Deloitte

Security Engineer III, SIEM Engineer (Secret Clearance)

Deloitte$102K — $188K *
Aerospace & Defense
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in computer science, Cybersecurity, Information Technology, Engineering, or related field
  • Active Secret Clearance
  • 3+ years of experience in cybersecurity, security operations, or SIEM engineering
  • 3+ years of experience with a major SIEM tool (Splunk, Palo Alto XSIAM, or CrowdStrike NG SIEM)
  • 2+ years of experience in creating, tuning, and maintaining SIEM correlation searches and alerts
  • Security certification (e.g., Splunk, Palo Alto Networks, CrowdStrike) required
  • Willingness to travel up to 20% and work onsite or in Deloitte offices as needed
  • Legally authorized to work in the U.S. without employer sponsorship

Responsibilities

  • Configure, maintain, and optimize SIEM content such as correlation rules and dashboards
  • Analyze security events and log data to identify suspicious activity and improve detection coverage
  • Integrate and normalize log sources from various platforms including endpoint and cloud
  • Collaborate with cybersecurity teams on use case development and incident response
  • Document detection logic and operational procedures for consistent service delivery

Benefits

  • Broad range of employee benefits
  • Opportunities for professional development and training
  • Supportive workplace culture that values teamwork and inclusion
  • Remote work flexibility along with onsite collaboration when needed
  • Potential eligibility for discretionary annual incentive programs
Full Job Description
Deloitte's Cyber Defense and Resilience offering is seeking a SIEM Engineer to support security monitoring, detection engineering, and incident analysis across complex enterprise environments. This role will focus on building and optimizing SIEM content, improving alert fidelity, and helping clients strengthen cyber defense capabilities. The ideal candidate will bring experience with at least one of the following technology areas: Splunk, Palo Alto Networks, or CrowdStrike. This is a remote role with opportunities to work across distributed teams in a fast-paced cybersecurity environment. Work you'll do As a SIEM Engineer on the Cyber Defense and Resilience team, you will be responsible for... - Configure, maintain, and optimize SIEM content including correlation rules, alerts, dashboards, and reports - Analyze security events and log data to identify suspicious activity, support investigations, and improve detection coverage - Integrate and normalize log sources from endpoint, network, cloud, identity, and security platforms - Partners with cybersecurity teams to support use case development, threat detection, incident triage, and response activities - Document detection logic, operational procedures, and monitoring requirements to support consistent service delivery A successful candidate would possess these skills: - Ability to work independently and collaborate as part of a team - Effective written and verbal communication skills - Meticulous attention to detail and quality of work product - Ability to build and sustain professional relationships - Ability to lead projects or workstreams - Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment - Strong interpersonal skills and professional demeanor - Ability to meet deadlines - Ability to provide clear guidance to others Qualifications Required: - Bachelor's degree in computer science, Cybersecurity, Information Technology, Engineering, or a degree in related technical field - Active Secret Clearance - 3+ years of experience in cybersecurity, security operations, or SIEM engineering - 3+ years of experience with at least one of the following: Splunk, Palo Alto XSIAM, or Crowdstrike NG SIEM - 2+ years' experience in the following areas: - Creating, tuning, and maintaining correlation searches, alerts, dashboards, and reports in a Security Information and Event Management platform - Reviewing and analyzing logs from endpoint, network, cloud, identity, and application sources - Security certification such as Splunk certification, Palo Alto Networks certification, or CrowdStrike certification is required - Ability to travel up to 20%, on average, based on the work you do and the clients and industries/sectors you serve. - Must be willing to work at client onsite or Deloitte office for up to 5 days a week - Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future. Preferred: - 2+ years' experience: - Supporting enterprise monitoring in a Security Operations Center - Experience onboarding and normalizing log sources in a Security Information and Event Management platform - Experience mapping detections to MITRE ATT&CK techniques - Experience with cloud security monitoring in Amazon Web Services, Microsoft Azure, or Google Cloud Platform - Hands-on experience with scripting or query languages used for detection and log analysis - Security certification such as CompTIA Security+, or GIAC certification The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $102,500- $188,900. You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance. Recruiting tips From developing a stand out resume to putting your best foot forward in the interview, we want you to feel prepared and confident as you explore opportunities at Deloitte. Check out recruiting tips from Deloitte recruiters. Benefits At Deloitte, we know that great people make a great organization. We value our people and offer employees a broad range of benefits. Learn more about what working at Deloitte can mean for you. Our people and culture Our inclusive culture empowers our people to be who they are, contribute their unique perspectives, and make a difference individually and collectively. It enables us to leverage different ways of thinking, ideas, and perspectives, and bring more creativity and innovation to help solve our clients' most complex challenges. This makes Deloitte one of the most rewarding places to work. Our purpose Deloitte's purpose is to make an impact that matters for our people, clients, and communities. At Deloitte, purpose is synonymous with how we work every day. It defines who we are. Our purpose comes through in our work with clients that enables impact and value in their organizations, as well as through our own investments, commitments, and actions across areas that help drive positive outcomes for our communities. Learn more. Professional development From entry-level employees to senior leaders, we believe there's always room to learn. We offer opportunities to build new skills, take on leadership opportunities and connect and grow through mentorship. From on-the-job learning experiences to formal development programs, our professionals have a variety of opportunities to continue to grow throughout their career. As used in this posting, "Deloitte" means Deloitte & Touche LLP, a subsidiary of Deloitte LLP. Please see www.deloitte.com/us/about for a detailed description of the legal structure of Deloitte LLP and its subsidiaries. Certain services may not be available to attest clients under the rules and regulations of public accounting. Requisition code: 352201 Job ID 352201

About Deloitte

Deloitte is a multinational professional services network that provides audit, tax, consulting, enterprise risk and financial advisory services. The company was founded in London in 1845 and has since grown to become one of the largest professional services firms in the world. Deloitte has over 330,000 employees in more than 150 countries and territories. The company's mission is to help clients achieve their goals and make an impact that matters in their businesses and communities.
Learn more about Deloitte
Size
330,000 employees
Industry
Founded
1999

Similar Jobs

More Jobs at Deloitte

More Aerospace & Defense Jobs

Find similar Security Engineer III, SIEM Engineer (Secret Clearance) jobs: