Back to jobs
E

SIEM Infrastructure and Detection Engineer

905 NE 11th Ave -ABD; RemotePosted Today
remote

Job Description

Everforth ECS is seeking an SIEM Infrastructure and Detection Engineer to join our team in our Portland, OR (Hybrid) office.

 

The SIEM Infrastructure and Detection Engineer supports a federal energy sector cybersecurity program by engineering, maintaining, and optimizing the SIEM infrastructure and security monitoring platform, including detections, visualizations, dashboards, and reporting. This role ensures the reliability and effectiveness of SIEM and related monitoring tools to meet Information Security Continuous Monitoring (ISCM) and Department of Homeland Security (DHS) Continuous Diagnostics and Mitigation (CDM) requirements. The engineer works directly with security analysts, system owners, and DHS CDM teams to ensure continuous visibility, timely detection, and compliance with federal cybersecurity standards.

Core Capabilities

  • Lead the design, deployment, and monitoring of enterprise SIEM platforms (e.g., Splunk, Elastic Stack)
  • Architect, implement, and maintain integrations with enterprise systems, cloud environments, and security tools (e.g., EDR, IDS/IPS, firewalls, TIP)
  • Develop and optimize dashboards, alerts, and data pipelines
  • Automate platform tasks and SIEM processes using scripting (e.g., Python, PowerShell, bash)
  • Monitor and tune platform performance to ensure high availability and accuracy of security data
  • Troubleshoot and resolve platform-related issues in coordination with analysts and engineers
  • Collaborate with federal stakeholders to align SIEM capabilities with ISCM and CDM reporting requirements
  • Maintain documentation of platform configurations, standard operating procedures, and system baselines

See Your Match Score

Sign up and Renata will show you how this job matches your skills and experience.

SIEM Infrastructure and Detection Engineer at ECS | Renata