2

Full Time Siem Content Developer Jobs (NOW HIRING)

Cyber Content Developer

Hanover, MD · On-site

$122K - $127K/yr

Position Overview We are looking for cyber content developers who can interface with the Government ... Most positions are full-time on-site in Pensacola, FL. Possible alternate work locations of Hanover ...

Cyber Content Developer

Pensacola, FL · On-site

$115K - $120K/yr

Position Overview We are looking for cyber content developers who can interface with the Government ... Most positions are full-time on-site in Pensacola, FL. Possible alternate work locations of Hanover ...

Cyber Content Developer

Orlando, FL

$114K - $119K/yr

Position Overview We are looking for cyber content developers who can interface with the Government ... Most positions are full-time on-site in Pensacola, FL. Possible alternate work locations of Hanover ...

Cyber Content Developer

Pensacola, FL

$115K - $120K/yr

Position Overview We are looking for cyber content developers who can interface with the Government ... Most positions are full-time on-site in Pensacola, FL. Possible alternate work locations of Hanover ...

Configure, maintain, and optimize SIEM content including correlation rules, alerts, dashboards, and reports * Analyze security events and log data to identify suspicious activity, support ...

$137K - $142K/yr

... Content Developer to provide support for our government customer in Laurel, MD at Ft. Meade ... Regular Full Time

Position Overview We are looking for training content developers who can distill technical cyber ... Positions are full-time on-site in Pensacola, FL. Responsibilities * Create, update, and maintain ...

Senior SIEM Engineer

Washington, DC · On-site

$130K - $145K/yr

The Senior SIEM Engineer will serve as a technical lead for SIEM operations, log onboarding, detection content development, dashboarding, alert tuning, incident triage, continuous monitoring ...

next page

Showing results 1-20

Full Time Siem Content Developer information

See salary details

$29.5K

$116.6K

$129K

How much do full time siem content developer jobs pay per year?

As of Jun 16, 2026, the average yearly pay for full time siem content developer in the United States is $116,615.00, according to ZipRecruiter salary data. Most workers in this role earn between $123,000.00 and $128,000.00 per year, depending on experience, location, and employer.

What is the role of a content developer?

A full-time SIEM content developer creates and maintains security content such as rules, alerts, and dashboards for Security Information and Event Management (SIEM) systems. They analyze security data, develop detection logic, and ensure the content effectively identifies threats, often using scripting languages and security tools. Strong knowledge of cybersecurity principles and experience with SIEM platforms are essential for this role.

What is the difference between Full Time Siem Content Developer vs Security Analyst?

AspectFull Time Siem Content DeveloperSecurity Analyst
Primary RoleDevelops and maintains SIEM content, rules, and alertsMonitors security systems, analyzes threats, and responds to incidents
Required SkillsSIEM platforms, scripting, security conceptsThreat detection, incident response, security tools
Work EnvironmentSecurity operations centers, IT teamsSecurity operations centers, incident response teams
CertificationsSecurity+, CEH, CISSP (preferred)Security+, CISSP, GCIH

While both roles focus on cybersecurity, a Full Time Siem Content Developer specializes in creating and managing SIEM rules and content, whereas a Security Analyst focuses on monitoring, analyzing, and responding to security threats. The developer builds the tools for detection, and the analyst uses those tools to protect the organization.

Which IT job is the highest paid?

In the IT industry, roles such as Chief Information Officer (CIO), Solutions Architect, and Cloud Engineer tend to be among the highest paid, often earning six-figure salaries. Specialized skills in cybersecurity, cloud computing, and data management, along with extensive experience and certifications, contribute to higher compensation for these positions.

What is a sIEM content developer?

A SIEM content developer is a cybersecurity professional who creates and manages security content such as rules, alerts, and dashboards within Security Information and Event Management (SIEM) systems. They analyze security data, develop detection logic, and customize content to identify threats effectively, often using tools like Splunk, QRadar, or ArcSight.

Which IT job is in demand now?

Full Time SIEM Content Developers are in demand as cybersecurity threats increase, requiring skills in security information and event management tools, log analysis, and scripting. These roles are essential for organizations to monitor and respond to security incidents effectively, often requiring certifications like CISSP or CompTIA Security+.

What is a Full Time SIEM Content Developer?

A Full Time SIEM Content Developer is a cybersecurity professional responsible for creating, optimizing, and managing security event and information management (SIEM) rules, use cases, and content. Their work involves developing detection logic, alerts, and reports to identify and respond to security threats within an organization. They collaborate closely with security analysts, engineers, and other IT staff to ensure the SIEM platform effectively detects and helps mitigate cyber risks. This role often requires expertise in scripting, threat intelligence, and knowledge of various log sources and attack techniques.

What are the key skills and qualifications needed to thrive as a Full Time SIEM Content Developer, and why are they important?

To thrive as a Full Time SIEM Content Developer, you need expertise in cybersecurity principles, log analysis, scripting (such as Python or PowerShell), and a degree in computer science or a related field. Familiarity with SIEM platforms like Splunk, IBM QRadar, or ArcSight, as well as certifications such as GIAC or CompTIA Security+, is often required. Strong analytical thinking, problem-solving abilities, and effective communication are crucial soft skills for this role. These skills enable the creation of robust detection content, effective incident response, and clear collaboration with security teams to protect organizational assets.

What are some common challenges faced by Full Time SIEM Content Developers when creating and tuning detection rules?

Full Time SIEM Content Developers often encounter challenges such as managing false positives, adapting detection rules to evolving threats, and ensuring compatibility across various log sources. They must continuously fine-tune and update correlation rules to balance effective threat detection with the minimization of unnecessary alerts. Collaboration with security analysts and incident response teams is essential to validate rule effectiveness and adjust logic based on real-world attack scenarios, making ongoing communication and adaptability crucial for success in this role.
More about Full Time Siem Content Developer jobs
What are the most commonly searched types of Siem Content Developer jobs? The most popular types of Siem Content Developer jobs are:
What job categories do people searching Full Time Siem Content Developer jobs look for? The top searched job categories for Full Time Siem Content Developer jobs are:

Cyber Content Developer

Metova Federal

Hanover, MD • On-site

$122K - $127K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 10 days ago


Job description

Company Overview

By Light Professional IT Services LLC readies warfighters and federal agencies with technology and systems engineered to connect, protect, and prepare individuals and teams for whatever comes next. Headquartered in McLean, VA, By Light supports defense, civilian, and commercial IT customers worldwide. 

Cole Engineering Services (CESI), a By Light company, is recognized as a premier provider of modeling and simulation (M&S) training solutions to the Federal Government and industry. Since 2004, CESI has been at the forefront of developing, maintaining, and integrating simulation-based training, serious gaming, technical services, training and other support in live, virtual, constructive, and gaming (LVCG) domains.  CESI also designs, builds and runs infrastructure, platforms, applications and processes that enable cyber training for the integrated multi-domain force. Our vision is to become a worldwide full spectrum LVCG and cyber training/analysis developer, integrator and services provider.

Position Overview

We are looking for cyber content developers who can interface with the Government customers to obtain requirements for new cyber-related training courses as well as for updates to existing cyber-related training courses and develop appropriate documentation so that the requirements can be implemented in the next iteration of training courses. The ability to thrive within high pressure situations and drive relevant teams to take the right actions are a must.

Most positions are full-time on-site in Pensacola, FL. Possible alternate work locations of Hanover, MD or Orlando, FL. Remote work will be considered on a case-by-case basis.

