1

Siem Detection Engineer Jobs in Alabama (NOW HIRING)

Senior System Engineer

Huntsville, AL · On-site

$103K - $140.90K/yr

Familiarity with SIEM tools (e.g., Splunk, QRadar, Elastic). * Understanding of malware analysis ... IP Networking oIntrusion Detection * Incident Response oIT System Administration * Federal Law ...

Desired Skills: * Experience with DoW cybersecurity tools (e.g., ACAS, HBSS, SIEM platforms ... Familiarity with network protocols, firewalls, intrusion detection/prevention systems, and endpoint ...

Threat Detection, Incident Response & Vulnerability Management. * Support or lead security incident ... Experience working with or managing third party SOC, SIEM, and security vendors * Background in ...

Familiarity with centralized logging/SIEM platforms, such as Splunk or equivalent cloud-native ... Experience with Splunk SPL or other query languages used for log analysis and detection engineering.

Cyber Security Analyst

Huntsville, AL · On-site

$115K - $135K/yr

Familiarity with centralized logging/SIEM platforms, such as Splunk or equivalent cloud-native ... Experience with Splunk SPL or other query languages used for log analysis and detection engineering.

Familiarity with centralized logging/SIEM platforms, such as Splunk or equivalent cloud-native ... Experience with Splunk SPL or other query languages used for log analysis and detection engineering.

Senior Cyber Security Analyst

Huntsville, AL · Hybrid

$98.50K - $127.10K/yr

Security monitoring & detection: Design, tuning, maintain IDS/IPS, SIEM, EDR, and log collection ... Work with Enterprise IT, DevOps, HR, legal, and business units to integrate security into product ...

Senior Cyber Security Analyst

Huntsville, AL · On-site

$98.50K - $127.10K/yr

Security monitoring & detection: Design, tuning, maintain IDS/IPS, SIEM, EDR, and log collection ... Work with Enterprise IT, DevOps, HR, legal, and business units to integrate security into product ...

Desired Skills: * Experience with DoW cybersecurity tools (e.g., ACAS, HBSS, SIEM platforms ... Familiarity with network protocols, firewalls, intrusion detection/prevention systems, and endpoint ...

next page

Showing results 1-20

People also search for

Siem Detection Engineer information

What are the key skills and qualifications needed to thrive as a SIEM Detection Engineer, and why are they important?

To thrive as a SIEM Detection Engineer, you need a strong background in cybersecurity, expertise in threat analysis, and experience with SIEM platforms, typically supported by a degree in computer science or related field and industry certifications like CISSP or GIAC. Mastery of tools such as Splunk, QRadar, or ArcSight, and scripting languages like Python or PowerShell, is commonly required. Analytical thinking, attention to detail, and effective communication are crucial soft skills for investigating incidents and collaborating with teams. These skills ensure proactive threat detection, rapid incident response, and the overall security of an organization's IT infrastructure.

What are some common challenges faced by SIEM Detection Engineers when tuning detection rules, and how can they address them?

SIEM Detection Engineers often face challenges such as minimizing false positives, adapting to evolving threats, and ensuring detection rules remain relevant as the organization's environment changes. To address these challenges, engineers regularly review and refine correlation rules based on incident feedback, collaborate closely with SOC analysts and threat intelligence teams, and stay updated on emerging attack techniques. Continuous testing and validation of rules, as well as leveraging automation where possible, are key practices to maintain effective and actionable alerts.

What is a SIEM Detection Engineer?

A SIEM Detection Engineer is a cybersecurity professional responsible for designing, implementing, and maintaining Security Information and Event Management (SIEM) systems. They create and fine-tune detection rules to identify suspicious activities and potential threats within an organization's IT environment. Their role involves analyzing security logs, developing automated alerts, and collaborating with incident response teams to ensure rapid detection and response to security incidents. By continuously updating detection mechanisms, they help protect organizations from evolving cyber threats.

What is the difference between Siem Detection Engineer vs Security Analyst?

AspectSiem Detection EngineerSecurity Analyst
CertificationsCompTIA Security+, CEH, CISSP (preferred)CompTIA Security+, CEH, CISSP (preferred)
Work EnvironmentFocus on SIEM tools, log analysis, threat detectionBroader security monitoring, incident response, policy enforcement
Employer & Industry UsageIT security teams, cybersecurity firms, large enterprisesIT departments, security operations centers, government agencies

While both roles involve cybersecurity, a Siem Detection Engineer specializes in configuring and managing SIEM systems for threat detection, whereas a Security Analyst has a broader focus on monitoring security events, analyzing incidents, and implementing security policies. The roles often overlap but differ in scope and technical focus.

What job categories do people searching Siem Detection Engineer jobs in Alabama look for? The top searched job categories for Siem Detection Engineer jobs in Alabama are:
Senior System Engineer

Senior System Engineer

H2L Solutions Inc

Huntsville, AL • On-site

$103K - $140.90K/yr

Full-time

Medical, Dental, Vision, Life, Retirement

Posted 16 days ago


Job description

Job Summary:

The Senior System Engineer shall have the knowledge and abilities outlined in the experience listed below. The Senior System Engineer shall have at least 7+ years' experience related to being a system engineer and experience in the categories listed below, although it isn’t required to have 7+ years of experience in each of the categories. The Senior System Engineer shall have the ability to advise Government personnel on streamlined processes and techniques for conducting the items listed under the engineering task descriptions. This individual shall act as a subject matter expert (SME).

Supervisory Responsibilities:
  • None.
  • Duties/Responsibilities:
  • Develop and update procedures for IT tasks
  • Assist with architecture and implementation of cloud services and infrastructure to support changing mission requirements
  • Perform IT System Administration
  • Manage distributed deployment architecture, index clusters, search head clusters for Splunk
  • Manage Sharepoint site
  • Manage and develop custom source types and dashboards for Splunk
  • Administer Linux environments to include Ubuntu
  • Administer Active Directory and Domain Name System (DNS)
  • Administer commercial and open source applications such as the MISP and Atlassian products
  • Manage routed network architecture, firewalls and Virtual Private Network (VPNs)
  • Develop custom dashboards in Splunk
  • Maintain computer system hardware including servers, desktops, laptops, routers, switches, and firewalls
  • Other adhoc duties as required
  • Preferred Qualifications:
  • Experience with threat intelligence platforms (e.g., MISP, Anomali, ThreatConnect).
  • Familiarity with SIEM tools (e.g., Splunk, QRadar, Elastic).
  • Understanding of malware analysis, reverse engineering, or memory forensics.
  • Exposure to MITRE ATT&CK framework and threat modeling methodologies.
  • Experience in preparing tactical, operational, and strategic threat assessments.
  • Strong writing and briefing skills for both technical and executive audiences.
  • Ability to correlate data from multiple intelligence sources and identify actionable insights.
  • Experience (Required):
  • Experience with Windows server & desktop
  • Experience with VMWare Elastic Sky X Integrated (ESXi)
  • Preferred experience in Python
  • Preferred experience with the development and update of procedures for IT tasks
  • Experience with configuration and administration of cloud services and infrastructure
  • Preferred experience with Splunk and MISP
  • Preferred experience in managing distributed deployment architecture, index clusters, and search head clusters for Splunk
  • Preferred ability to manage and develop custom sourcetypes and dashboards for Splunk
  • Administration of Linux platforms
  • Administration of Active Directory and DNS
  • Ability to manage routed network architecture, firewalls, switches, and VPNs
  • Experience in the cyber security and Network Operations field
  • Strong technical and consulting skills in one or more of the following specialties: oCyber Intelligence Analysis
  • IP Networking oIntrusion Detection
  • Incident Response oIT System Administration
  • Federal Law Enforcement, Military, or Intelligence disciplines oSecurity Information Management
  • Penetration Testing oComputer Forensics
  • Familiarity of tools used in incident detection and handling
  • Understanding of network protocols, network devices, computer security devices, or system administration in support of network and network security operations
  • Experience working in teams and possess strong written and verbal communication skills
  • Physical Requirements:

    This position primarily involves prolonged periods of sitting and extensive use of a computer. The candidate must be able to:

  • Remain seated and work at a computer for extended durations.
  • Use a keyboard, mouse, and monitor effectively for long periods.
  • Communicate clearly via video conferencing, phone, and email.
  • Work Environment/ Location:

    The customer site will serve as the primary work location

    Travel Required:

    This position does not require regular travel. However, occasional travel may be requested to support company events, team meetings, or customer-related activities as needed. Any such trip will be communicated in advance and coordinated accordingly.

