TEKsystems logo
TEKsystems

We're partners in transformation. We help clients activate ideas and solutions to take advantage of a new world of opportunity. We are a team of 80,000 strong, working with over 6,000 clients, including 80% of the Fortune 500, across North America, Europe and Asia.

SIEM Engineer

Location

United States

Posted

5 days ago

Salary

$70 - $81 / hour

Seniority

Mid Level

Job Description

SIEM Engineer

TEKsystems

Role Description We are seeking an experienced Coralogix SIEM Engineer to serve as the hands-on technical owner. The engineer will plan, implement, configure, and maintain the instance within a multi-tenant Coralogix organization shared across multiple SOCs. This role must be fluent in both Coralogix platform administration and federal regulatory constraints. Beyond Coralogix platform ownership, this role will contribute to the broader SecOps technology stack strategy, helping the SOC evolve its security operations capabilities across detection, incident management, and platform integration. Responsibilities - Coralogix Platform Administration: Full Platform Administrator within the shared multi-tenant SOC organization. - Enterprise Log Collection Pipeline Architecture & Operations: Design, implement, and maintain log collection pipelines for multiple networks with distinct architectural constraints. - Detection Engineering. - Incident Management & SLA Instrumentation. - SecOps Technology Stack Contribution. Qualifications - 10+ years of hands-on cybersecurity engineering experience, with at least 5 years in SIEM platform engineering, administration, or log management. - Demonstrable, hands-on Coralogix experience, including platform administration, DataPrime query language, alert development (threshold, anomaly, flow, ratio), Parsing Rules engineering, TCO Optimizer configuration, and log pipeline design. - Proven experience architecting and managing enterprise-scale logging pipelines, including OpenTelemetry Collector (OTEL) deployment in agent/gateway models. - Experience onboarding and integrating diverse log sources: cloud-native APIs (AWS CloudTrail, VPC Flow Logs, S3/SNS/SQS), Kubernetes/EKS workloads, Windows/Linux endpoints, and network/security appliances (Palo Alto, Check Point, NetScaler, Citrix). - Experience designing log pipelines with data masking, field redaction, or sensitive data handling requirements. Requirements - Coralogix: DataPrime, GROK/regex Parsing Rules, alert types (threshold/anomaly/flow/ratio/metric), TCO Optimizer, Subsystem/Scope/RBAC administration, SSO/SAML configuration, API key management, Cases, SLO configuration, Olly AI agent, Streama ML. - Log collection: OpenTelemetry Collector, Fluentd, Fluent Bit, or equivalent; reverse proxy architectures (Caddy 2, Nginx) for constrained-network log forwarding. - cx_security log normalization schema and Coralogix Integration/Extension Package deployment. - AWS logging architecture: CloudTrail, VPC Flow Logs, CloudWatch, S3-based log delivery, SNS/SQS event pipelines. - Endpoint telemetry: Windows Event Logs (Sysmon, WEF), Linux auditd, EDR log integration. - Network/security appliance log sources: Palo Alto (PAN-OS), Check Point, NetScaler/Citrix. - Scripting and automation: Python, Bash, or equivalent for pipeline tooling, API integrations, and operational scripting. - Federal logging requirements: OMB M-21-31 logging tiers, NIST 800-53 AU controls, audit log management. - Experience operating in federal or regulated environments with multi-tenant data isolation requirements. - Understanding of NIST RMF, ATO processes, and ISSO collaboration in federal cybersecurity programs. Desired Qualifications - Experience with SOAR platforms and webhook-based alert orchestration integrated with Coralogix (ServiceNow, PagerDuty, Jira, Slack). - Familiarity with AWS GovCloud logging architecture, cross-account log aggregation, and FedRAMP-compliant configurations. - Experience with UEBA platforms (e.g., Exabeam) and integrating behavioral analytics output with SIEM normalization pipelines. - Knowledge of MITRE ATT&CK framework and its application to detection coverage mapping and gap analysis. - Experience supporting ATO/RMF processes, security control assessments, or security authorization activities. - Prior experience in DoED, DoD, Federal HVA, or IRS/FTI-regulated environments. - Relevant certifications such as: - Coralogix Certified Engineer or equivalent platform certification. - GIAC GCED, GCIH, GCIA, or similar security operations certifications. - AWS Security Specialty or equivalent cloud security certification. - CISSP, CISM, or Security+ (supplementary). - Demonstrated ability to communicate technical platform decisions to non-technical stakeholders and drive adoption across a matrixed program organization. Job Type & Location This is a Contract to Hire position based out of Herndon, VA. Pay and Benefits The pay range for this position is $70.00 - $81.00/hr. Eligibility requirements apply to some benefits and may depend on your job classification and length of employment. Benefits are subject to change and may be subject to specific elections, plan, or program terms. If eligible, the benefits available for this temporary role may include the following: - Medical, dental & vision. - Critical Illness, Accident, and Hospital. - 401(k) Retirement Plan – Pre-tax and Roth post-tax contributions available. - Life Insurance (Voluntary Life & AD&D for the employee and dependents). - Short and long-term disability. - Health Spending Account (HSA). - Transportation benefits. - Employee Assistance Program. - Time Off/Leave (PTO, Vacation or Sick Leave). Workplace Type This is a fully remote position. Application Deadline This position is anticipated to close on May 26, 2026.

