1

Arcsight Siem Jobs (NOW HIRING)

CSSP Analyst, Senior P42- P45

Indianapolis, IN · On-site

$87K - $113K/yr

... level SIEM analysis (Azure Sentinel, ArcSight, Splunk) • Experience with threat hunting and event correlation • Incident response and digital forensics experience • Knowledge of malware ...

... Splunk, ArcSight, Okta, and Entra ID. • Provide technical leadership to offshore Delinea and ... Saviynt, SIEM integrations • REST APIs, PowerShell, automation and scripting • Azure, AWS ...

Manager, Cyber Defense

Boston, MA · On-site

$120K - $162K/yr

... SIEM) systems, firewalls, intrusion prevention systems, Anti-Virus (AV), and Data Loss Prevention (DLP) tools • Leverage tools such as QRadar, ArcSight, Splunk, ThreatConnect, and open-source ...

Showing results 41-60

Arcsight Siem information

See salary details

$73K

$130.4K

$177.5K

How much do arcsight siem jobs pay per year?

As of Aug 13, 2026, the average yearly pay for arcsight siem in the United States is $130,378.00, according to ZipRecruiter salary data. Most workers in this role earn between $118,000.00 and $137,500.00 per year, depending on experience, location, and employer.

What does an ArcSight SIEM do?

An ArcSight SIEM professional is often responsible for monitoring and analyzing security alerts generated by the ArcSight platform, investigating suspicious activities, and responding to cyber incidents. Daily tasks may include tuning SIEM rules, creating new correlation searches, gathering threat intelligence, and documenting findings for reporting purposes. You’ll also collaborate closely with SOC analysts, IT teams, and management to ensure security best practices are followed and incidents are escalated appropriately. This role requires a detail-oriented mindset and a proactive approach to evolving cybersecurity threats.

What skills and qualifications are needed for an ArcSight SIEM?

To thrive as an ArcSight SIEM professional, you need a deep understanding of security information and event management (SIEM) principles, network protocols, and incident response, often backed by a degree in computer science or cybersecurity. Familiarity with ArcSight SIEM tools, scripting languages, and certifications like GIAC or CompTIA Security+ are commonly required. Attention to detail, strong analytical thinking, and effective communication enhance your ability to detect threats and work within security teams. These skills are crucial for maintaining robust security monitoring and successfully mitigating cyber threats in a fast-paced environment.

What is an ArcSight SIEM?

An ArcSight SIEM job involves managing and configuring Micro Focus ArcSight, a Security Information and Event Management (SIEM) solution used for threat detection, compliance, and security monitoring. Professionals in this role handle log management, event correlation, and incident response to detect and mitigate cybersecurity threats. They also fine-tune security alerts, create custom rules, and integrate ArcSight with other security tools. Strong knowledge of cybersecurity concepts, log analysis, and scripting is often required.

More about Arcsight Siem jobs
What cities are hiring for Arcsight Siem jobs? Cities with the most Arcsight Siem job openings:
Infographic showing various Arcsight Siem job openings in the United States as of August 2026, with employment types broken down into 91% Full Time, 2% Part Time, and 7% Contract. Highlights an 76% Physical, 10% Hybrid, and 14% Remote job distribution, with an average salary of $130,378 per year, or $62.7 per hour.

Information Technology Project Manager, Senior (CSSP Engineering Team Lead) P06

FEDITC

Indianapolis, IN • On-site

$100K - $137K/yr

Full-time

Re-posted 21 days ago


Job description

Job Summary:
FEDITC, LLC is a fast-growing business supporting DoD and other intelligence agencies worldwide. They are seeking a CSSP Engineering Team Lead to direct the Security Infrastructure Engineering function for the DFAS Cybersecurity Service Provider program, providing 24/7 engineering support for security infrastructure technologies and cybersecurity tool management.
Responsibilities:
• Lead and supervise CSSP Engineering technical staff delivering 24/7 security infrastructure engineering support
• Engineer, deploy, and maintain network perimeter defense appliances including firewalls, IDS/IPS, web proxies, and reverse proxies
• Direct Security Information and Event Management (SIEM) engineering including Splunk, ArcSight, Microsoft Sentinel, and Azure Data Explorer (ADX)
• Oversee CSSP tool suite engineering including Microsoft Defender for Endpoint (MDE), Defender for Identity (MDI), and Defender for Cloud Apps (MDCA)
• Lead penetration testing capabilities, vulnerability management, and Assured Compliance Assessment Solution (ACAS) operations
• Engineer Zero Trust Network Architecture technologies aligned with DoD Zero Trust requirements
• Coordinate security infrastructure projects with CCB and DFAS Engineering teams
• Develop and maintain engineering documentation for security tools, configurations, and operational procedures
• Support CSSP accreditation requirements and documentation
• Ensure compliance with DoD CSSP Evaluators Scoring Metrics, JFHQ-DODIN, DISA, and U.S. Cyber Command guidance
• Provide quarterly technology briefings on CSSP engineering capabilities to DFAS management
Qualifications:
Required:
• Minimum 8 years of cybersecurity engineering experience in DoD or Federal Government environments
• Demonstrated expertise engineering enterprise SIEM platforms (Splunk, ArcSight, Microsoft Sentinel)
• Experience with network security technologies including enterprise firewalls (Palo Alto, Cisco), IDS/IPS, and web proxies
• Hands-on experience with Microsoft Defender security suite (MDE, MDI, MDCA)
• Experience with vulnerability assessment tools (ACAS, Nessus) and penetration testing methodologies
• Knowledge of Zero Trust architecture principles and implementation
• Experience with DoD CSSP requirements, evaluations, and accreditation processes
• Strong understanding of NIST 800-53, DISA STIGs, and DoD cybersecurity frameworks
• Proven ability to lead technical security teams in 24/7 operational environments
• Ability to support COOP exercises and emergency operations
• BA/BS Degree
• AZ801-802 and CISSP (or equivalent per 651 A)
• Computing Environment (CE) certification required for privileged access roles
• Must obtain and maintain all mandatory DoD 8140 certifications
• Active Top Secret/ SCI clearance is required.
• Must be a United States Citizen and pass a background check.
• Maintain applicable security clearance(s) at the level required by the client and/or applicable certification(s) as requested by FEDITC and/or required by FEDITC’S Client(s)/Customer(s)/Prime contractor(s).
Preferred:
• Azure security certifications (AZ-500, SC-200)
• Splunk Certified Architect or Administrator
• GIAC certifications (GCIA, GCIH, GPEN)
• Experience with microsegmentation technologies (Illumio)
• DFAS or DoD financial system security engineering experience
Company:
Founded in 2003, FEDITC, LLC is an ISO 9001/20000-1/27001, and CMMI level 3 certified cyber security, IT, and engineering services firm. Founded in 2003, the company is headquartered in San Antonio, USA, with a team of 201-500 employees. The company is currently Growth Stage.