SIEM Analyst

Mantis Security Corporation

$110K — $130K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 10+ years of cybersecurity experience with hands-on SIEM expertise
  • Familiarity with enterprise SIEM platforms like Splunk or Microsoft Sentinel
  • Strong knowledge of security logs and event correlation techniques
  • Proficient in Windows, Linux, and cloud logging frameworks
  • Experience in developing queries, alerts, and dashboards
  • Understanding of attack techniques and detection logic
  • Active TS/SCI security clearance required

Responsibilities

  • Monitor and analyze security events within the SIEM
  • Develop and maintain correlation rules, alerts, and dashboards
  • Investigate security incidents by correlating multiple data sources
  • Support the onboarding and validation of new log sources
  • Identify gaps in security visibility and troubleshoot logging issues
  • Reduce false positives in setups to enhance detection accuracy
  • Document SIEM configurations and recommend improvements

Benefits

  • Dynamic work environment focusing on cutting-edge cybersecurity solutions
  • Opportunities for collaboration with experienced cybersecurity professionals
  • Support for continuous learning and obtaining certifications
  • Engagement in dynamic and impactful security projects for notable clients
Full Job Description
What You'll Be Doing

As a SIEM Analyst at Mantis Security, you'll help maintain and improve the security monitoring capabilities that give our customers visibility into their environments. You'll work closely with SOC analysts, engineers, and other cybersecurity professionals to make sure the right data is being collected, analyzed, and turned into actionable security information.
  • Monitor and analyze security events and alerts within the SIEM
  • Develop, tune, and maintain correlation rules, alerts, dashboards, and searches
  • Investigate security events by correlating activity across multiple log and data sources
  • Support the onboarding, parsing, normalization, and validation of new log sources
  • Identify and troubleshoot gaps in logging, data ingestion, and security visibility
  • Help reduce false positives and improve the accuracy and effectiveness of security detections
  • Support incident investigations, threat hunting, and reporting requirements
  • Document SIEM configurations, detection logic, processes, and recommended improvements

What We're Looking For
  • 10+ years of cybersecurity experience with hands-on SIEM experience
  • Experience with Splunk, Elastic, Microsoft Sentinel, or a comparable enterprise SIEM platform
  • Strong understanding of security logs, event correlation, and detection methodologies
  • Working knowledge of Windows, Linux, network, firewall, authentication, and cloud logging
  • Experience creating and tuning queries, alerts, correlation rules, and dashboards
  • Understanding of common attack techniques and the ability to translate threats into detection logic
  • Familiarity with MITRE ATT&CK and its application to security monitoring and detection
  • Strong analytical, troubleshooting, and technical communication skills
  • Security+ or equivalent cybersecurity certification
  • Active TS/SCI security clearance required.

Nice to Have
  • Experience supporting DoD, Intelligence Community, or other federal environments
  • Splunk, Elastic, or Microsoft security certifications
  • Experience with AWS security logging and cloud-based data sources
  • Experience with Python, PowerShell, or other scripting languages

Similar Jobs

More Jobs at Mantis Security Corporation

More Information Technology Jobs

Find similar SIEM Analyst jobs: