Security Engineer III

Security Engineer III role focused on SIEM engineering, detection, and incident analysis within enterprise environments. Requires experience with SIEM tools like Splunk, Palo Alto Networks, or CrowdStrike, and a strong understanding of cybersecurity operations.

What you'd actually do

  1. Configure, maintain, and optimize SIEM content including correlation rules, alerts, dashboards, and reports
  2. Analyze security events and log data to identify suspicious activity, support investigations, and improve detection coverage
  3. Integrate and normalize log sources from endpoint, network, cloud, identity, and security platforms
  4. Partners with cybersecurity teams to support use case development, threat detection, incident triage, and response activities
  5. Document detection logic, operational procedures, and monitoring requirements to support consistent service delivery

Skills

Required

  • 3+ years of experience in cybersecurity, security operations, or SIEM engineering
  • 3+ years of experience with at least one of the following: Splunk, Palo Alto XSIAM, or Crowdstrike NG SIEM
  • Security certification such as Splunk certification, Palo Alto Networks certification, or CrowdStrike certification is required
  • Active Secret clearance or higher

Nice to have

  • Security certification such as CompTIA Security+, or GIAC certification

What the JD emphasized

  • Splunk
  • Palo Alto Networks
  • Crowdstrike