Related Categories

Related Job Pages

More Engineer Jobs

Full TimeRemoteTeam 5,001-10,000H1B No Sponsor

• Define the process flow for ultra-large forging operations: melting, casting, ingot conditioning, forging sequences, and heat treatment. • Study existing world-class facilities to understand current best practice, and then systematically challenge assumptions about why each process step exists and how it should be executed. • Understand the process steps, parameters, and physical/chemical phenomena that drive homogenization and impurity removal during large ingot casting. • Develop forging process models from first principles: deformation mechanics, thermal profiles, microstructural evolution, and die design for components including reactor pressure vessel shells, steam generator forgings, turbine rotor shafts, and defense applications. • Identify opportunities to fundamentally improve quality, energy consumption, and capital equipment requirements relative to existing global benchmarks. • Collaborate with the project team to produce equipment cost and construction schedule estimates to drive project stage gate deliverables. • Develop the preliminary process design basis document that will feed into detailed engineering for the melting, forging, and heat treatment shops. • Interface with Japanese and allied technical partners to absorb operational knowledge while maintaining an independent, critical perspective on process design.

District Of Columbia
$179K - $203K / year

License Renewal Engineer Consultant 2 – Electrical, Nuclear

Sargent & Lundy

Sargent & Lundy is a renowned engineering firm focused on power and energy projects. The company has valued diversity, with employees from numerous backgrounds, and has fostered a

Engineer5 days ago

• Perform System Scoping, Screening, and Aging Management Review of nuclear plant systems in support of SLR applications in accordance with NEI 17-01 and current industry best practices • Collaborate with engineering and regulatory teams to ensure compliance with NRC regulations and license extension commitments • Perform engineering program basis documentation, data validation, engineering change tracking, and configuration control • Roadmap required inspections to comply with NRC regulations and license renewal commitments • Review inspection work orders to ensure license renewal criteria is met • Interact with clients and/or NRC in a technical expert role • Maintain awareness of changes in aging management regulations, approaches, techniques, and operating experience • Foster a culture of continuous improvement, technology forward, and cross-functional collaboration

United States
$142.7K - $215.4K / year
Providence logo

Senior Telecom Engineer

Providence

Providence caregivers are not simply valued – they’re invaluable. Join our team at Enterprise Information Services and thrive in our culture of patient-focused, whole-person care built on understanding, commitment, and mutual respect. Your voice matters here, because we know that to inspire and retain the best people, we must empower them. Working at our family of organizations means that regardless of your role, we’ll walk alongside you in your career, supporting you so you can support others. We provide best-in-class benefits and foster an inclusive workplace where diversity is valued, and everyone is essential, heard, and respected. Our 120,000 caregivers serve in over 50 hospitals, over 1,000 clinics, and a full range of health and social services across Alaska, California, Montana, New Mexico, Oregon, Texas, and Washington. As a comprehensive health care organization, we are serving more people, advancing best practices, and continuing our more than 100-year tradition of serving the poor and vulnerable.

Engineer5 days ago
Full TimeRemoteTeam 10,001+Since 1856H1B Sponsor

• Design, operate, and enhance large-scale communication services tailored for IS, non-IS, and clinical caregivers. • Provide top-tier support in complex environments, driving innovation and efficiency in voice-related technologies. • Integrate legacy systems to ensure seamless and optimized performance. • Some travel may be required to support various initiatives and implementations effectively.

Alaska + 5 moreAll locations: Alaska | California | Montana | Oregon | Texas | Washington
$6.1K - $12.2K / year

Title: Site Reliability Engineer (SRE) Location: 100% Remote (Continental United States) Job Description: Bright Vision Technologies is a forward-thinking software development company dedicated to building innovative solutions that help businesses automate and optimize their operations. We leverage cutting-edge technologies to create scalable, secure, and user-friendly applications. As we continue to grow, we’re looking for a skilled Site Reliability Engineer (SRE) to join our dynamic team and contribute to our mission of transforming business processes through technology. This is a fantastic opportunity to join an established and well-respected organization offering tremendous career growth potential. Position Type: In-house Bright Vision Technologies SOW engagement (no third-party client or vendor) Experience: 5+ years Sponsorship: No new H1B sponsorship available. H1B transfers welcomed for qualified candidates. Employment Type: Full-time, direct W2 with Bright Vision Technologies (no C2C, no 1099, no third-party) Engagement: Long-term, multi-year, aligned to the Bright Vision SOW delivery roadmap Compensation: Competitive base salary commensurate with experience, plus benefits. Employment Terms & Visa Policy This is a 100% remote, full-time, direct W2 position with Bright Vision Technologies. This role is part of Bright Vision Technologies’ in-house Statement of Work (SOW) engagement. The client, end customer, and employer for this position is Bright Vision Technologies — there is no third-party client, vendor, or implementation partner involved. We do not engage in C2C, 1099, or third-party arrangements for this role. BUT STRICTLY NO C2C/1099/3RD PARTY COMPANIES. ALL OUR ROLES ARE W2 AND NO 3RD PARTY BROKERING PLEASE. Candidates must be willing to work directly as a full-time W2 employee of Bright Vision Technologies and contribute to our in-house SOW deliverables. No new H1B sponsorship is available for this role. However, candidates who are currently on a valid H1B visa and require a transfer are welcome to apply. We will support H1B transfers for qualified candidates. For every role, a technical coding assessment is mandatory. Please apply only if you are confident in your technical abilities and hands-on experience. Job Summary We are seeking an experienced Site Reliability Engineer to ensure the availability, performance, and operational excellence of large-scale distributed systems in production. As an SRE you will live at the boundary between development and operations, applying strong software engineering principles to infrastructure and operations problems, and continually pushing the platform toward higher reliability with lower operational toil. The ideal candidate will combine deep systems knowledge with strong programming skills, a measurement-driven mindset, and the discipline to design, automate, and operate complex services so that reliability becomes a first-class engineering deliverable rather than a reactive concern. Key Responsibilities - Define, instrument, and continually refine service-level objectives (SLOs), service-level indicators (SLIs), and error budgets for critical services, and use those measures to drive concrete engineering and prioritization decisions. - Lead incident response and resolution for production issues, acting as a calm and effective incident commander when needed, and ensuring high-quality post-incident reviews that drive lasting improvements. - Design and implement comprehensive monitoring, logging, and tracing strategies using Prometheus, Grafana, OpenTelemetry, ELK/EFK, Datadog, or similar tooling so that operators have rich, actionable visibility into system behavior. - Build and maintain robust on-call processes, runbooks, and escalation paths that reduce mean time to detect and mean time to resolve while protecting the well-being of the engineers on rotation. - Automate operational toil aggressively by writing production-grade tooling