Responsibilities
  • Lead the coordination and execution of the requirements analysis, design, development, test, and delivery activities.
  • Revise or create the Training Conduct Support Documents, Training Program Structure Documents, Training System Support Documents, and other related documents.
  • Keep abreast of emerging technologies and industry best practices to incorporate relevant training methodologies and tools into the training curriculum.
  • Effectively manage multiple projects and initiatives from analysis to evaluation.
Required Experience/Qualifications
  • Associate's degree in a related field (Instructional Design, Education, Computer Science) from an accredited college or university. Three years of relevant experience can be substituted for an associate's degree. 
  • 5+ years of experience in training development, instructional design, and delivery methods, preferably in a technical or IT-related field.
  • Experience developing training products using the standard industry instructional systems design model described in Military-Handbook (MIL-HDBK)-29612-series.
  • Strong knowledge of instructional design principles and adult learning theories.
  • Strong technical acumen with the ability to translate complex concepts into clear, concise language for advanced and novice learners.
  • Experience working with Information Technology and Cyber Related technical topics (e.g. hardware, software, networking concepts, networking protocols, OSI model etc.)
  • Ability to incorporate user feedback and organizational assessment data into design improvements.
  • Demonstrated experience with authoring learning objectives, assessments, and course surveys.
  • Demonstrated experience with technical training concepts and delivery methods (online and in-residence), including facilitating and delivering courseware for live and self-paced trainings.
  • Strong understanding of technical concepts.
  • Excellent writing, facilitation, and communication skills.
  • Ability to work independently and as part of a team.
  • Ability to meet deadlines and work under pressure.
Preferred Experience/Qualifications
  • Experience with obtaining requirements for updating or implementing updates for the following 2000-level training courses: Cyber Defense Analyst-Basic (CDA), Host Analyst (HAC), Network Analyst (NAC), Network Technician (NT), Cyber Threat Emulator (CTEC), Cyber Threat Intelligence Analyst Course (CTIAC), Cyberspace Operations Planners Course (COPC).
  • A graduate of CDA, HAC, NAC, NT, CTEC, CTIAC, COPC, or equivalent service cyber school.
  • Experience with Naval Education Training Command, Center for Information Warfare Training, and Information Warfare Training Center instructional policies.
  • Consulting, project management, and organizational/planning skills.
  • Experience in with cmi5/SCORM, xAPI, Section 508, and learning-related technology standards.
  • Instructional Systems Design, User Experience, or Human-Centered Design Certification.
  • Experience with PCTE.
Special Requirements/Security Clearance

Please note that pursuant to a government contract, this specific position requires U. S. Citizenship status and a TS/SCI security clearance with the ability to pass a CI polygraph if requested by the customer. Security Clearance requirements will be specified in the Government's Task Order. 

Occasional travel may be required up to 10% of the time.

This job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee. The above is intended to describe the general contents of and requirements for the performance of this job.

Cole Engineering Services, Inc. has been, and is fully committed to equal employment opportunity. Equal Employment Opportunity will remain a fundamental principle, where we seek to recruit the very best candidates. CESI actively seeks to recruit and does not discriminate in employment without regard to gender, race, color, religious creed, national origin, age, sexual orientation, gender identity, physical or mental disability and/or protected veteran status.

Benefits Overview

CESI recognizes that our strength is our people. We support every employee as an individual to build strong teams across the enterprise.  Our benefit package includes:

  • Medical, Dental & Vision Coverage
  • Wellness Program
  • 401(k) Matching
  • Disability (Short Term & Long Term)
  • Employee Assistance Program
  • Life Insurance
  • Education & Training
  • Generous Leave Policy (11 Federal Holidays, PTO, Military Leave, Bereavement and Jury Duty)

Cole Engineering Services, Inc. is an equal opportunity employer. We consider qualified applicants without regard to race, color, creed, religion, national origin, sex, sexual orientation, gender identity and expression, political affiliation, age, marital status, disability, genetic information, veteran status, membership in an employee organization, or any other basis prohibited by federal, state, or local laws.

Employment Type: FULL_TIME