1

Siem Detection Engineer Jobs in Arizona (NOW HIRING)

Cloud Engineer

Scottsdale, AZ · Hybrid

$140K - $160K/yr

Familiarity with SIEM detection engineering concepts and security logging pipelines. * Knowledge of security frameworks and models such as NIST CSF, CIS Controls, and MITRE ATT&CK * Relevant ...

Cloud Engineer

Scottsdale, AZ · On-site

$140K - $160K/yr

Familiarity with SIEM detection engineering concepts and security logging pipelines. * Knowledge of security frameworks and models such as NIST CSF, CIS Controls, and MITRE ATT&CK * Relevant ...

Cloud Engineer

Scottsdale, AZ · Hybrid

$140K - $160K/yr

Familiarity with SIEM detection engineering concepts and security logging pipelines. * Knowledge of security frameworks and models such as NIST CSF, CIS Controls, and MITRE ATT&CK * Relevant ...

Cloud Engineer

Scottsdale, AZ · On-site

$140K - $160K/yr

Familiarity with SIEM detection engineering concepts and security logging pipelines. * Knowledge of security frameworks and models such as NIST CSF, CIS Controls, and MITRE ATT&CK * Relevant ...

Optimize SIEM ingestion pipelines, cloud logging strategies, event normalization, telemetry ... Strong understanding of detection engineering, telemetry analysis, cloud logging architectures, and ...

Senior Security Engineer, IAM

Phoenix, AZ · On-site

$113K - $155K/yr

This engineer owns the architecture, strategy, and operational maturity of AI-enabled identity ... Lead integration of identity telemetry into the detection stack (SIEM/SOAR, UEBA) to detect ...

... engineering, security operations, threat detection, or platform implementation roles. Experience implementing and integrating enterprise security technologies. Familiarity with SIEM, SOAR, EDR ...

Integrate and optimize SIEM, SOAR, and NDR platforms to improve detection and response effectiveness. * Support secure cloud, DevSecOps, and CI/CD architectures and automation. * Engineer ...

Integrate and optimize SIEM, SOAR, and NDR platforms to improve detection and response effectiveness. * Support secure cloud, DevSecOps, and CI/CD architectures and automation. * Engineer ...

Integrate and optimize SIEM, SOAR, and NDR platforms to improve detection and response effectiveness. * Support secure cloud, DevSecOps, and CI/CD architectures and automation. * Engineer ...

... SIEM No 1 1 - 2 Years xms-USIT SOC No 1 1 - 2 Years xms-USIT Splunk No 1 1 - 2 Years Required ... Desired Qualifications: * 2 plus years' experience with Endpoint Detection and Response(EDR)product ...

Senior DevSecOps Engineer

Phoenix, AZ · On-site +1

$113K - $155K/yr

Improve security visibility through logging, monitoring, SIEM integrations, detection engineering, and operational security tooling. * Continuously assess and remediate cloud security risks ...

Senior DevSecOps Engineer

Phoenix, AZ · On-site

$113K - $155K/yr

Improve security visibility through logging, monitoring, SIEM integrations, detection engineering, and operational security tooling. * Continuously assess and remediate cloud security risks ...

next page

Showing results 1-20

Siem Detection Engineer information

What is a SIEM Detection Engineer?

A SIEM Detection Engineer is a cybersecurity professional responsible for designing, implementing, and maintaining Security Information and Event Management (SIEM) systems. They create and fine-tune detection rules to identify suspicious activities and potential threats within an organization's IT environment. Their role involves analyzing security logs, developing automated alerts, and collaborating with incident response teams to ensure rapid detection and response to security incidents. By continuously updating detection mechanisms, they help protect organizations from evolving cyber threats.

What are the key skills and qualifications needed to thrive as a SIEM Detection Engineer?

To thrive as a SIEM Detection Engineer, you need a strong background in cybersecurity, expertise in threat analysis, and experience with SIEM platforms, typically supported by a degree in computer science or related field and industry certifications like CISSP or GIAC. Mastery of tools such as Splunk, QRadar, or ArcSight, and scripting languages like Python or PowerShell, is commonly required. Analytical thinking, attention to detail, and effective communication are crucial soft skills for investigating incidents and collaborating with teams. These skills ensure proactive threat detection, rapid incident response, and the overall security of an organization's IT infrastructure.

What are some common challenges faced by SIEM Detection Engineers when tuning detection rules, and how can they address them?

SIEM Detection Engineers often face challenges such as minimizing false positives, adapting to evolving threats, and ensuring detection rules remain relevant as the organization's environment changes. To address these challenges, engineers regularly review and refine correlation rules based on incident feedback, collaborate closely with SOC analysts and threat intelligence teams, and stay updated on emerging attack techniques. Continuous testing and validation of rules, as well as leveraging automation where possible, are key practices to maintain effective and actionable alerts.

What is the difference between Siem Detection Engineer vs Security Analyst?

AspectSiem Detection EngineerSecurity Analyst
CertificationsCompTIA Security+, CEH, CISSP (preferred)CompTIA Security+, CEH, CISSP (preferred)
Work EnvironmentFocus on SIEM tools, log analysis, threat detectionBroader security monitoring, incident response, policy enforcement
Employer & Industry UsageIT security teams, cybersecurity firms, large enterprisesIT departments, security operations centers, government agencies

While both roles involve cybersecurity, a Siem Detection Engineer specializes in configuring and managing SIEM systems for threat detection, whereas a Security Analyst has a broader focus on monitoring security events, analyzing incidents, and implementing security policies. The roles often overlap but differ in scope and technical focus.

What job categories do people searching Siem Detection Engineer jobs in Arizona look for?

The top searched job categories for Siem Detection Engineer jobs in Arizona are:

What cities in Arizona are hiring for Siem Detection Engineer jobs?

Cities in Arizona with the most Siem Detection Engineer job openings:

Cloud Engineer

Osaic

Scottsdale, AZ • Hybrid

$140K - $160K/yr

Full-time

Medical, Dental, Vision, Retirement

Re-posted 15 days ago


Osaic rating

8.1

Company rating: 8.1 out of 10

Based on 12 frontline employees who took The Breakroom Quiz


Job description

Cloud Engineering Opportunity in Financial Services

Cloud Engineer

Location(s):

Atlanta: 2300 Windy Ridge Pkwy SE, Suite750, Atlanta, GA 30339

La Vista:12325 Port Grace Blvd, La Vista, NE 68128

Oakdale: 7755 3rd St. N, Oakdale, MN 55128

Scottsdale: 18700 N Hayden Rd, Suite 255, Scottsdale, AZ 85255

St. Petersburg: 877 Executive Center Dr. W, Suite 300, St. Petersburg, FL 33702

Osaic has returned to the office on a hybrid schedule requiring a minimum of 4 days weekly in the office. Applicants should be located at one of our hubs listed above and must be willing to work this schedule.

Role Type:        Full-time, Non-Exempt

Salary: $140,000 to $160,000 per year + annual performance-based bonus

Actual compensation offered will be determined individually, based on a number of job-related factors, including location, skills, licensure, experience, and education.

Our competitive compensation is just one component of Osaic’s total compensation package. Additional benefits include health, vision, dental insurance, 401k, paid time away, volunteer days and much more. To view more details of what you can look forward to, visit our careers page: Osaic Benefits.

Summary:

The Cloud Engineer is a highly experienced, hands‑on engineering role responsible for the stability, security, and continued evolution of the organization’s core cybersecurity platforms. This role provides technical ownership and day‑to‑day management of security systems including Tenable/Nessus, Varonis, the Microsoft security stack (Defender and Purview), Splunk, and Azure security services.

The position requires an engineering mindset, a strong focus on root‑cause analysis, and the ability to build durable, scalable solutions rather than short‑term fixes.  Cloud Engineer works as part of a small, highly skilled cybersecurity engineering team to onboard new tools, expand use cases within existing platforms, and ensure the environment remains stable, secure, and operationally effective through automation, documentation, and sound design.

Education Requirements:

Bachelor’s degree preferred, high school diploma (or equivalent) in combination with significant experience will be considered in lieu of degree. Minimum of high school diploma or equivalent is required.  Continuing education through certifications, vendor training, or professional development is expected

Responsibilities:

  • Serve as a subject matter expert for enterprise cybersecurity platforms including Tenable/Nessus, Varonis, Microsoft Defender, Microsoft Purview, Splunk, and Azure security services.
  • Design, implement, and maintain a stable, secure, and scalable security tooling environment across cloud and hybrid infrastructure.
  • Engineer and continuously improve vulnerability management capabilities, including scan coverage, asset classification, prioritization, workflows, and integrations.
  • Develop and expand data loss prevention and data protection use cases using Varonis and Microsoft Purview.
  • Increase security value by identifying and implementing new use cases from existing tools that were previously unused or underutilized.
  • Write and maintain automation and integration code (Python, PowerShell, Bash) to reduce manual effort and increase consistency.
  • Provide Tier3 operational support including troubleshooting platform issues and participating in incident investigations.
  • Perform root-cause analysis for platform and security issues and implement long-term corrective actions.
  • Create and maintain high-quality technical documentation including runbooks, operational procedures, and design documentation.
  • Collaborate closely with other teams on roadmap planning tool onboarding, and architectural decisions.
  • Mentor and provide technical guidance to less experienced engineers on the team.
  • All other duties as assigned.

Basic Requirements:

  • 6+ years of experience in cybersecurity engineering, security operations, or platform security roles.
  • Hands-on experience managing and engineering enterprise deployments of Varonis, Tenable/Nessus, Microsoft Defender and Purview, Splunk, and Azure Security Services.
  • Strong experience with vulnerability management and data loss prevention/data protection.
  • Solid working knowledge of windows and linux systems.
  • Proficiency in at least one scripting or programming language (python, powershell, bash)
  • Demonstrated ability to apply an engineering and root-cuase-oriented approach to security problems.
  • Experience operating security tooling in cloud and hybrid environments.

Preferred Requirements:

  • Experience with container security (AKS, ACA, on-prem Kubernetes)
  • Experience integrating security tools with ServiceNow
  • Familiarity with SIEM detection engineering concepts and security logging pipelines.
  • Knowledge of security frameworks and models such as NIST CSF, CIS Controls, and MITRE ATT&CK
  • Relevant certifications
Equal Opportunity Employer

Osaic is an equal opportunity employer. We celebrate diversity in our workplace and we hire the most qualified candidates without regard for age, ethnicity, gender, gender identity or expression, language differences, nationality or national origin, family or marital status, physical, mental, and developmental abilities (or the perception of a disability), genetic information, race, religion or belief, sexual orientation, skin color, social or economic class, education, work and behavioral styles, political affiliation, military service, caste, or any other characteristic protected by law.

Eligibility

Applicants for employment in the US must have valid work authorization that does not now and/or will not in the future require sponsorship of a visa for employment authorization in the US by Osaic.

Unqualified Applications

Osaic does not consider applications from candidates who do not meet the minimum qualifications stated in the job posting.

Recruiting Agencies

Osaic only accepts candidates from contracted recruiting firms and only for searches approved prior to submissions. Fees will not be paid for unsolicited submissions.


What Osaic employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Osaic logo

About Osaic

Sourced by ZipRecruiter

Industry

Finance and insurance

Company size

1,001 - 5,000 Employees

Headquarters location

Phoenix, AZ, US

Year founded

2016