Demo

Platform / SIEM Engineer (Senior)

darkwolfsolutions
San Antonio, TX Full Time
POSTED ON 4/25/2025
AVAILABLE BEFORE 6/25/2025

Dark Wolf Solutions is seeking a Senior Platform / SIEM Engineer to support the Unified Platform Cyber Operations & Security Center (COSC) in San Antonio, TX. The Senior Platform / SIEM Engineer will lead efforts to design, deploy, and optimize telemetry pipelines, SIEM configurations, and observability frameworks that provide real-time visibility and threat detection across COSC’s classified and multi-tenant cloud environments. This role requires deep technical expertise in SIEM engineering, data ingestion pipelines, cloud observability, and operational monitoring at scale.

Key Responsibilities

  • Architect and implement telemetry collection pipelines across cloud, platform, application, and network layers.
  • Design, configure, and maintain SIEM platforms (Elastic Stack, LogRhythm, or Splunk) for multi-tenant, classified environments.
  • Develop and maintain parsing rules, normalization logic, alerting content, and correlation workflows within the SIEM.
  • Build and maintain observability dashboards to visualize platform health, performance metrics, and security telemetry.
  • Ensure telemetry ingestion pipelines are resilient, scalable, and aligned with data retention and compliance requirements.
  • Support tuning of detection content to reduce false positives and enhance signal fidelity across COSC environments.
  • Collaborate with Cloud Engineers, Security Analysts, and SREs to ensure complete visibility across mission systems.
  • Lead integration of logging and telemetry from Kubernetes clusters, containerized applications, cloud-native services, and SaaS platforms.
  • Support SIEM platform upgrades, scaling, and performance optimization efforts.
  • Align telemetry engineering with NIST 800-53 controls, RMF requirements, and DoD cybersecurity standards.
  • Mentor mid-level and junior engineers on telemetry engineering best practices and SIEM administration.

 

Basic Qualifications

  • Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, Engineering, or a related technical field, or equivalent industry experience.
  • Minimum of 6–8 years of experience in SIEM engineering, platform monitoring, or cybersecurity operations.
  • Hands-on experience architecting and maintaining enterprise-grade SIEM solutions (Elastic Stack, LogRhythm, Splunk).
  • Strong expertise in data normalization, parsing, enrichment, and correlation rule development.
  • Experience managing cloud-native telemetry collection from AWS, Azure, Kubernetes, and containerized environments.
  • Familiarity with security detection frameworks such as Sigma rules, MITRE ATT&CK, and threat hunting methodologies.
  • Strong scripting skills (Python, Bash, PowerShell) for telemetry transformation and SIEM automation.
  • Understanding of NIST cybersecurity frameworks, DoD RMF, and STIG compliance requirements.
  • US Citizenship required with an active Secret clearance and eligibility for Top Secret/SCI.

Desired Qualifications

  • Certifications such as Elastic Certified Engineer, Splunk Certified Architect, or GIAC GMON.
  • Experience designing observability architectures supporting both mission health and cybersecurity detection.
  • Experience implementing log pipelines using Fluentd, Beats, Logstash, or similar agents.
  • Familiarity with security orchestration, automation, and response (SOAR) integrations.
  • Experience supporting Department of Defense or Intelligence Community cybersecurity operations.

The estimated salary range is $145,000.00 - $180,000.00, commensurate on experience, technical expertise, certifications, and clearance level.

Primary work location is San Antonio, TX. Hybrid model with a mix of remote and on-site support; on-site presence required for classified system activities.

We are proud to be an EEO/AA employer Minorities/Women/Veterans/Disabled and other protected categories.
 
 In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States and to complete the required employment eligibility verification form upon hire.

Salary : $145,000 - $180,000

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Platform / SIEM Engineer (Senior)?

Sign up to receive alerts about other jobs on the Platform / SIEM Engineer (Senior) career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$99,793 - $130,112
Income Estimation: 
$125,027 - $157,872
Income Estimation: 
$89,966 - $112,616
Income Estimation: 
$118,163 - $145,996
Income Estimation: 
$120,777 - $151,022
Income Estimation: 
$129,363 - $167,316
Income Estimation: 
$86,891 - $130,303
Income Estimation: 
$99,793 - $130,112
Income Estimation: 
$125,027 - $157,872
Income Estimation: 
$125,027 - $157,872
Income Estimation: 
$149,432 - $188,965
Income Estimation: 
$149,432 - $188,965
Income Estimation: 
$179,455 - $227,077
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at darkwolfsolutions

darkwolfsolutions
Hired Organization Address Omaha, NE Full Time
Dark Wolf Solutions is seeking an experienced RMF Security Risk Assessor with expertise in the Risk Management Framework...
darkwolfsolutions
Hired Organization Address San Antonio, TX Full Time
Dark Wolf Solutions is seeking a Mid-Level Cloud Security Engineer to support the Unified Platform Cyber Operations & Se...
darkwolfsolutions
Hired Organization Address San Antonio, TX Full Time
Dark Wolf Solutions is seeking a Senior Cloud Security Engineer to support the Unified Platform Cyber Operations & Secur...
darkwolfsolutions
Hired Organization Address San Antonio, TX Full Time
Dark Wolf Solutions is seeking a Junior Platform / SIEM Engineer to support the Unified Platform Cyber Operations & Secu...

Not the job you're looking for? Here are some other Platform / SIEM Engineer (Senior) jobs in the San Antonio, TX area that may be a better fit.

Platform / SIEM Engineer (Junior)

darkwolfsolutions, San Antonio, TX

Platform / SIEM Engineer (Junior)

Dark Wolf Solutions, San Antonio, TX

AI Assistant is available now!

Feel free to start your new journey!