    Additional Eligibility Requirements:

    At H2L Solutions, Inc., we seek team members who exemplify our core values in both their work and conduct. In addition to meeting the technical qualifications of the position, all candidates must demonstrate the following:

  • Commitment to Service: A strong dedication to supporting clients, teammates, and missioncritical objectives, especially in highstakes or fastpaced government environments.
  • Positively Overcomes Challenges: Ability to adapt and remain solutionfocused when encountering obstacles, uncertainty, or evolving project requirements.
  • Winning and Competitive Spirit: A drive to exceed expectations, deliver exceptional results, and contribute to the continued success and reputation of H2L in the defense and cybersecurity sectors.
  • Efficiency and Productivity: Proven ability to manage time effectively, prioritize tasks, and consistently produce highquality work with attention to detail.
  • Professionalism in All Aspects: Maintains the highest standards of ethics, accountability, and respectful communication when interacting with clients, colleagues, and stakeholders.
  • Employees who align with these values will thrive in our mission-driven, team-oriented environment and contribute meaningfully to the success of our customers and our company.

    Work Authorization / Security Clearance Requirements:
  • TS clearance with SCI eligibility
  • U.S. Citizenship is required for all applicants in accordance with federal contract requirements.
  • All candidates must be able to successfully pass a background check in accordance with government and company standards.
  • Additional Information:

    H2L Solutions, Inc. (H2L) is a leading cybersecurity and IT solutions provider dedicated to delivering cutting-edge security, compliance, and technology services to government and commercial clients. Headquartered in Huntsville, Alabama, H2L specializes in cybersecurity compliance, risk management, and mission-critical IT solutions, helping organizations navigate complex regulatory environments and safeguard their digital assets. Our team of experts is committed to innovation, integrity, and excellence, ensuring our clients meet their security and operational goals. At H2L, we foster a collaborative and dynamic work environment where professionals can grow, contribute, and make a meaningful impact.

    Compensation and Benefits:

    Salary will be determined based on experience, qualifications, and contract-specific guidelines. A competitive compensation package will be discussed during the interview process.

    H2L offers a competitive benefits package that supports the well-being, growth, and success of our employees. Benefits include, but are not limited to:

  • Health and Medical Insurance
  • Dental and Vision Insurance
  • 401(k) Retirement Plan
  • CompanyPaid Life Insurance
  • ShortTerm and LongTerm Disability Coverage
  • Supplemental Insurance Options
  • Professional Development Opportunities to include licenses, training, and certifications
  • Education Reimbursement
  • Employee Referral Program
  • And more!
  • We are committed to investing in our team by providing resources that support both personal and professional growth. Specific benefit details will be provided during the hiring process.

    Affirmative Action / EEO Statement:

    H2L Solutions, Inc. (H2L) is an Equal Opportunity Employer and federal contractor. We comply with all applicable federal, state, and local laws regarding nondiscrimination and affirmative action. We do not discriminate based on race, color, religion, sex (including pregnancy, sexual orientation, and gender identity), national origin, age, disability, genetic information, veteran status, or any other legally protected status under applicable law.

    As a federal contractor, H2L is committed to affirmative action and complies with the regulations set forth by the Office of Federal Contract Compliance Programs (OFCCP), including Executive Order 11246, Section 503 of the Rehabilitation Act, and the Vietnam Era Veterans’ Readjustment Assistance Act (VEVRAA). We encourage applications from women, minorities, individuals with disabilities, and protected veterans.

    If you need assistance or accommodation during the hiring process, please contact the Human Resources Department by emailing human.resources@h2lsolutions.com.

    How to Apply/Submission Instructions:
  • Apply via H2L Solutions, Inc. Careers Portal: h2lsolutions.com/careers
  • NOTE: Only candidates selected for interviews will be contacted. Applicants without the Education and Experience Requirements will not be considered.