[Remote] SIEM Content Engineer

Remote, USA Full-time
Note: The job is a remote job and is open to candidates in USA. Tyto Athene is searching for a forward-thinking and self-motivated SIEM Content Engineer to enhance a government client’s detection content for their Security Operations Center (SOC). This role requires creativity, critical thinking skills, and collaboration with various stakeholders to develop SIEM content and improve security operations. Responsibilities • Evaluate existing SIEM content to determine which content should be removed or updated to improve fidelity • Leverage the MITRE ATT&CK framework, monitor the threat landscape and evaluate existing data sources to identify opportunities for new SIEM content development • Support the onboarding of new data sources by developing relevant SIEM content • Develop SIEM detection uses cases and review them with relevant stakeholders, such as security engineers, SIEM engineers, SOC analysts, and incident responders • Collaborate with security engineers to improve logging from various appliances and correct misconfigurations • Coordinate closely with SOC analysts and incident responders to develop playbooks for triaging and responding to events created by the SIEM tool • Develop and maintain a SIEM content catalog, including mapping to the MITRE ATT&CK framework, to improve the efficiency of deploying the security stack to new environments • Design, develop, and monitor various dashboards and reports that provide information on content coverage, alerting, and fidelity Skills • Bachelor's degree required • Eight (8) years of general work experience (with at least six (6) years of IT/Cyber experience) and two (2) years of experience using Splunk (or a similar SIEM tool) in a cybersecurity context (e.g., as a content developer, administrator, or SOC analyst, etc.…) • Direct experience developing SIEM content in collaboration with a Tier 1 security operations center • Effective verbal and written communication skills that include the ability to describe highly technical concepts in non-technical terms • Ability to manage, analyze, and report complex data in an easy-to-understand format for a variety of stakeholders • Familiarity with the MITRE ATT&CK Framework • Experience with Splunk and development • Experience developing Splunk dashboards, reports, and alerts • Secret Clearance required • Experience with Splunk Enterprise Security is a plus Company Overview • At Tyto Athene, we help turn Data to Dominance. It was founded in 2018, and is headquartered in Herndon, Virginia, USA, with a workforce of 1001-5000 employees. Its website is Apply tot his job
Apply Now

Similar Jobs

Senior Product Manager- Health (Remote)

Remote, USA Full-time

Senior Consultant - General Cost of Service Expert (Remote)

Remote, USA Full-time

Security Software Engineer, Endpoint Protection

Remote, USA Full-time

[Remote] Software Engineer II (Full Stack), Messaging Security Products

Remote, USA Full-time

Senior Software Engineer; Python - Remote Security Clearance

Remote, USA Full-time

[Remote] Interim Senior Accountant - (Healthcare preferred) - Remote

Remote, USA Full-time

Remote Employment Litigation Counsel (California-Barred | Remote Nationwide)

Remote, USA Full-time

Senior Legal Counsel, Commercial - Remote Job at DigitalOcean in San Francisco

Remote, USA Full-time

[Remote] Senior Principal, Spend Management Performance Partner

Remote, USA Full-time

Senior, Partner Rep Soccer Specialty NA

Remote, USA Full-time

DevOps & Google Cloud Platform Engineer

Remote, USA Full-time

Experienced Customer Support Chat Representative – Music Industry Enthusiast Wanted for Remote Full-Time Position at blithequark

Remote, USA Full-time

Experienced Remote Data Entry Associate – Entry Level Opportunity for Detail-Oriented Individuals to Join arenaflex's Dynamic Team

Remote, USA Full-time

Business Document and Deck Expert

Remote, USA Full-time

Experienced Remote Live-Chat Specialist – Disney Enthusiast Wanted for Magical Customer Experience Creation at blithequark

Remote, USA Full-time

Product Design Engineer - Battery Cell

Remote, USA Full-time

Experienced Local Class A Truck Driver – Home Daily, 3 Days a Week, Full-Time with Benefits, Amazon Freight Partner, $22/Hour – arenaflex

Remote, USA Full-time

Experienced Evening Customer Support Representative – Part-Time Remote Work Opportunity with Flexible Hours at blithequark

Remote, USA Full-time

**Experienced Account Associate – Customer Service Onsite Champion at blithequark**

Remote, USA Full-time

[Remote] ES Scoring Assistant- Languages Other Than English (LOTEs) CA

Remote, USA Full-time
Back to Home