago
Full-time
Senior
DevOps and Infrastructure
GuidePoint Security

GuidePoint Security

GuidePoint Security is a trusted cybersecurity consulting firm that provides expertise, solutions, and services to help organizations make informed decisions and minimize risks. Their elite team of experts offers holistic perspectives on cybersecurity,...

Internet Software & Services
251-1K
Founded 2011

Description

  • Architect, implement, and maintain SIEM solutions across modern security platforms.
  • Design and manage log ingestion pipelines using Cribl Stream, Edge, Search, or similar tools.
  • Optimize data routing, enrichment, and filtering to improve SIEM efficiency and cost control.
  • Collaborate with cybersecurity, DevOps, and cloud infrastructure teams to integrate log sources and telemetry data.
  • Develop custom parsers, dashboards, correlation rules, and alerting logic for threat detection and security analytics.
  • Maintain and improve the reliability, scalability, and performance of logging infrastructure.
  • Advise on log normalization, storage strategy, and data retention policies.
  • Lead incident response investigations and support root cause analysis using SIEM insights.
  • Mentor junior engineers and contribute to security monitoring initiatives.

Requirements

  • 5+ years of experience in security engineering with a primary focus on SIEM platforms.
  • Hands-on experience with at least one SIEM platform, such as Splunk, Microsoft Sentinel, Elastic, Google SecOps/Chronicle, CrowdStrike NG-SIEM/LogScale, Palo Alto XSIAM, or SentinelOne SIEM.
  • 2+ years of experience with Cribl or similar observability pipeline tools such as Logstash, Fluentd, or Kafka.
  • Strong knowledge of log formats, data normalization, and event correlation.
  • Familiarity with detection engineering, threat modeling, and the MITRE ATT&CK framework.
  • Proficiency with scripting languages such as Python, PowerShell, or Bash, plus regular expressions.
  • Deep understanding of logging from cloud environments (AWS, Azure, GCP) and on-premises systems.
  • Bachelor’s degree in a relevant discipline or equivalent professional experience.

Benefits

  • Remote workforce primarily within the U.S., with East Coast preference for collaboration and support hours.
  • GuidePoint pays 90% of the premium for the Zero Deductible PPO medical plan for employees and 70% for family plans.
  • GuidePoint pays 100% of employee premiums for the High Deductible Health Plan with HSA and 75% for family plans, plus quarterly HSA contributions.
  • 100% employer-paid dental insurance for employees and 75% coverage for family plans.
  • 12 corporate holidays and a Flexible Time Off (FTO) program.
  • Mobile phone and home internet allowance.
  • Eligibility for a retirement plan after 2 months at open enrollment.
  • Pet benefit option.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

DevSecOps Engineer

INflow Federal 51-250 Aerospace & Defense

INflow Federal is seeking a fully remote DevSecOps Engineer to support an enterprise case management solution for Department of Defense mission partners by securing and automating cloud-based CI/CD and infrastructure operations in AWS GovCloud.

Agile AWS Bash CI/CD CloudFormation Docker ELK Stack Git GitLab CI Helm Jenkins Kubernetes PowerShell Prometheus Python Terraform
1 hour, 10 minutes ago

Senior/Staff/Principal SWE - OT Security Engineering

Appgate 251-1K Professional Services

AppGate is hiring an OT Security Engineer to design and evolve secure remote access capabilities for industrial environments, taking the product from concept to production deployment for regulated customers such as utilities, manufacturers, and defense programs.

Datadog Go gRPC Microservices OpenID Connect REST API Rust SAML Splunk TCP/IP TLS
4 hours, 26 minutes ago

Security Operations Center (SOC) Engineer

FirmaTRUST Internet Software & Services

ICE Consulting is hiring a Security Operations Center (SOC) Engineer to monitor, analyze, and respond to security threats while strengthening the company’s and clients’ security posture.

DNS HTTP Metasploit PowerShell Python SIEM Splunk TCP/IP
5 hours, 32 minutes ago

IT Infra Lead

Weekday 11-50 Construction & Engineering

Weekday’s UK-based life sciences technology client is hiring a remote IT Infrastructure Lead in India to own and strengthen the company’s global IT environment across cloud, security, compliance, and workplace systems.

Azure CI/CD Cisco DHCP DNS Fortinet JIRA macOS Palo Alto PowerShell Python
7 hours, 35 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers