1

Qradar Siem Jobs (NOW HIRING)

Cyber Security Engineer

Frisco, TX · On-site

$106 - $143/hr

Lead the customization and fine-tuning of SIEM tools (Splunk ES, QRadar) to reduce false positives, streamline alerting processes, and enhance detection capabilities, significantly improving security ...

Use SIEM tools (e.g., Splunk, QRadar) to detect and respond to security incidents. * Vulnerability Management: Conduct assessments and penetration tests; implement remediation strategies. * Policy ...

SOC Analyst I

Dallas, TX · On-site

$65K - $85K/yr

Top Skills: -4+ years in security analysis/cybersecurity -SIEM (Sentinel, Splunk, QRadar, etc.) -Vulnerability Scans (Nexus, Tensible, Splunk) -Penetration Testing -Disaster Recovery -Certs: CEH ...

Experience with Security Information and Event Management (SIEM) tools like ArcSight, QRadar, Splunk, etc. * Experience with Vulnerability scanners like Nessus, MVM, Qualys , etc. * Knowledge of ...

SOC Analyst I

Dallas, TX · On-site

$65K - $85K/yr

Top Skills: -4+ years in security analysis/cybersecurity -SIEM (Sentinel, Splunk, QRadar, etc.) -Vulnerability Scans (Nexus, Tensible, Splunk) -Penetration Testing -Disaster Recovery -Certs: CEH ...

Showing results 21-40

Qradar Siem information

See salary details

$39.5K

$107.3K

$141K

How much do qradar siem jobs pay per year?

As of Aug 23, 2026, the average yearly pay for qradar siem in the United States is $107,334.00, according to ZipRecruiter salary data. Most workers in this role earn between $91,500.00 and $130,000.00 per year, depending on experience, location, and employer.

What is a QRadar SIEM?

A QRadar SIEM job involves managing IBM QRadar, a security information and event management (SIEM) system used to detect, analyze, and respond to cybersecurity threats. Professionals in this role configure QRadar to collect and analyze log data, create alerts for suspicious activities, and fine-tune detection rules to minimize false positives. They work closely with security teams to investigate incidents and improve an organization's security posture. Strong knowledge of networking, log analysis, and threat detection is essential for success in this role.

What does a QRadar SIEM analyst do?

A QRadar SIEM analyst is typically responsible for monitoring security alerts, investigating potential security incidents, and tuning SIEM rules to reduce false positives. Daily tasks include reviewing log data, correlating events from various sources, and escalating genuine threats to the appropriate teams for further action. The role often involves collaborating closely with SOC (Security Operations Center) analysts, network engineers, and IT administrators to ensure a comprehensive security posture. In addition to incident response, QRadar SIEM analysts may participate in developing new detection methods and refining existing processes to improve threat visibility.

What skills and qualifications are needed for a QRadar SIEM position?

To excel in a QRadar SIEM role, you need a solid understanding of cybersecurity principles, network protocols, and incident response, along with hands-on experience using IBM QRadar SIEM solutions. Familiarity with log analysis tools, threat intelligence platforms, and certifications such as IBM Certified Deployment Professional for QRadar or CompTIA Security+ is highly beneficial. Problem-solving skills, attention to detail, and strong communication abilities help professionals effectively investigate and convey security findings to stakeholders. These competencies are vital for quickly detecting, analyzing, and mitigating security threats in complex IT environments.

More about Qradar Siem jobs

What are the most commonly searched types of Qradar Siem jobs?

The most popular types of Qradar Siem jobs are:

What states have the most Qradar Siem jobs?

States with the most job openings for Qradar Siem jobs include:

Infographic showing various Qradar Siem job openings in the United States as of August 2026, with employment types broken down into 93% Full Time, 2% Part Time, and 5% Contract. Highlights an 78% Physical, 8% Hybrid, and 14% Remote job distribution, with an average salary of $107,334 per year, or $51.6 per hour.

$133K - $166K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 9 days ago


Job description

SIEM Engineer II – Direct Hire


Location: Austin, TX – Onsite
Employment Type: Full-Time, Direct Hire
Work Authorization: U.S. Citizen or Green Card Holder Required
Urgency: Immediate Hiring Need


Our client is looking for an experienced SIEM Engineer II to join its cybersecurity team in Austin. This is an urgent, direct-hire opportunity for a hands-on security engineer with strong experience in Splunk Enterprise Security, SIEM engineering, security telemetry, detection engineering, and log management.


This is not simply a SOC monitoring position. We are looking for someone who has worked behind the scenes of a SIEM environment—onboarding and improving data sources, engineering detections, troubleshooting log quality, optimizing telemetry, and helping security teams turn large volumes of data into actionable threat intelligence.

The ideal candidate will bring strong Splunk expertise along with practical experience supporting cloud, endpoint, identity, network, and application security telemetry.


What You'll Do

  • Engineer, administer, optimize, and support enterprise SIEM environments, with a strong emphasis on Splunk Enterprise and Splunk Enterprise Security (ES).
  • Onboard new security and technology log sources into the SIEM platform.
  • Perform log parsing, normalization, enrichment, filtering, and data-quality remediation.
  • Develop and tune SPL searches, correlation rules, alerts, and security detections.
  • Build detections for threats involving compromised identities, malware, lateral movement, privilege escalation, suspicious network activity, cloud threats, and other attack patterns.
  • Map detections and security use cases to frameworks such as MITRE ATT&CK.
  • Integrate telemetry from cloud platforms, endpoints, firewalls, identity platforms, network security tools, vulnerability-management platforms, and business applications.
  • Partner with SOC and incident-response teams to improve detection coverage, investigation capabilities, and response workflows.
  • Troubleshoot ingestion, indexing, parsing, data-quality, and performance issues.
  • Develop dashboards, reports, and analytics that improve security visibility and operational decision-making.
  • Support large-scale security data ingestion and help improve the performance, reliability, and scalability of SIEM infrastructure.
  • Collaborate with infrastructure, cloud, application, IAM, network, and cybersecurity teams to identify logging requirements and close visibility gaps.
  • Assist with automation and orchestration of security processes and response workflows.
  • Document log sources, detections, configurations, troubleshooting procedures, and operational processes.


What We're Looking For

  • Several years of hands-on experience in SIEM engineering, security engineering, detection engineering, SOC engineering, or a closely related cybersecurity discipline.
  • Strong hands-on experience with Splunk Enterprise and/or Splunk Enterprise Security.
  • Demonstrated ability to write and troubleshoot SPL.
  • Experience onboarding and integrating security telemetry and enterprise log sources.
  • Strong understanding of log ingestion, parsing, normalization, enrichment, data models, and data quality.
  • Experience developing, tuning, and maintaining security detections and correlation searches.
  • Understanding of common attacker techniques and the ability to translate threats into effective SIEM detections.
  • Experience working with security telemetry from areas such as cloud, endpoint, IAM, firewalls, network security, vulnerability management, and applications.
  • Knowledge of MITRE ATT&CK and modern detection-engineering practices.
  • Understanding of incident response, threat detection, and SOC operations.
  • Strong troubleshooting skills and the ability to work with technical teams to resolve complex logging and integration issues.


Highly Valued Experience

Candidates do not need every item below, but experience in several of these areas will be particularly attractive:

  • Splunk Enterprise Security
  • Splunk administration and large-scale data ingestion
  • Cribl or similar telemetry-routing/log-pipeline technologies
  • Splunk SOAR/Phantom or other security automation platforms
  • AWS security telemetry such as CloudTrail, GuardDuty, and VPC Flow Logs
  • Azure or GCP security logging
  • Endpoint platforms such as CrowdStrike or SentinelOne
  • Palo Alto, Fortinet, Cisco, or similar network-security technologies
  • IAM telemetry and identity-threat detection
  • Vulnerability-management platforms such as Tenable or Qualys
  • Infrastructure automation using tools such as Terraform, Ansible, Docker, Kubernetes, or CI/CD pipelines
  • Additional SIEM technologies such as QRadar, ELK, or LogRhythm
  • Security frameworks including NIST, CIS Controls, or ISO 27001


Education & Certifications

A bachelor's degree in Computer Science, Cybersecurity, Information Technology, Engineering, or a related discipline is preferred. Equivalent professional experience will also be considered.


Relevant certifications such as Splunk Enterprise Certified Admin, Splunk Enterprise Security certifications, Splunk Cybersecurity Defense Analyst, CISSP, Security+, or AWS certifications are highly valued.


Important Requirements

This is a full-time, direct-hire position located in Austin and requires onsite work.


Candidates must be able and willing to work onsite as required.


Applicants must be U.S. Citizens or U.S. Permanent Residents (Green Card holders). Sponsorship is not available for this position.


Our client is moving quickly and is looking to identify qualified candidates immediately.


If you are a hands-on SIEM engineer who enjoys building and improving security capabilities—not simply monitoring alerts—we would like to hear from you.

Company Description

We Place People is a premiere Executive Search Firm working with leading companies nationwide. We have a direct relationship with our clients and a 95% hire rate! We differentiate ourselves from other firms & work closely with our candidates throughout the interview process. WE PLACE PEOPLE is what we do best!