in Python, Go, Bash, or similar languages, replacing manual workflows with reliable, auditable automation. - Architect and operate large-scale Kubernetes clusters and container-based workloads, including autoscaling, capacity planning, network policy, and integration with service meshes. - Design CI/CD pipelines that promote safe, frequent, and observable releases, supported by automated testing, canary deployments, feature flags, and progressive rollout strategies. - Lead capacity planning and performance engineering activities, building models that predict growth and stress, and validating those models through load testing and chaos experiments. - Partner closely with application development teams to embed reliability practices early in design — including failure-mode analyses, graceful degradation patterns, and dependency hardening. - Strengthen the platform’s resiliency through chaos engineering, fault injection, dependency isolation, retries, timeouts, circuit breakers, and well-tested failover paths. - Drive continuous improvement of security posture in collaboration with security teams, including patch management, vulnerability remediation, and secure-by-default platform defaults. - Contribute to the technical roadmap for reliability tooling, observability platforms, and developer-experience improvements that reduce friction and improve outcomes for engineering teams. - Mentor engineers across the organization on SRE practices and foster a strong, blameless culture of operational excellence. Required Qualifications - Bachelor’s degree in Computer Science, Engineering, or a related technical discipline. - Five or more years of SRE, DevOps, or production engineering experience supporting large-scale distributed systems. - Strong programming skills in at least one of Python, Go, or Java, with the ability to build robust automation and tooling. - Deep, hands-on experience operating Linux at scale, including networking, performance tuning, and systems-level troubleshooting. - Production experience operating Kubernetes and container-based workloads. - Strong working knowledge of observability tooling such as Prometheus, Grafana, OpenTelemetry, ELK/EFK, or commercial equivalents. - Hands-on experience designing and operating CI/CD pipelines for both infrastructure and applications. - Solid understanding of distributed system design, including consistency models, partitioning, and failure semantics. - Demonstrated experience leading incident response and conducting effective post-incident reviews. - Excellent communication and documentation skills. Preferred Qualifications - Experience defining and operationalizing SLOs and error budgets in real production environments. - Exposure to chaos engineering practices and tools such as Chaos Monkey, Gremlin, or Litmus. - Hands-on experience with at least one major cloud platform (AWS, Azure, or GCP). - Background in capacity planning, performance engineering, or large-scale load testing. - Familiarity with service mesh technologies such as Istio, Linkerd, or Consul. How to Apply Would you like to know more about this opportunity? For immediate consideration, please send your resume to [email protected] or contact us at (908) 505-3544. Learn more about Bright Vision Technologies at www.bvteck.com. We recognize that our people are our strength, and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. We also make reasonable accommodations for applicants’ and employees’ religious practices and beliefs, as well as mental health or physical disability needs. Bright Vision Technologies is an Equal Opportunity Employer, including Disability/Veterans. Position offered by “No Fee Agency.” Equal Employment Opportunity (EEO) Statement Bright Vision Technologies (BV Teck) is committed to equal employment opportunity (EEO) for all employees and applicants without regard to race, color, religion, sex, sexual orientation, gender identity or expression, national origin, age, genetic information, disability, veteran status, or any other protected status as defined by applicable federal, state, or local laws. This commitment extends to all aspects of employment, including recruitment, hiring, training, compensation, promotion, transfer, leaves of absence, termination, layoffs, and recall. BV Teck expressly prohibits any form of workplace harassment or discrimination. Any improper interference with employees' ability to perform their job duties may result in disciplinary action up to and including termination of employment.

Worldwide