All roles

Principal SIEM Security Engineer

Remote · USA Full-time New today

Make a difference here.

UltraViolet Cyber is a leading platform-enabled unified security operations company providing a comprehensive suite of security operations solutions. Founded and operated by security practitioners with decades of experience, the UltraViolet Cyber security-as-code platform combines technology innovation and human expertise to make advanced real-time cybersecurity accessible for all organizations by eliminating risks of separate red and blue teams. By creating continuously optimized identification, detection, and resilience from today’s dynamic threat landscape, UltraViolet Cyber provides both managed and custom-tailored unified security operations solutions to the Fortune 500, Federal Government, and Commercial clients. UltraViolet Cyber is headquartered in McLean, Virginia, with global offices across the U.S. and in India. Our Dedicated Defense model is curated for our customers looking to implement and/or optimize their SIEM and SOC tool stack. This opportunity is aligned within UltraViolet Cyber to perform a key SIEM migration for our customers. The Senior Security SIEM Engineer will be getting to lead a Fortune 250 company through a transformative security and technology project, leading a global team developing methodology for SIEM migration best practices, and have the opportunity to learn cutting edge technology.

What You'll Do:

  • Evaluating current Splunk instances and content at a major enterprise retail customer
  • Migrating data sources from Splunk instances to SentinelOne AI SIEM
  • Migrating content to SentinelOne AI SIEM
  • Leading offshore team also performing migration tasks
  • Integrate SentinelOne with other security tools to build a comprehensive security monitoring ecosystem
  • Design and maintain S1 data models to support security use cases and compliance reporting
  • Develop custom threat detection rules and correlation searches in Splunk
  • Configure and tune SIEM alerts to reduce false positives and enhance detection efficacy
  • Provide technical expertise during security incidents and coordinate response activities

What You've Done:

  • Bachelor's degree in Cybersecurity, Information Security, or related field
  • 9+ years of security engineering experience with 5+ years of advanced Splunk and SentinelOne implementations
  • Splunk Certified Architect or Splunk Certified Enterprise Security Admin certification
  • SentinelOne certifications and/or SentinelOne University experience
  • Strong knowledge of SPL query language and advanced search techniques
  • Experience creating custom Splunk dashboards, reports, and visualizations
  • Demonstrated expertise in security monitoring and SIEM technology
  • Proficiency with Splunk administration and performance tuning
  • SentinelOne exposure is highly desired

Work Environment:

  • Must be authorized to work in the US
  • Participation in on-call rotation for security incident response
  • Collaboration with cross-agency security teams
  • Some potential travel to US based customers - ~10-20%

What We Offer:

  • 401(k), including an employer match of 100% of the first 3% contributed and 50% of the next 2% contributed
  • Medical, Dental, and Vision Insurance (available on the 1st day of the month following your first day of employment)
  • Group Term Life, Short-Term Disability, Long-Term Disability
  • Voluntary Life, Hospital Indemnity, Accident, and/or Critical Illness
  • Participation in the Discretionary Time Off (DTO) Program
  • 11 Paid Holidays Annually
UltraViolet Cyber maintains broad salary ranges for its roles in order to account for variations in knowledge, skills, experience, market conditions and locations, as well as reflect our company's differing products, services, industries and lines of business. Candidates are typically placed into the range based on the preceding factors.We sincerely thank all applicants in advance for submitting their interest in this position. We know your time is valuable. UltraViolet Cyber welcomes and encourages diversity in the workplace regardless of race, gender, religion, age, sexual orientation, gender identity, disability, or veteran status. If you want to make an impact, UltraViolet Cyber is the place for you!

Originally posted on Himalayas

Apply To this Job

Related roles

Applications Analyst (Epic Cupid Cardiology) - Talent Groups

Remote · USA Full-time

BSN Nursing Faculty, Remote Anywhere – Amazon Store

Remote · USA Full-time

Clinical Nurse Educator (Remote) CST, MST, PST – Amazon Store

Remote · USA Full-time

Azure Data Engineer - Learn Beyond Consulting LLC

Remote · USA Full-time

Nurse Educator, Product Content Specialist (Remote) Multiple Locations – Amazon Store

Remote · USA Full-time

Software Engineer III, Service Lifecycle

Remote · USA Full-time

Principal Architect

Remote · USA Full-time

Retail Visual Merchandising Specialist

Remote · USA Full-time

Senior Analyst, Payment & Fraud

Remote · USA Full-time

Senior Cloud Architect

Remote · USA Full-time

Data Scientist

Remote · USA Full-time

Experienced Data Entry Agent – Remote Work Opportunity with arenaflex

Remote · USA Full-time

Virtual Customer Service Associate – Deliver Exceptional Customer Experiences at arenaflex

Remote · USA Full-time

Experienced Full Stack Data Entry Specialist – Remote Database Management

Remote · USA Full-time

Experienced Human Resources Manager – Airline Remote Careers $26/Hour – American Airlines

Remote · USA Full-time

Steuerfachkraft (m/w/d) in Uettingen mindestens 52.000€ - 100% Remote möglich

Remote · USA Full-time

BMS Controls Engineer

Remote · USA Full-time

Senior Platform Engineer - GCP - W2

Remote · USA Full-time

Medical Coder- FULLY REMOTE

Remote · USA Full-time

Experienced Full Stack Customer Support Specialist – Global Customer Experience Delivery

Remote · USA Full-time