1

Sentinel Siem Jobs (NOW HIRING)

Configure and maintain SIEM platforms (Microsoft Sentinel), including data connector configuration, correlation rule development and tuning, and SOAR playbook development for automated response ...

Senior Security Engineer

New York, NY · Hybrid

$125K - $171K/yr

... Sentinel (SIEM) Microsoft Purview Azure & Entra ID AWS DevSecOps and cloud security tooling Preferred Qualifications Bachelor's degree in Information Security, Information Systems, or related field ...

... SIEM), with deep expertise in log ingestion, integration, data lifecycle management, and incident investigation. · Strong expertise in log normalization, parsing, and data quality management ...

SIEM Engineer II

Chicago, IL · On-site

$133K - $166K/yr

SIEM Fundamentals - Hands-on experience working with SIEM platforms such as Google SecOps (Chronicle), Splunk, Exabeam, or Microsoft Sentinel. * Cribl Exposure - Experience working with Cribl ...

SIEM Engineer II

Austin, TX · On-site

$133K - $166K/yr

SIEM Fundamentals - Hands-on experience working with SIEM platforms such as Google SecOps (Chronicle), Splunk, Exabeam, or Microsoft Sentinel. * Cribl Exposure - Experience working with Cribl ...

Microsoft Sentinel * Securonix * CrowdStrike NG SIEM * Palo Alto XSIAM * Maintain, manage, and troubleshoot log collection solutions running on Linux and Windows systems supporting data pipelines ...

next page

Showing results 1-20

Sentinel Siem information

See salary details

$46K

$86.4K

$133K

How much do sentinel siem jobs pay per year?

As of Jun 18, 2026, the average yearly pay for sentinel siem in the United States is $86,368.00, according to ZipRecruiter salary data. Most workers in this role earn between $65,000.00 and $94,500.00 per year, depending on experience, location, and employer.

What is a Sentinel SIEM?

Sentinel SIEM refers to Microsoft Sentinel, a cloud-native security information and event management (SIEM) solution. It helps organizations detect, investigate, and respond to security threats across their entire enterprise by collecting and analyzing data from various sources. Sentinel SIEM provides advanced threat detection, automated response, and comprehensive visibility into security events, making it easier for security teams to protect their environments. Its integration with Microsoft Azure and other platforms enables scalable and intelligent security operations.

What are some common challenges faced by professionals working with Microsoft Sentinel SIEM, and how can they be addressed?

Professionals working with Microsoft Sentinel SIEM often encounter challenges such as keeping up with evolving security threats, managing a high volume of alerts, and customizing detection rules to fit their organization's needs. Addressing these issues typically involves ongoing tuning of analytic rules, leveraging automation features like playbooks to reduce manual workload, and regularly collaborating with IT and security teams to ensure that the SIEM is aligned with current business risks. Continuous training and staying updated with Microsoft's documentation and community forums can also help professionals effectively manage and optimize Sentinel deployments.

What are the key skills and qualifications needed to thrive as a Sentinel SIEM Specialist, and why are they important?

To thrive as a Sentinel SIEM Specialist, you need a solid understanding of cybersecurity principles, threat analysis, and experience with security incident and event management, often supported by a degree in information security or related certifications like Microsoft Certified: Security Operations Analyst Associate. Proficiency with Microsoft Sentinel, Kusto Query Language (KQL), and familiarity with security orchestration and automation tools are typically required. Strong analytical thinking, attention to detail, and effective communication are essential soft skills for interpreting data and coordinating responses. These skills are crucial for quickly detecting, investigating, and mitigating security threats to protect organizational assets.

What is the difference between Sentinel Siem vs Splunk Security Analyst?

AspectSentinel SiemSplunk Security Analyst
CertificationsMicrosoft Certified: Security, Compliance, and Identity Fundamentals, Azure Security EngineerSplunk Certified User, Splunk Core Certified Power User
Work EnvironmentCloud-based SIEM platform, integrated with Azure servicesOn-premises or cloud, data analysis and security monitoring
Industry UsagePrimarily used in organizations leveraging Microsoft Azure and cloud securityUsed across various industries for security data analysis and monitoring

Sentinel Siem focuses on cloud-native security monitoring within Microsoft Azure environments, while Splunk Security Analyst specializes in analyzing security data across diverse platforms. Both roles require knowledge of security principles and data analysis, but Sentinel Siem emphasizes Azure integration, whereas Splunk offers broader data handling capabilities.

More about Sentinel Siem jobs
What cities are hiring for Sentinel Siem jobs? Cities with the most Sentinel Siem job openings:
What states have the most Sentinel Siem jobs? States with the most job openings for Sentinel Siem jobs include:
Infographic showing various Sentinel Siem job openings in the United States as of June 2026, with employment types broken down into 93% Full Time, 3% Part Time, and 4% Contract. Highlights an 79% Physical, 10% Hybrid, and 11% Remote job distribution, with an average salary of $86,368 per year, or $41.5 per hour.
Principal Consultant - SIEM | Remote, USA

Principal Consultant - SIEM | Remote, USA

Optiv Security, Inc.

Bozeman, MT • Remote

$134K - $184K/yr

Full-time

Posted 18 days ago


Job description

The Principal SIEM Consultant will be pivotal to problem definition, requirements discovery, and overall SIEM solution design, guiding teams through complex security analytics and operations engagements. This individual will drive the technical relationship with customers and partners by providing advanced SIEM architecture, implementation, integration, and operational leadership across modern platforms includingGoogle SecOps, Microsoft Sentinel, CrowdStrike NGSIEM, and Palo Alto XSIAM.

Acts as an industry leader and champion of technical excellence in Security Information and Event Management (SIEM), delivering exceptional services and support to strategic clients and setting the bar for others to aspire to.

How you'll make an impact

Work with customers to articulate business, security operations, and detection requirements and translate those needs into effective SIEM use cases, architectures, and operational models.

Architect and validate SIEM solutions to ensure the customer's risk reduction, visibility, and detection engineering objectives are met.

Lead SIEM platform design, deployment, migration, and optimization efforts across Google SecOps, Microsoft Sentinel, CrowdStrike NGSIEM, and Palo Alto XSIAM.

Assist with development of SIEM and SOC transformation engagement plans that enable customers to execute detection, response, and analytics strategies.

Rationalize SIEM, logging, and security analytics technologies against business requirements, risk posture, cost constraints, and operational maturity.

Serve as a recognized expert in SIEM architecture, log onboarding, detection engineering, UEBA, SOAR integration, and SOC operations.

Lead and mentor other consultants on complex SIEM programs, providing technical direction and quality oversight across engagements.

Able to present to large technical and executive audiences; speaks as an authority on SIEM strategy and security operations.

Confidently handles difficult technical and strategic questions, consistently gaining trust and support from client stakeholders.

Able to adapt and evolve SIEM delivery methodologies based on client maturity, platform capabilities, and operational constraints.

Maintains broad awareness of the cybersecurity, SOC, and security analytics technology landscape beyond SIEM alone.

Contributor to industry groups, thought leadership initiatives, whitepapers, or publications related to SIEM, SOC, or security operations.

What we're looking for

Bachelor's degree and approximately 10-15 years of related information security or technology consulting experience.

Approximately 8-10 years of hands-on security architecture experience with a strong focus on SIEM and security operations platforms.

Deep expertise in SIEM concepts including log collection and normalization, detection engineering, alerting strategy, content lifecycle management, SOC workflows, and integration with SOAR and EDR platforms.

Strong practical experience with one or more modern SIEM platforms such asGoogle SecOps, Microsoft Sentinel, CrowdStrike NGSIEM, and Palo Alto XSIAM.

Strong understanding of adjacent security domains including incident response, threat detection, vulnerability management, data classification, and security governance.

Understanding of the professional services business and the organizational impact of technical and delivery decisions.

Solid understanding of networking (TCP/IP, OSI model), operating systems (Windows, Linux/UNIX), cloud platforms, and modern security technologies (EDR, NDR, firewalls, IDS/IPS).

Familiarity with scripting and automation languages commonly used in SIEM environments (e.g., KQL, Python, PowerShell, YAML).

Strong understanding of regulatory and compliance requirements impacting security monitoring and log retention, including PCI DSS, GLBA, GDPR, and U.S. state privacy laws.

Proven experience integrating SIEM platforms into complex enterprise and cloud environments, including log pipelines, APIs, and security tooling ecosystems.

Willingness to travel to meet client needs.

Valid driver's license in the U.S. and a valid passport required.

The successful candidate must hold or be willing to pursue relevant certifications such as CISSP, CISM, CISA, or SIEMspecific platform certifications.

Strong interpersonal, leadership, and clientfacing skills.

Strong written and presentation skills with the ability to clearly communicate complex SIEM and SOC concepts to technical and executive audiences.

Possess a high standard of integrity and confidentiality.

  • #LI-GN1

Salary Range Description

$134,600.00 - $184,500.00 Annual

The Hiring Range provided for this role is informed by (but not limited to) various factors including responsibilities of the position, work experience, education/training, internal peer equity, geography, as well as other market influences when extending an offer. The disclosed range has not been adjusted for these factors. This role may also be eligible to participate in a variable incentive-based bonus plan. Optiv offers a comprehensive compensation and benefits package, of which salary is a component.

Job Application Window

This position accepts applicants for a minimum of 4 business days after the job posting date and will remain available until an applicant has been selected for the position.

What you can expect from Optiv

  • A company committed to our inclusive value through our Employee Resource Groups

  • Work/life balance

  • Professional training resources

  • Creative problem-solving and the ability to tackle unique, complex projects

  • Volunteer Opportunities. "Optiv Chips In" encourages employees to volunteer and engage with their teams and communities.

  • The ability and technology necessary to productively work remotely/from home (where applicable)

EEO Statement

Optiv is an equal opportunity employer. All qualified applicants for employment will be considered without regard to race, color, religion, sex, gender identity or expression, sexual orientation, pregnancy, age 40 and over, marital status, genetic information, national origin, status as an individual with a disability, military or veteran status, or any other basis protected by federal, state, or local law.

Optiv respects your privacy.By providing your information through this page or applying for a job at Optiv, you acknowledge that Optiv will collect, use, and process your information, which may include personal information and sensitive personal information, in connection with Optiv's selection and recruitment activities. For additional details on how Optiv uses and protects your personal information in the application process, click here to view ourApplicant Privacy Notice. If you sign up to receive notifications of job postings, you may unsubscribe at any time.