Deloitte's Cyber Defense and Resilience offering is seeking a SIEM Engineer to support security ... This is a remote role with opportunities to work across distributed teams in a fast-paced ...
Deloitte's Cyber Defense and Resilience offering is seeking a SIEM Engineer to support security ... This is a remote role with opportunities to work across distributed teams in a fast-paced ...
Deloitte's Cyber Defense and Resilience offering is seeking a SIEM Engineer to support security ... This is a remote role with opportunities to work across distributed teams in a fast-paced ...
Deloitte's Cyber Defense and Resilience offering is seeking a SIEM Engineer to support security ... This is a remote role with opportunities to work across distributed teams in a fast-paced ...
Deloitte's Cyber Defense and Resilience offering is seeking a SIEM Engineer to support security ... This is a remote role with opportunities to work across distributed teams in a fast-paced ...
Deloitte's Cyber Defense and Resilience offering is seeking a SIEM Engineer to support security ... This is a remote role with opportunities to work across distributed teams in a fast-paced ...
Manager Cyber Fusion Center (Remote)
Poland, OH · Remote
$113K - $153K/yr
... defense capability with incident response as a core area of expertise. This role oversees cyber ... Fully remote opportunity with a company thatcares. Key Responsibilities: * Lead the strategy ...
Quick apply
Manager Cyber Fusion Center (Remote)
Poland, OH · Remote
$113K - $153K/yr
... defense capability with incident response as a core area of expertise. This role oversees cyber ... Fully remote opportunity with a company thatcares. Key Responsibilities: * Lead the strategy ...
Cyber Engineer
$96K - $123K/yr
Medical
Dental
Vision
Retirement
PTO
Configure and maintain GlobalProtect and Prisma Access where applicable, extending network defense into cloud and remote environments. * Partner with the Cyber Defense Operations teams to investigate ...
Cyber Engineer
$96K - $123K/yr
Medical
Dental
Vision
Retirement
PTO
Configure and maintain GlobalProtect and Prisma Access where applicable, extending network defense into cloud and remote environments. * Partner with the Cyber Defense Operations teams to investigate ...
Cyber Intelligence Analyst
Fort George G Meade, MD · On-site +1
$77K - $176K/yr
Medical
Life
Retirement
PTO
Remote Work: No Job Number: R0244740 Location: Fort Meade,MD,US Share job via: Share Cyber ... Provide all-source intelligence production and analysis in support of offensive and defensive ...
Cyber Intelligence Analyst
Fort George G Meade, MD · On-site +1
$77K - $176K/yr
Medical
Life
Retirement
PTO
Remote Work: No Job Number: R0244740 Location: Fort Meade,MD,US Share job via: Share Cyber ... Provide all-source intelligence production and analysis in support of offensive and defensive ...
SOC Analyst L3
Cleveland, OH · Remote
$80K - $90K/yr
SOC Analyst L3 - Lead the Charge in Cyber Defense and Threat Investigation Salary Range: $80K-$90K Location: 100% Remote 1-2nd shift 5PM-1AM 1-3rd shift 1AM-9AM Are you a seasoned security operations ...
SOC Analyst L3
Cleveland, OH · Remote
$80K - $90K/yr
SOC Analyst L3 - Lead the Charge in Cyber Defense and Threat Investigation Salary Range: $80K-$90K Location: 100% Remote 1-2nd shift 5PM-1AM 1-3rd shift 1AM-9AM Are you a seasoned security operations ...
Cyber Intelligence Analyst
Fort George G Meade, MD · On-site +1
$77K - $176K/yr
Medical
Life
Retirement
PTO
Remote Work: No Job Number: R0245860 Location: Fort Meade,MD,US Share job via: Share Cyber ... Provide all-source intelligence production and analysis in support of offensive and defensive ...
Cyber Intelligence Analyst
Fort George G Meade, MD · On-site +1
$77K - $176K/yr
Medical
Life
Retirement
PTO
Remote Work: No Job Number: R0245860 Location: Fort Meade,MD,US Share job via: Share Cyber ... Provide all-source intelligence production and analysis in support of offensive and defensive ...
Cyber Threat Intelligence Analyst
Arlington, VA · On-site +1
Medical
Life
Retirement
PTO
Remote Work: No Job Number: R0246203 Location: Arlington,VA,US Share job via: Share Cyber Threat ... for defensive operations. You'll be the key to discovering and correlating timely threat ...
Cyber Threat Intelligence Analyst
Arlington, VA · On-site +1
Medical
Life
Retirement
PTO
Remote Work: No Job Number: R0246203 Location: Arlington,VA,US Share job via: Share Cyber Threat ... for defensive operations. You'll be the key to discovering and correlating timely threat ...
Insider Threat Senior Analyst
$102K - $132K/yr
Cyber Defense's mission is simple: We aim to Deter, Detect, Deny, and Disrupt adversaries through ... Remote
Insider Threat Senior Analyst
$102K - $132K/yr
Cyber Defense's mission is simple: We aim to Deter, Detect, Deny, and Disrupt adversaries through ... Remote
Cyber Platforms Software Engineer, Lead
Annapolis, MD · On-site +1
$112K - $257K/yr
Medical
Life
Retirement
PTO
Remote Work: Yes Job Number: R0243467 Location: Annapolis Junction,MD,US Share job via: Share Cyber ... Applying AI, analytics, and decision-support techniques to reduce analyst burden and improve ...
Cyber Platforms Software Engineer, Lead
Annapolis, MD · On-site +1
$112K - $257K/yr
Medical
Life
Retirement
PTO
Remote Work: Yes Job Number: R0243467 Location: Annapolis Junction,MD,US Share job via: Share Cyber ... Applying AI, analytics, and decision-support techniques to reduce analyst burden and improve ...
IT Cybersecurity Specialist (Information Security)
Oakland, CA · On-site +1
$90K - $118K/yr
PTO
Coordinate with Cyber Defense Analysts to manage and administer the updating of rules and signatures (e.g., intrusion detection/protection systems, antivirus, and content blacklists) for specialized ...
IT Cybersecurity Specialist (Information Security)
Oakland, CA · On-site +1
$90K - $118K/yr
PTO
Coordinate with Cyber Defense Analysts to manage and administer the updating of rules and signatures (e.g., intrusion detection/protection systems, antivirus, and content blacklists) for specialized ...
Cyber Mission Analyst
Arlington, VA · On-site +1
$62K - $141K/yr
Medical
Life
Retirement
PTO
Remote Work: No Job Number: R0241814 Location: Arlington,VA,US Share job via: Share Cyber Mission ... defense. In this role, you'll be counted on to help understand cyberspace capabilities to evaluate ...
Cyber Mission Analyst
Arlington, VA · On-site +1
$62K - $141K/yr
Medical
Life
Retirement
PTO
Remote Work: No Job Number: R0241814 Location: Arlington,VA,US Share job via: Share Cyber Mission ... defense. In this role, you'll be counted on to help understand cyberspace capabilities to evaluate ...
Regional Sales Director (West)
Nashville, TN · Remote
Medical
Dental
Vision
Retirement
PTO
Join us in creating the future of cyber defense, where you'll lead initiatives to identify new ... Remote work with a flexible schedule to support your productivity and work-life balance.
Regional Sales Director (West)
Nashville, TN · Remote
Medical
Dental
Vision
Retirement
PTO
Join us in creating the future of cyber defense, where you'll lead initiatives to identify new ... Remote work with a flexible schedule to support your productivity and work-life balance.
Sales Executive, Fed/Civ Agencies
Columbia, MD · On-site +1
$110K - $160K/yr
Medical
Dental
Vision
Life
Retirement
PTO
Remote Owl Cyber Defense is a leader and trusted partner in cyber security. We deliver solutions that protect and connect the world's most critical networks. Owl's product lines of cross domain, data ...
Sales Executive, Fed/Civ Agencies
Columbia, MD · On-site +1
$110K - $160K/yr
Medical
Dental
Vision
Life
Retirement
PTO
Remote Owl Cyber Defense is a leader and trusted partner in cyber security. We deliver solutions that protect and connect the world's most critical networks. Owl's product lines of cross domain, data ...
Senior CERT Analyst (experienced level professional)
$102K - $132K/yr
Michelin is hiring a Senior CERT Analyst to join their global cyber-defense team. This role involves proactively tracking emerging threats, analyzing incidents, and mitigating risks to enhance the ...
Senior CERT Analyst (experienced level professional)
$102K - $132K/yr
Michelin is hiring a Senior CERT Analyst to join their global cyber-defense team. This role involves proactively tracking emerging threats, analyzing incidents, and mitigating risks to enhance the ...
Senior Threat Intelligence Analyst
Chicago, IL · On-site +1
Medical
Dental
Vision
Retirement
PTO
Partner with Cyber Defense and engineering as a technical peer to translate intelligence into ... Remote -Chicago, IL If this resonates with you, we encourage you to apply, even if you don't meet ...
Senior Threat Intelligence Analyst
Chicago, IL · On-site +1
Medical
Dental
Vision
Retirement
PTO
Partner with Cyber Defense and engineering as a technical peer to translate intelligence into ... Remote -Chicago, IL If this resonates with you, we encourage you to apply, even if you don't meet ...
Cyber Threat Intelligence Analyst Subject Matter Expert
Arlington, VA · On-site +1
Medical
Life
Retirement
PTO
Remote Work: No Job Number: R0244475 Location: Arlington,VA,US Share job via: Share Cyber Threat ... defensive operations. You'll be the key to discovering and correlating timely threat intel and ...
Cyber Threat Intelligence Analyst Subject Matter Expert
Arlington, VA · On-site +1
Medical
Life
Retirement
PTO
Remote Work: No Job Number: R0244475 Location: Arlington,VA,US Share job via: Share Cyber Threat ... defensive operations. You'll be the key to discovering and correlating timely threat intel and ...
Manager Cyber Fusion Center
Poland, OH · On-site +1
$96K - $129K/yr
... defense capability with incident response as a core area of expertise. This role oversees cyber ... Fully remote opportunity with a company thatcares. Key Responsibilities: * Lead the strategy ...
Manager Cyber Fusion Center
Poland, OH · On-site +1
$96K - $129K/yr
... defense capability with incident response as a core area of expertise. This role oversees cyber ... Fully remote opportunity with a company thatcares. Key Responsibilities: * Lead the strategy ...
Manager Cyber Fusion Center
Poland, OH · On-site +1
$96K - $129K/yr
... defense capability with incident response as a core area of expertise. This role oversees cyber ... Fully remote opportunity with a company that cares. Key Responsibilities: * Lead the strategy ...
Manager Cyber Fusion Center
Poland, OH · On-site +1
$96K - $129K/yr
... defense capability with incident response as a core area of expertise. This role oversees cyber ... Fully remote opportunity with a company that cares. Key Responsibilities: * Lead the strategy ...
Remote Cyber Defense Analyst information
See salary details
$44.5K - $54.2K
9% of jobs
$54.2K - $63.9K
2% of jobs
$63.9K - $73.5K
6% of jobs
$73.5K - $83.2K
1% of jobs
$87.2K is the 25th percentile. Wages below this are outliers.
$83.2K - $92.9K
17% of jobs
$92.9K - $102.6K
11% of jobs
The median wage is $106.5K / yr.
$102.6K - $112.3K
11% of jobs
$112.3K - $122K
17% of jobs
$123.6K is the 75th percentile. Wages above this are outliers.
$122K - $131.6K
10% of jobs
$131.6K - $141.3K
13% of jobs
$141.3K - $151K
4% of jobs
$44.5K
$107.5K
$151K
How much do remote cyber defense analyst jobs pay per year?
What does a remote cyber defense analyst do?
What are the key skills and qualifications needed to thrive as a remote cyber defense analyst?
How do remote cyber defense analysts typically collaborate with on-site IT teams during a security incident?
What is the difference between Remote Cyber Defense Analyst vs Remote Security Operations Center (SOC) Analyst?
| Aspect | Remote Cyber Defense Analyst | Remote Security Operations Center (SOC) Analyst |
|---|---|---|
| Certifications | CompTIA Security+, CISSP, CEH | CompTIA Security+, CISSP, CEH |
| Work Environment | Remote, often part of cybersecurity teams | Remote, within SOC teams monitoring security alerts |
| Industry Usage | Various industries including finance, healthcare, tech | Primarily in cybersecurity firms and large organizations |
| Job Focus | Analyzing threats, developing defense strategies | Monitoring security alerts, incident response |
The Remote Cyber Defense Analyst and Remote SOC Analyst roles share similar certifications and work environments but differ in focus. The Cyber Defense Analyst emphasizes proactive threat analysis and defense strategy, while the SOC Analyst concentrates on real-time monitoring and incident response within security operations centers.
What cities are hiring for Remote Cyber Defense Analyst jobs?
Cities with the most Remote Cyber Defense Analyst job openings:
What are the most commonly searched types of Cyber Defense Analyst jobs?
The most popular types of Cyber Defense Analyst jobs are:
What states have the most Remote Cyber Defense Analyst jobs?
States with the most job openings for Remote Cyber Defense Analyst jobs include:
What job categories do people searching Remote Cyber Defense Analyst jobs look for?
The top searched job categories for Remote Cyber Defense Analyst jobs are:
- Work From Home Cyber Threat Intelligence Analyst Amazon
- Lookingglass
- Threat Intelligence Response Analyst
- Cyber Threat Intelligence Analyst Amazon
- Senior Cyber Security Data Analyst
- Cyber Threat Intelligence Engineer
- Threat And Vulnerability Analyst
- Cyber Threat Intelligence
- Junior Cyber Threat Analyst
- Cyber Analyst Salary

Deloitte rating
8.2
Based on 92 frontline employees who took The Breakroom Quiz
44th of 150 rated financial services
Job description
Deloitte's Cyber Defense and Resilience offering is seeking a SIEM Engineer to support security monitoring, detection engineering, and incident analysis across complex enterprise environments. This role will focus on building and optimizing SIEM content, improving alert fidelity, and helping clients strengthen cyber defense capabilities. The ideal candidate will bring experience with at least one of the following technology areas: Splunk, Palo Alto Networks, or CrowdStrike. This is a remote role with opportunities to work across distributed teams in a fast-paced cybersecurity environment.
Work you'll do
As a SIEM Engineer on the Cyber Defense and Resilience team, you will be responsible for...
- Configure, maintain, and optimize SIEM content including correlation rules, alerts, dashboards, and reports
- Analyze security events and log data to identify suspicious activity, support investigations, and improve detection coverage
- Integrate and normalize log sources from endpoint, network, cloud, identity, and security platforms
- Partners with cybersecurity teams to support use case development, threat detection, incident triage, and response activities
- Document detection logic, operational procedures, and monitoring requirements to support consistent service delivery
A successful candidate would possess these skills:
- Ability to work independently and collaborate as part of a team
- Effective written and verbal communication skills
- Meticulous attention to detail and quality of work product
- Ability to build and sustain professional relationships
- Ability to lead projects or workstreams
- Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
- Strong interpersonal skills and professional demeanor
- Ability to meet deadlines
- Ability to provide clear guidance to others
Qualifications
Required:
- Bachelor's degree in computer science, Cybersecurity, Information Technology, Engineering, or a degree in related technical field
- 3+ years of experience in cybersecurity, security operations, or SIEM engineering
- 3+ years of experience with at least one of the following: Splunk, Palo Alto XSIAM, or Crowdstrike NG SIEM
- Security certification such as Splunk certification, Palo Alto Networks certification, or CrowdStrike certification is required
- 2+ years' experience in the following areas:
- creating, tuning, and maintaining correlation searches, alerts, dashboards, and reports in a Security Information and Event Management platform
- reviewing and analyzing logs from endpoint, network, cloud, identity, and application sources
- Active Secret clearance or higher
- Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future.
Preferred:
- 2+ years' experience:
- supporting enterprise monitoring in a Security Operations Center
- Experience onboarding and normalizing log sources in a Security Information and Event Management platform
- Experience mapping detections to MITRE ATT&CK techniques
- Experience with cloud security monitoring in Amazon Web Services, Microsoft Azure, or Google Cloud Platform
- Hands-on experience with scripting or query languages used for detection and log analysis
- Security certification such as CompTIA Security+, or GIAC certification
The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $119,000 to $218,300.
You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.
Deloitte's Cyber Defense and Resilience offering is seeking a SIEM Engineer to support security monitoring, detection engineering, and incident analysis across complex enterprise environments. This role will focus on building and optimizing SIEM content, improving alert fidelity, and helping clients strengthen cyber defense capabilities. The ideal candidate will bring experience with at least one of the following technology areas: Splunk, Palo Alto Networks, or CrowdStrike. This is a remote role with opportunities to work across distributed teams in a fast-paced cybersecurity environment.
Work you'll do
As a SIEM Engineer on the Cyber Defense and Resilience team, you will be responsible for...
- Configure, maintain, and optimize SIEM content including correlation rules, alerts, dashboards, and reports
- Analyze security events and log data to identify suspicious activity, support investigations, and improve detection coverage
- Integrate and normalize log sources from endpoint, network, cloud, identity, and security platforms
- Partners with cybersecurity teams to support use case development, threat detection, incident triage, and response activities
- Document detection logic, operational procedures, and monitoring requirements to support consistent service delivery
A successful candidate would possess these skills:
- Ability to work independently and collaborate as part of a team
- Effective written and verbal communication skills
- Meticulous attention to detail and quality of work product
- Ability to build and sustain professional relationships
- Ability to lead projects or workstreams
- Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
- Strong interpersonal skills and professional demeanor
- Ability to meet deadlines
- Ability to provide clear guidance to others
Qualifications
Required:
- Bachelor's degree in computer science, Cybersecurity, Information Technology, Engineering, or a degree in related technical field
- 3+ years of experience in cybersecurity, security operations, or SIEM engineering
- 3+ years of experience with at least one of the following: Splunk, Palo Alto XSIAM, or Crowdstrike NG SIEM
- Security certification such as Splunk certification, Palo Alto Networks certification, or CrowdStrike certification is required
- 2+ years' experience in the following areas:
- creating, tuning, and maintaining correlation searches, alerts, dashboards, and reports in a Security Information and Event Management platform
- reviewing and analyzing logs from endpoint, network, cloud, identity, and application sources
- Active Secret clearance or higher
- Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future.
Preferred:
- 2+ years' experience:
- supporting enterprise monitoring in a Security Operations Center
- Experience onboarding and normalizing log sources in a Security Information and Event Management platform
- Experience mapping detections to MITRE ATT&CK techniques
- Experience with cloud security monitoring in Amazon Web Services, Microsoft Azure, or Google Cloud Platform
- Hands-on experience with scripting or query languages used for detection and log analysis
- Security certification such as CompTIA Security+, or GIAC certification
The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $119,000 to $218,300.
You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.