Create a Job Alert.

Enter your email below to save this search and receive job recommendations for similar positions.
Thank you. We'll send jobs matching these to
You already suscribed to this job alert.
No Thanks
US
What job do you want?
Apply to this job.
Think you're the perfect candidate?
Apply on company site

You’re being taken to an external site to apply.

Enter your email below to receive job recommendations for similar positions.
SIEM Engineer at Railhead, Inc

SIEM Engineer

Railhead, Inc Fairmont, WV Full-Time
Apply on company site

Create Job Alert.

Get similar jobs sent to your email

Overview

Railhead is seeking a SIEM Engineer that will be part of the Enterprise Security Services (ESS) team on the NOAA Cyber Security Center and Department of Commerce ESOC contract. The primary focus for the SIEM Engineer is to be able to configure, manage, operate, and administrate the SIEM managed platform. In addition, the candidate must have a strong understanding of information security and networking, and extensive experience interacting with end users. The SIEM Engineer serves as an escalation point for critical and complex client issues and assists with developing and documenting work processes. 

Responsibilities

  • Develop metrics and trends that demonstrate the log platform's health and operational state.
  • Participate in information security audits, ensuring the technical compliance with related (e.g. PCI, ISO, etc) regulatory requirements.
  • Define, document, and implement appropriate delivery, parsing, reporting, and retention of security-relevant log information.
  • Assist users of the SIEM in real-time investigation and analysis.
  • Research and document security best practices to continually improve the deployment and use of the SIEM.
  • Maintain the health, performance, stabilization, tuning and ongoing planning of the SIEM platform.
  • Work with other teams in the integration of security tools with the SIEM.
  • Develop new SIEM content including correlation rules, dashboards, reports, and alerts that appropriately characterize the importance of events of interest found in multiple environments.

Qualifications

  • Bachelor’s degree in technical field or equivalent experience and 3 - 5 years of prior relevant experience or Masters with less than 3 years of prior relevant experience.
  • Must be able to obtain and maintain security clearance, specifically DoD/Top Secret Clearance or TS/SCI (Interim Secret acceptable).
  • Detailed understanding of the TCP and IP protocol suites and ability to dissect and explain the contents of traffic and packets.
  • Ability to multi-task in a deadline-oriented environment.
  • Demonstrated ability to work well independently in a remote environment.
  • Experience with configuration of debug, event generation and logging functionality within application and operating systems, using Syslog or flat file generation.

About Railhead

Railhead, Inc. is a leader in intelligence, surveillance and reconnaissance; advanced cyber solutions; cloud and managed IT solutions; engineering, and information-based solutions for law enforcement and homeland security. We provide training and logistics in support of readiness operations; and operational support services and solutions in support of organizations not limited to DHS, DoD, and the Intelligence Community (IC). We hire mission enablers whom reflect our communities and proactively embrace diversity and inclusion, in order to advance our corporate culture, develop our family of employees into the best they can be, and in turn grow our market share throughout industry.

 

Railhead, Inc. is an equal opportunity employer and considers qualified applicants for employment without regard to race, color, creed, religion, national origin, sex, sexual orientation, gender identity and expression, age, disability, veteran status, or any other protected factor.

 

Recommended Skills

Cyber Security
Investigation
Information Security
Training
Metrics
File Generation
Apply to this job.
Think you're the perfect candidate?
Apply on company site

Help us improve CareerBuilder by providing feedback about this job: Report this job

Report this Job

Once a job has been reported, we will investigate it further. If you require a response, submit your question or concern to our Trust and Site Security Team

Job ID: 2021-1104

CareerBuilder TIP

For your privacy and protection, when applying to a job online, never give your social security number to a prospective employer, provide credit card or bank account information, or perform any sort of monetary transaction. Learn more.

By applying to a job using CareerBuilder you are agreeing to comply with and be subject to the CareerBuilder Terms and Conditions for use of our website. To use our website, you must agree with the Terms and Conditions and both meet and comply with their provisions.