Kirkland & Ellis LLP

SIEM Engineer II

Kirkland & Ellis LLP$133K — $166K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree or equivalent professional experience required
  • 3-5 years in IT or engineering, with 2-3 years focused on SIEM or security analytics
  • Hands-on experience with SIEM platforms like Google SecOps, Splunk, Exabeam, or Microsoft Sentinel
  • Preferred experience with Cribl, specifically pipeline configuration and log onboarding
  • Familiarity with integrating log sources using APIs, syslog, or agents
  • Experience in building dashboards, alerts, and queries for security monitoring
  • Understanding of various log sources, including endpoint, network, and cloud logs

Responsibilities

  • Assist in the implementation and optimization of the firm's SIEM platform
  • Support the design and maintenance of Cribl pipelines
  • Build and maintain integrations for log sources using various methods
  • Develop and refine SIEM use cases and alerting logic
  • Create and enhance dashboards and reports for SOC operations
  • Contribute to SIEM architecture and operational documentation
  • Establish data quality standards and monitor their adherence
  • Collaborate with cross-functional teams for logging coverage
  • Provide support during security incidents
  • Stay updated on SIEM technologies and security trends

Benefits

  • Comprehensive healthcare
  • Paid time off
  • Retirement plans
  • Personal support programs
  • Tailored learning and development opportunities
Full Job Description
What You'll Do

Are you a hands-on security engineer ready to deepen your expertise in SIEM platforms and help build scalable, data-driven detection capabilities? As a SIEM Engineer II, you will play a key role in the implementation, optimization, and day-to-day management of the Firm's Security Information and Event Management (SIEM) platform. You'll contribute to the ingestion, normalization, and enrichment of security telemetry while supporting detection engineering, incident response, and security analytics.

Working within the Cybersecurity function, you'll collaborate with Cybersecurity Operations, IT, Infrastructure, Cloud, and Application teams to onboard log sources, develop detections, and create dashboards that drive visibility and response. This is an opportunity to grow your technical depth while making a measurable impact on the Firm's security posture.
  • SIEM Platform Support - Assist in the implementation, administration, and ongoing optimization of the Firm's SIEM platform (e.g., Google Security Operations (SecOps), Splunk, Exabeam, Microsoft Sentinel).
  • Cribl Development - Support the design and maintenance of Cribl pipelines, including data routing, filtering, enrichment, and performance optimization.
  • Log Integration - Build and maintain integrations for standard and custom log sources using APIs, agents, syslog, and cloud-native logging services.
  • Detection Enablement - Partner with Cybersecurity Operations to develop and refine SIEM use cases, correlation rules, and alerting logic.
  • Dashboards & Reporting - Create and enhance dashboards, searches, and reports to support SOC (Security Operations Center) operations and threat hunting.
  • Documentation - Contribute to documentation of SIEM architecture, data flows, onboarding processes, and operational procedures.
  • Data Quality Assurance - Help establish and monitor data quality standards to ensure reliable and accurate telemetry.
  • Cross-Team Collaboration - Work with IT, Cloud, and Application teams to onboard new systems and ensure proper logging coverage.
  • Incident Support - Provide support during security incidents, assisting with investigation and analysis efforts.
  • Continuous Learning - Stay current on SIEM technologies, security analytics, and observability trends to enhance capabilities.

What You'll Bring
  • Education - Bachelor's degree or equivalent professional experience required.
  • Experience - Minimum of 3-5 years in IT or engineering, with at least 2-3 years focused on SIEM, logging, or security analytics.
  • SIEM Fundamentals - Hands-on experience working with SIEM platforms such as Google SecOps (Chronicle), Splunk, Exabeam, or Microsoft Sentinel.
  • Cribl Exposure - Experience working with Cribl, including pipeline configuration and log onboarding, preferred.
  • Data Integration Skills - Familiarity with integrating log sources using APIs, syslog, or agents.
  • Analytics & Visualization - Experience building dashboards, alerts, and queries to support security monitoring and operations.
  • Security Knowledge - Understanding of common log sources, including endpoint, network, identity, cloud, SaaS (Software as a Service), and application logs.
  • Collaboration & Communication - Ability to work effectively with cross-functional teams and communicate technical concepts clearly.
  • Technical Foundation - Exposure to scripting or query languages (e.g., SPL, KQL, Python, Regex) and cloud platforms (Amazon Web Services (AWS), Microsoft Azure, Google Cloud Platform (GCP)) is a plus.
  • Problem Solving & Growth Mindset - Strong analytical skills, attention to detail, and a proactive approach to learning and improvement.

Compensation

The base salary range below represents the low and high end of the salary range for this position in Chicago. This range may differ based on your geographic location and cost of living considerations. At Kirkland & Ellis, we consider compensation more than just a base salary. We offer an exceptional range of flexible benefits including comprehensive healthcare, paid time off, and retirement. We also offer personal support and tailored learning and development opportunities all designed to help you realize your full potential both in life and at work.

Compensation Range:

Chicago: $133,000 - $166,000

How to Apply

Thank you for your interest in Kirkland & Ellis LLP. To complete an application and submit your resume, please click "Apply Now."

Don't meet every job requirement? That's okay! If you're excited about this role but your experience doesn't perfectly fit every qualification, we encourage you to apply anyway. You may be just the right person for this role or others at Kirkland.

About Kirkland & Ellis LLP

Kirkland & Ellis LLP is an American law firm. Founded in 1909 in Chicago, Illinois, Kirkland & Ellis is the largest law firm in the world by revenue, the seventh-largest by number of attorneys, and is the first law firm in the world to reach US$4 billion in revenue. As of 2021, Kirkland & Ellis ranks third on Am Law's list of profits per equity partner. While Kirkland & Ellis was historically considered a firm focused on litigation, during the 2010s, it expanded private equity and restructuring practices which, together with large-scale commercial litigation, comprise the core legal service areas of the firm. Many attorneys from the firm have served as federal officials or judges, including United States Supreme Court Justice Brett Kavanaugh and former Attorney General William Barr.
Learn more about Kirkland & Ellis LLP
Industry
Founded
1909

Similar Jobs

More Jobs at Kirkland & Ellis LLP

More Information Technology Jobs

Find similar SIEM Engineer II jobs: