Develop and enhance SIEM content for Cybersecurity teams, including correlations, enrichments ... engineering services, operations services, sustainment services and managed security services to ...
Develop and enhance SIEM content for Cybersecurity teams, including correlations, enrichments ... engineering services, operations services, sustainment services and managed security services to ...
Cybersecurity Engineer [JOB ID 20260804]
Blacklick, OH · On-site
$70K - $130K/yr
Develop and enhance SIEM content for Cybersecurity teams, including correlations, enrichments ... engineering services, operations services, sustainment services and managed security services to ...
Quick apply
Cybersecurity Engineer [JOB ID 20260804]
Blacklick, OH · On-site
$70K - $130K/yr
Develop and enhance SIEM content for Cybersecurity teams, including correlations, enrichments ... engineering services, operations services, sustainment services and managed security services to ...
Cybersecurity Engineer [JOB ID 20260804]
Washington, DC · On-site
$70K - $130K/yr
Develop and enhance SIEM content for Cybersecurity teams, including correlations, enrichments ... engineering services, operations services, sustainment services and managed security services to ...
Quick apply
Cybersecurity Engineer [JOB ID 20260804]
Washington, DC · On-site
$70K - $130K/yr
Develop and enhance SIEM content for Cybersecurity teams, including correlations, enrichments ... engineering services, operations services, sustainment services and managed security services to ...
Cybersecurity Engineer [JOB ID 20260804]
Blacklick, OH · On-site
$70K - $130K/yr
Develop and enhance SIEM content for Cybersecurity teams, including correlations, enrichments ... engineering services, operations services, sustainment services and managed security services to ...
Cybersecurity Engineer [JOB ID 20260804]
Blacklick, OH · On-site
$70K - $130K/yr
Develop and enhance SIEM content for Cybersecurity teams, including correlations, enrichments ... engineering services, operations services, sustainment services and managed security services to ...
Develop and enhance SIEM content for Cybersecurity teams, including correlations, enrichments ... engineering services, operations services, sustainment services and managed security services to ...
Develop and enhance SIEM content for Cybersecurity teams, including correlations, enrichments ... engineering services, operations services, sustainment services and managed security services to ...
Cybersecurity Engineer [JOB ID 20260804]
Richmond, VA · On-site
$70K - $130K/yr
Develop and enhance SIEM content for Cybersecurity teams, including correlations, enrichments ... engineering services, operations services, sustainment services and managed security services to ...
Cybersecurity Engineer [JOB ID 20260804]
Richmond, VA · On-site
$70K - $130K/yr
Develop and enhance SIEM content for Cybersecurity teams, including correlations, enrichments ... engineering services, operations services, sustainment services and managed security services to ...
Senior SOC Engineer
Salt Lake City, UT · On-site
$130K - $196K/yr
Medical
Dental
Vision
Life
Retirement
PTO
Build and tune SIEM content, alerting rules, and detection dashboards * Monitor EDR and network tools for anomalies and enforce security policy * Collaborate with engineering to harden configurations ...
Senior SOC Engineer
Salt Lake City, UT · On-site
$130K - $196K/yr
Medical
Dental
Vision
Life
Retirement
PTO
Build and tune SIEM content, alerting rules, and detection dashboards * Monitor EDR and network tools for anomalies and enforce security policy * Collaborate with engineering to harden configurations ...
Cybersecurity Engineer [JOB ID 20260804]
Washington, DC · On-site
$70K - $130K/yr
Develop and enhance SIEM content for Cybersecurity teams, including correlations, enrichments ... engineering services, operations services, sustainment services and managed security services to ...
Cybersecurity Engineer [JOB ID 20260804]
Washington, DC · On-site
$70K - $130K/yr
Develop and enhance SIEM content for Cybersecurity teams, including correlations, enrichments ... engineering services, operations services, sustainment services and managed security services to ...
Sr Security Analyst
Scott Air Force Base, IL · On-site
$92K - $121K/yr
Threat Detection Engineering (Analyst-led): Implement and improve log-based and endpoint-based ... Develop and tune SIEM content such as detection rules, machine learning rules, dashboards, and ...
Sr Security Analyst
Scott Air Force Base, IL · On-site
$92K - $121K/yr
Threat Detection Engineering (Analyst-led): Implement and improve log-based and endpoint-based ... Develop and tune SIEM content such as detection rules, machine learning rules, dashboards, and ...
SIEM Engineer with Security Clearance
Newington, VA · On-site
Medical
Dental
Vision
Retirement
PTO
Zachary Piper Solutions is seeking a SIEM Engineer to support a company focused on cybersecurity ... Develop and enhance SIEM use cases, detection content, correlation rules, and alerting logic
SIEM Engineer with Security Clearance
Newington, VA · On-site
Medical
Dental
Vision
Retirement
PTO
Zachary Piper Solutions is seeking a SIEM Engineer to support a company focused on cybersecurity ... Develop and enhance SIEM use cases, detection content, correlation rules, and alerting logic
SIEM Engineer
Washington, DC · Remote
$71 - $76/hr
Medical
Dental
Vision
Life
Retirement
Develop documentation for SIEM configurations, onboarding processes, and detection content ... Experience Requirements: * 5+ years in SIEM engineering, SOC operations, or cybersecurity ...
Quick apply
SIEM Engineer
Washington, DC · Remote
$71 - $76/hr
Medical
Dental
Vision
Life
Retirement
Develop documentation for SIEM configurations, onboarding processes, and detection content ... Experience Requirements: * 5+ years in SIEM engineering, SOC operations, or cybersecurity ...
Security Information Event Manager - Administrator
Waipahu, HI · On-site
$105 - $145/hr
At least 4+ years of system, network administration, or developer experience and 2+ years of Splunk ... Must have experience with SIEM Content Development * Demonstrated experience of strong analytical ...
Security Information Event Manager - Administrator
Waipahu, HI · On-site
$105 - $145/hr
At least 4+ years of system, network administration, or developer experience and 2+ years of Splunk ... Must have experience with SIEM Content Development * Demonstrated experience of strong analytical ...
... and optimize content for a complex and growing SIEM infrastructure, including use cases for ... Required : • A Bachelor's degree in Computer Engineering, Computer Science, IT Security, or a ...
... and optimize content for a complex and growing SIEM infrastructure, including use cases for ... Required : • A Bachelor's degree in Computer Engineering, Computer Science, IT Security, or a ...
Phoenix Cyber is looking for Cybersecurity Engineers to join our client delivery team. Requirements ... Develop and enhance SIEM content for Cybersecurity teams, including correlations, enrichments ...
Quick apply
Phoenix Cyber is looking for Cybersecurity Engineers to join our client delivery team. Requirements ... Develop and enhance SIEM content for Cybersecurity teams, including correlations, enrichments ...
... engineering, operational readiness, and SOC transition. Key Responsibilities: * Lead SIEM ... Develop detection content, correlation rules, dashboards, and security analytics. * Write complex ...
Quick apply
... engineering, operational readiness, and SOC transition. Key Responsibilities: * Lead SIEM ... Develop detection content, correlation rules, dashboards, and security analytics. * Write complex ...
Detection Engineering Lead
$104K - $138K/yr
Medical
Retirement
PTO
As the Detection Engineering Lead, you will serve as one of Dropzone AI's foremost experts in ... Design scoring rubrics on AI generated detection content for SIEM, EDR, NDR, cloud, identity, and ...
Detection Engineering Lead
$104K - $138K/yr
Medical
Retirement
PTO
As the Detection Engineering Lead, you will serve as one of Dropzone AI's foremost experts in ... Design scoring rubrics on AI generated detection content for SIEM, EDR, NDR, cloud, identity, and ...
... engineering, operational readiness, and SOC transition. Key Responsibilities: * Lead SIEM ... Develop detection content, correlation rules, dashboards, and security analytics. * Write complex ...
... engineering, operational readiness, and SOC transition. Key Responsibilities: * Lead SIEM ... Develop detection content, correlation rules, dashboards, and security analytics. * Write complex ...
... developer velocity. • Mature telemetry pipelines through improved schema design, normalization ... pipelines, SIEM content, and alerting workflows in cloud-native environments. • Practical ...
... developer velocity. • Mature telemetry pipelines through improved schema design, normalization ... pipelines, SIEM content, and alerting workflows in cloud-native environments. • Practical ...
Vice President, Detection Intelligence & Content Engineering
Iselin, NJ · Hybrid
$189K/yr
Retirement
Detection Intelligence & Content Engineering * Department: IT Security * Corporate Level: Vice ... Operate and maintain controls related to SIEM, DLP, Vulnerability Management, Cyber Threat ...
Vice President, Detection Intelligence & Content Engineering
Iselin, NJ · Hybrid
$189K/yr
Retirement
Detection Intelligence & Content Engineering * Department: IT Security * Corporate Level: Vice ... Operate and maintain controls related to SIEM, DLP, Vulnerability Management, Cyber Threat ...
Sr Security Analyst with Security Clearance
Scott Air Force Base, IL · On-site
$92K - $121K/yr
Threat Detection Engineering (Analyst-led): Implement and improve log-based and endpoint-based ... Develop and tune SIEM content such as detection rules, machine learning rules, dashboards, and ...
Sr Security Analyst with Security Clearance
Scott Air Force Base, IL · On-site
$92K - $121K/yr
Threat Detection Engineering (Analyst-led): Implement and improve log-based and endpoint-based ... Develop and tune SIEM content such as detection rules, machine learning rules, dashboards, and ...
SIEM Content Developer information
See salary details
$29.5K - $38.5K
2% of jobs
$38.5K - $47.6K
1% of jobs
$47.6K - $56.6K
1% of jobs
$56.6K - $65.7K
2% of jobs
$65.7K - $74.7K
2% of jobs
$74.7K - $83.8K
2% of jobs
$83.8K - $92.8K
1% of jobs
$92.8K - $101.9K
1% of jobs
$101.9K - $110.9K
1% of jobs
$110.9K - $120K
1% of jobs
$121K is the 25th percentile. Wages below this are outliers.
$120K - $129K
85% of jobs
$29.5K
$116.6K
$129K
How much do siem content developer jobs pay per year?
What is a SIEM Content Developer?
A SIEM Content Developer is responsible for designing, creating, and optimizing security information and event management (SIEM) content such as correlation rules, dashboards, alerts, and reports. Their role involves analyzing security events, identifying threats, and enhancing detection capabilities. They work closely with security analysts and engineers to fine-tune SIEM configurations, improve threat detection, and reduce false positives. This role requires expertise in log analysis, threat intelligence, and scripting to customize SIEM solutions for an organization's security needs.
What are the daily responsibilities of a SIEM Content Developer?
Siem Content Developers typically spend their days creating and refining detection rules, correlation searches, and security alerts within SIEM platforms to identify suspicious activities. They work closely with security analysts to understand emerging threats, tune existing content for accuracy, and research new attack techniques to ensure early detection. Regular responsibilities also include analyzing security logs, testing and documenting new rules, and collaborating with IT or incident response teams to translate business risk into technical controls. This collaborative and analytical environment helps foster ongoing professional development and deeper expertise in threat detection.
What are the key skills and qualifications needed to thrive as a SIEM Content Developer?
A successful Siem Content Developer possesses strong cybersecurity expertise, experience with SIEM platforms (such as Splunk, IBM QRadar, or ArcSight), and the ability to write detection rules and correlation logic. Familiarity with scripting languages, threat intelligence sources, and relevant certifications like CISSP or CompTIA Security+ are highly valuable. Excellent problem-solving, collaboration, and communication skills help developers work effectively with security teams and stakeholders. These competencies ensure the development of accurate, actionable detection content, keeping organizations protected from evolving cyber threats.
What cities are hiring for Siem Content Developer jobs?
Cities with the most Siem Content Developer job openings:
What are the most commonly searched types of Siem Content Developer jobs?
The most popular types of Siem Content Developer jobs are:

Job description
Requirements:
- Degree in a STEM related discipline and/or a minimum 5 years of experience
- Prior experience or support of Security Operations and Incident Response
- Excellent understanding of Cyber Security Operations and Incident Response processes
- IT certifications such as CySA, CEH, etc
- Security clearance required
Nice to have:
- Demonstrated proficiency in cyber security platforms: SOAR, SIEM, IDS/IPS, DLP, WAF, Endpoint Security
- Linux administration experience
- Cloud infrastructure experience (AWS, Google, or Azure)
Responsibilities:
- Provide technical expertise and real-life experience in creating innovative solutions within the cybersecurity space
- Candidate will develop, support, tune and deploy security solutions
- Creates WAF rules to mitigate threats and implement security best practices
- Develop and enhance SIEM content for Cybersecurity teams, including correlations, enrichments, dashboards, reports, and alerts that appropriately illustrate and characterize web application attacks and mitigation mechanisms
- Develop and implement automations in response to security incidents
- Ability to navigate and adapt to a fast-paced ever-changing environment with a team of like-minded, cross-functional individuals
Phoenix Cyber is a national provider of cybersecurity engineering services, operations services, sustainment services and managed security services to organizations determined to strengthen their security posture and enhance the processes and technology used by their security operations team.
Phoenix Cyber is an equal opportunity employer and complies with Executive Order 11246, Section 503 of the Rehabilitation Act of 1973, the Vietnam Era Veteran's Readjustment Assistance Act (VEVRAA), all amendments to these regulations, and applicable executive orders, federal, and state regulations. Applicants are considered without attention to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, and/or veteran status.
Phoenix Cyber participates in E-Verify to confirm the employment eligibility of all newly-hired employees. To learn more about E-Verify, including your rights and responsibilities, go to
About Phoenix Cyber
Sourced by ZipRecruiter
Industry
Network security
Company size
11 - 50 Employees
Headquarters location
Scottsdale, AZ, US
Year founded
2011