$113K - $155K/yr
WHAT YOU'LL DO Elastic SIEM & Platform Engineering: * Own and optimize the Elastic Security ... Map detections to MITRE ATT&CK and help drive detection coverage strategy * Track detection quality ...
$113K - $155K/yr
WHAT YOU'LL DO Elastic SIEM & Platform Engineering: * Own and optimize the Elastic Security ... Map detections to MITRE ATT&CK and help drive detection coverage strategy * Track detection quality ...
$113K - $155K/yr
WHAT YOU'LL DO Elastic SIEM & Platform Engineering: * Own and optimize the Elastic Security ... Map detections to MITRE ATT&CK and help drive detection coverage strategy * Track detection quality ...
WHAT YOU'LL DO Elastic SIEM & Platform Engineering: * Own and optimize the Elastic Security ... Map detections to MITRE ATT&CK and help drive detection coverage strategy * Track detection quality ...
WHAT YOU'LL DO Elastic SIEM & Platform Engineering: * Own and optimize the Elastic Security ... Map detections to MITRE ATT&CK and help drive detection coverage strategy * Track detection quality ...
$122K - $168K/yr
WHAT YOU'LL DO Elastic SIEM & Platform Engineering: * Own and optimize the Elastic Security ... Map detections to MITRE ATT&CK and help drive detection coverage strategy * Track detection quality ...
$122K - $168K/yr
WHAT YOU'LL DO Elastic SIEM & Platform Engineering: * Own and optimize the Elastic Security ... Map detections to MITRE ATT&CK and help drive detection coverage strategy * Track detection quality ...
$110K - $151K/yr
WHAT YOU'LL DO Elastic SIEM & Platform Engineering: * Own and optimize the Elastic Security ... Map detections to MITRE ATT&CK and help drive detection coverage strategy * Track detection quality ...
$110K - $151K/yr
WHAT YOU'LL DO Elastic SIEM & Platform Engineering: * Own and optimize the Elastic Security ... Map detections to MITRE ATT&CK and help drive detection coverage strategy * Track detection quality ...
Burlington, MA · On-site
$124K - $170K/yr
WHAT YOU'LL DO Elastic SIEM & Platform Engineering: * Own and optimize the Elastic Security ... Map detections to MITRE ATT&CK and help drive detection coverage strategy * Track detection quality ...
Burlington, MA · On-site
$124K - $170K/yr
WHAT YOU'LL DO Elastic SIEM & Platform Engineering: * Own and optimize the Elastic Security ... Map detections to MITRE ATT&CK and help drive detection coverage strategy * Track detection quality ...
$95K - $130K/yr
WHAT YOU'LL DO Elastic SIEM & Platform Engineering: * Own and optimize the Elastic Security ... Map detections to MITRE ATT&CK and help drive detection coverage strategy * Track detection quality ...
$95K - $130K/yr
WHAT YOU'LL DO Elastic SIEM & Platform Engineering: * Own and optimize the Elastic Security ... Map detections to MITRE ATT&CK and help drive detection coverage strategy * Track detection quality ...
Washington, DC · On-site
$129K - $177K/yr
WHAT YOU'LL DO Elastic SIEM & Platform Engineering: * Own and optimize the Elastic Security ... Map detections to MITRE ATT&CK and help drive detection coverage strategy * Track detection quality ...
Washington, DC · On-site
$129K - $177K/yr
WHAT YOU'LL DO Elastic SIEM & Platform Engineering: * Own and optimize the Elastic Security ... Map detections to MITRE ATT&CK and help drive detection coverage strategy * Track detection quality ...
New Hampshire, OH · On-site
$102K - $140K/yr
WHAT YOU'LL DO Elastic SIEM & Platform Engineering: * Own and optimize the Elastic Security ... Map detections to MITRE ATT&CK and help drive detection coverage strategy * Track detection quality ...
New Hampshire, OH · On-site
$102K - $140K/yr
WHAT YOU'LL DO Elastic SIEM & Platform Engineering: * Own and optimize the Elastic Security ... Map detections to MITRE ATT&CK and help drive detection coverage strategy * Track detection quality ...
Burlington, MA · On-site
$124K - $170K/yr
WHAT YOU'LL DO Elastic SIEM & Platform Engineering: * Own and optimize the Elastic Security ... Map detections to MITRE ATT&CK and help drive detection coverage strategy * Track detection quality ...
Burlington, MA · On-site
$124K - $170K/yr
WHAT YOU'LL DO Elastic SIEM & Platform Engineering: * Own and optimize the Elastic Security ... Map detections to MITRE ATT&CK and help drive detection coverage strategy * Track detection quality ...
Springfield, IL · On-site
$8.0K - $11K/mo
Whether you're helping to improve schools, protect our natural resources, or support families in ... This position serves as a SIEM Administrator for the Department of Innovation & Technology (DoIT ...
Springfield, IL · On-site
$8.0K - $11K/mo
Whether you're helping to improve schools, protect our natural resources, or support families in ... This position serves as a SIEM Administrator for the Department of Innovation & Technology (DoIT ...
To enable this, the systems behind NG-SIEM (next-generation security information and event ... In this role, you will also get a chance to help on hard engineering problems that do not have well ...
To enable this, the systems behind NG-SIEM (next-generation security information and event ... In this role, you will also get a chance to help on hard engineering problems that do not have well ...
To enable this, the systems behind NG-SIEM (next-generation security information and event ... In this role, you will also get a chance to help on hard engineering problems that do not have well ...
To enable this, the systems behind NG-SIEM (next-generation security information and event ... In this role, you will also get a chance to help on hard engineering problems that do not have well ...
Chantilly, VA · On-site +1
$130K - $165K/yr
Datawiz seeks Cybersecurity Engineer - Zero Trust / RMF / SIEM for mid-August 2026 start ... help by contacting us at . Note: This accessibility is intended for individuals requiring ...
Chantilly, VA · On-site +1
$130K - $165K/yr
Datawiz seeks Cybersecurity Engineer - Zero Trust / RMF / SIEM for mid-August 2026 start ... help by contacting us at . Note: This accessibility is intended for individuals requiring ...
Datawiz seeks Cybersecurity Engineer - Zero Trust / RMF / SIEM for mid-August 2026 start ... can help by contacting us at recruiting@gtsc.com . Note: This accessibility is intended for ...
Datawiz seeks Cybersecurity Engineer - Zero Trust / RMF / SIEM for mid-August 2026 start ... can help by contacting us at recruiting@gtsc.com . Note: This accessibility is intended for ...
Chantilly, VA · On-site
$130K - $165K/yr
Datawiz seeks Cybersecurity Engineer - Zero Trust / RMF / SIEM for mid-August 2026 start ... can help by contacting us at recruiting@gtsc.com . Note: This accessibility is intended for ...
Quick apply
Chantilly, VA · On-site
$130K - $165K/yr
Datawiz seeks Cybersecurity Engineer - Zero Trust / RMF / SIEM for mid-August 2026 start ... can help by contacting us at recruiting@gtsc.com . Note: This accessibility is intended for ...
$53.20 - $88.65/hr
This will help us ensure that the candidates have the minimum desired experience with Splunk. Skill Set 1: Senior Splunk Architecture and Engineering Experience Skill Set 2: Senior Splunk SIEM Design ...
$53.20 - $88.65/hr
This will help us ensure that the candidates have the minimum desired experience with Splunk. Skill Set 1: Senior Splunk Architecture and Engineering Experience Skill Set 2: Senior Splunk SIEM Design ...
Scott Air Force Base, IL · On-site
$92K - $121K/yr
Sr Security Analyst We are seeking a Security Analyst with strong Elastic SIEM experience and solid cybersecurity fundamentals who can investigate alerts, hunt threats, and help operationalize ...
Scott Air Force Base, IL · On-site
$92K - $121K/yr
Sr Security Analyst We are seeking a Security Analyst with strong Elastic SIEM experience and solid cybersecurity fundamentals who can investigate alerts, hunt threats, and help operationalize ...
Scott Air Force Base, IL · On-site
Sr Security Analyst We are seeking a Security Analyst with strong Elastic SIEM experience and solid cybersecurity fundamentals who can investigate alerts, hunt threats, and help operationalize ...
Scott Air Force Base, IL · On-site
Sr Security Analyst We are seeking a Security Analyst with strong Elastic SIEM experience and solid cybersecurity fundamentals who can investigate alerts, hunt threats, and help operationalize ...
Scott Air Force Base, IL · On-site
$92K - $121K/yr
We are seeking a Security Analyst with strong Elastic SIEM experience and solid cybersecurity fundamentals who can investigate alerts, hunt threats, and help operationalize detection capabilities ...
Scott Air Force Base, IL · On-site
$92K - $121K/yr
We are seeking a Security Analyst with strong Elastic SIEM experience and solid cybersecurity fundamentals who can investigate alerts, hunt threats, and help operationalize detection capabilities ...
Scott Air Force Base, IL · On-site
$92K - $121K/yr
We are seeking a Security Analyst with strong Elastic SIEM experience and solid cybersecurity fundamentals who can investigate alerts, hunt threats, and help operationalize detection capabilities ...
Scott Air Force Base, IL · On-site
$92K - $121K/yr
We are seeking a Security Analyst with strong Elastic SIEM experience and solid cybersecurity fundamentals who can investigate alerts, hunt threats, and help operationalize detection capabilities ...
$10.82 - $11.98
1% of jobs
$11.98 - $13.13
8% of jobs
$13.13 - $14.29
11% of jobs
$14.62 is the 25th percentile. Wages below this are outliers.
$14.29 - $15.45
15% of jobs
The median wage is $16.40 / hr.
$15.45 - $16.61
18% of jobs
$16.61 - $17.77
18% of jobs
$18.12 is the 75th percentile. Wages above this are outliers.
$17.77 - $18.92
14% of jobs
$18.92 - $20.08
9% of jobs
$20.08 - $21.24
3% of jobs
$21.24 - $22.40
2% of jobs
$22.40 - $23.56
1% of jobs
$10
$18
$23
| Aspect | Helper Siem | Security Analyst |
|---|---|---|
| Required Credentials | Basic certifications, training programs | Advanced certifications like CISSP, CEH |
| Work Environment | Entry-level, support role in security teams | Senior, strategic security operations |
| Employer & Industry Usage | IT support, cybersecurity firms, managed service providers | Corporate security teams, government agencies |
Helper Siem roles typically require basic certifications and involve supporting security operations, often in entry-level environments. Security Analysts have more advanced credentials and handle complex security analysis and incident response. While Helper Siem positions focus on monitoring and basic troubleshooting, Security Analysts develop strategies to prevent and respond to security threats.
$113K - $155K/yr
Full-time
Medical, Dental, Vision, Life, Retirement, PTO
Posted 14 days ago
Own and optimize the Elastic Security platform, including log ingestion, platform optimization, and SIEM workflow integration with automation tooling.
Build, maintain, and tune detection pipelines and high-fidelity detections using Detection-as-Code workflows, EQL, and KQL.
Assist with complex alert escalations, perform initial incident scoping and containment actions, and translate incident learnings into improved detections.
WHAT YOU'LL DO
Elastic SIEM & Platform Engineering:
Own and optimize the Elastic Security platform (Elasticsearch, Kibana, Fleet, Logstash, Elastic Agents)
Design and maintain ingestion pipelines for cloud, endpoint, network, and application telemetry
Improve telemetry quality, data retention, performance, and investigation workflows
Integrate SIEM workflows with SOAR and automation tooling
Detection Engineering & Detection-as-Code:
Build and maintain a Detection-as-Code pipeline using Git-based workflows and CI/CD automation
Develop, test, tune, and maintain high-fidelity detections using Elastic Security, EQL, and KQL
Reduce alert noise through tuning, enrichment, suppression, and exception handling
Map detections to MITRE ATT&CK and help drive detection coverage strategy
Track detection quality metrics including alert fidelity, false positive rates, and coverage gaps
Incident Response Support:
Assist with complex alert escalations and perform initial incident scoping
Execute initial containment actions when necessary (endpoint isolation, IP/domain blocking, account suspension)
Participate in a low-frequency on-call rotation for critical incidents
Translate incident learnings into improved detections and telemetry coverage
Collaboration & Automation:
Partner with infrastructure, DevSecOps, and cloud teams to improve logging and visibility
Build automation and tooling using Python and/or PowerShell
Support purple team exercises and adversary simulations
WHO WE'RE LOOKING FOR
5+ years of cybersecurity engineering experience
3+ years focused on SIEM engineering, detection engineering, or security analytics
Strong hands-on experience with Elastic Security and the Elastic Stack
Experience building or maintaining Detection-as-Code workflows using Git and CI/CD pipelines
Strong understanding of detection tuning, alert fidelity, and operational detection quality
Ability to independently investigate complex alerts and produce actionable findings
Technical Experience:
Elastic Security, Kibana, Fleet, Elastic Agents, EQL/KQL
Detection engineering and MITRE ATT&CK mapping
Jenkins, Bitbucket Pipelines, GitHub Actions, or similar CI/CD tooling
Python and/or PowerShell scripting
AWS CloudTrail, VPC Flow Logs, Azure Monitor, or similar telemetry sources
TCP/IP, DNS, HTTP/S, and common attack patterns
Threat intelligence enrichment and operationalization
Nice to Have:
SOAR playbook development and automated response workflows
Sigma rule development
Elastic detection-rules ecosystem familiarity
Terraform or Ansible experience
Previous SOC or Incident Response background
What Success Looks Like:
30 Days: Validate telemetry sources and establish initial detection coverage baseline
90 Days: Operational Detection-as-Code pipeline with initial custom detections deployed
180 Days: Reduced alert noise, improved coverage visibility, and stabilized SIEM operations
WHO WE ARE
A Swiss company foundedin Singapore in2003, Acronis offers over twenty years of innovation with 15 offices worldwide and more than 1800 employees in 50+ countries. Acronis Cyber Protect is available in 26 languages in 150 countries and is used by over 20,000 service providers to protect over 750,000 businesses.
Our corporate culture centers on innovation, accountability, and impact. We encourage our people to think boldly, challenge conventional approaches, and take ownership of outcomes. As a member of our global "A-Team,"you'lloperatein a high-growth, fast-paced environment where resilience, adaptability, and a commitment to continuous improvement drive success.
The US pay range for this position is $123,000-$180,000. This range reflects the minimum andmaximumtotal target annual compensation for this role across all U.S. locations. The actual compensation offered at the start of employment isdeterminedbased on factors including, but not limited to, experience level, knowledge, skills, and geographic location.
In addition to competitive compensation, this role includes a comprehensive benefits package featuring medical, dental, and vision coverage, flexible spending accounts (FSA),disabilityand life insurance, a401(k) retirementplan with company match, and a generous vacation policy.
Acronis is an equalopportunityemployer. All qualified applicants will receive consideration for employment without regard to age, ancestry, color, marital status, national origin, physical or mental disability, medical condition, protectedveteran status, race, religion, sex (including pregnancy), sexual orientation, gender identity or expression, or any other characteristic protected by applicable laws, regulations and ordinances.