Build and tune detection rules in SIEM tools (Splunk, Elastic, ArcSight, Sentinel, etc.) mapped to ... Hands-on SIEM detection engineering - building and tuning rules, mapped to MITRE ATT&CK, beyond ...
Build and tune detection rules in SIEM tools (Splunk, Elastic, ArcSight, Sentinel, etc.) mapped to ... Hands-on SIEM detection engineering - building and tuning rules, mapped to MITRE ATT&CK, beyond ...
Senior Cybersecurity Engineer
$100K - $155K/yr
Build and tune detection rules in SIEM tools (Splunk, Elastic, ArcSight, Sentinel, etc.) mapped to ... Hands-on SIEM detection engineering -- building and tuning rules, mapped to MITRE ATT&CK, beyond ...
Quick apply
Senior Cybersecurity Engineer
$100K - $155K/yr
Build and tune detection rules in SIEM tools (Splunk, Elastic, ArcSight, Sentinel, etc.) mapped to ... Hands-on SIEM detection engineering -- building and tuning rules, mapped to MITRE ATT&CK, beyond ...
Senior Cybersecurity Engineer
Colorado Springs, CO · On-site
$100K - $155K/yr
Build and tune detection rules in SIEM tools (Splunk, Elastic, ArcSight, Sentinel, etc.) mapped to ... Hands-on SIEM detection engineering - building and tuning rules, mapped to MITRE ATT&CK, beyond ...
Senior Cybersecurity Engineer
Colorado Springs, CO · On-site
$100K - $155K/yr
Build and tune detection rules in SIEM tools (Splunk, Elastic, ArcSight, Sentinel, etc.) mapped to ... Hands-on SIEM detection engineering - building and tuning rules, mapped to MITRE ATT&CK, beyond ...
Senior Security Engineer - Detection and Response
$117K - $161K/yr
Klaviyo is looking for a Senior Security Engineer to add to our growing Detection and Response (D&R ... Experience with centralized logging, data lakes, and SIEM solutions * Familiarity with large-scale ...
Senior Security Engineer - Detection and Response
$117K - $161K/yr
Klaviyo is looking for a Senior Security Engineer to add to our growing Detection and Response (D&R ... Experience with centralized logging, data lakes, and SIEM solutions * Familiarity with large-scale ...
Strong technical foundation across modern cloud environments, endpoint security, identity systems, SIEM, EDR, and detection engineering practices, with the ability to provide technical leadership ...
Strong technical foundation across modern cloud environments, endpoint security, identity systems, SIEM, EDR, and detection engineering practices, with the ability to provide technical leadership ...
Strong technical foundation across modern cloud environments, endpoint security, identity systems, SIEM, EDR, and detection engineering practices, with the ability to provide technical leadership ...
Strong technical foundation across modern cloud environments, endpoint security, identity systems, SIEM, EDR, and detection engineering practices, with the ability to provide technical leadership ...
Senior Security Engineer, Detection & Response
Denver, CO · On-site
$117K - $161K/yr
Detection engineering * Build and tune detections across endpoint, identity, SaaS, and cloud ... Experience with a modern SIEM or detection pipeline (Panther, Elastic, Splunk, or similar). What ...
Quick apply
Senior Security Engineer, Detection & Response
Denver, CO · On-site
$117K - $161K/yr
Detection engineering * Build and tune detections across endpoint, identity, SaaS, and cloud ... Experience with a modern SIEM or detection pipeline (Panther, Elastic, Splunk, or similar). What ...
Senior Security Engineer, Detection & Response
Denver, CO · On-site
$117K - $161K/yr
Detection engineering * Build and tune detections across endpoint, identity, SaaS, and cloud ... Experience with a modern SIEM or detection pipeline (Panther, Elastic, Splunk, or similar). What ...
Senior Security Engineer, Detection & Response
Denver, CO · On-site
$117K - $161K/yr
Detection engineering * Build and tune detections across endpoint, identity, SaaS, and cloud ... Experience with a modern SIEM or detection pipeline (Panther, Elastic, Splunk, or similar). What ...
Senior Security Engineer - Detection and Response
Denver, CO · On-site
$142 - $212/hr
Klaviyo is looking for a Senior Security Engineer to add to our growing Detection and Response (D&R ... Experience with centralized logging, data lakes, and SIEM solutions * Familiarity with large-scale ...
Senior Security Engineer - Detection and Response
Denver, CO · On-site
$142 - $212/hr
Klaviyo is looking for a Senior Security Engineer to add to our growing Detection and Response (D&R ... Experience with centralized logging, data lakes, and SIEM solutions * Familiarity with large-scale ...
Senior Security Engineer - Detection and Response
Denver, CO · On-site
$141K - $212K/yr
Klaviyo is looking for a Senior Security Engineer to add to our growing Detection and Response (D&R ... Experience with centralized logging, data lakes, and SIEM solutions * Familiarity with large-scale ...
Senior Security Engineer - Detection and Response
Denver, CO · On-site
$141K - $212K/yr
Klaviyo is looking for a Senior Security Engineer to add to our growing Detection and Response (D&R ... Experience with centralized logging, data lakes, and SIEM solutions * Familiarity with large-scale ...
Experience with Google Cloud SecOps tool stack and architecture, including Google Chronicle SIEM, Google SecOps SOAR, Google Siemplify SOAR, threat detection engineering, and security operations ...
Experience with Google Cloud SecOps tool stack and architecture, including Google Chronicle SIEM, Google SecOps SOAR, Google Siemplify SOAR, threat detection engineering, and security operations ...
Experience with Google Cloud SecOps tool stack and architecture, including Google Chronicle SIEM, Google SecOps SOAR, Google Siemplify SOAR, threat detection engineering, and security operations ...
Experience with Google Cloud SecOps tool stack and architecture, including Google Chronicle SIEM, Google SecOps SOAR, Google Siemplify SOAR, threat detection engineering, and security operations ...
Detection and Response Engineering • Own the detection engineering lifecycle in the enterprise SIEM platform: develop, tune, and retire analytics rules; build and refine workbooks; curate ...
Detection and Response Engineering • Own the detection engineering lifecycle in the enterprise SIEM platform: develop, tune, and retire analytics rules; build and refine workbooks; curate ...
... detection engineering, or enterprise information technology security * Experience with Google Cloud's SecOps tool stack and architecture, specifically security information and event management (SIEM ...
... detection engineering, or enterprise information technology security * Experience with Google Cloud's SecOps tool stack and architecture, specifically security information and event management (SIEM ...
... detection engineering, or enterprise information technology security * Experience with Google Cloud's SecOps tool stack and architecture, specifically security information and event management (SIEM ...
... detection engineering, or enterprise information technology security * Experience with Google Cloud's SecOps tool stack and architecture, specifically security information and event management (SIEM ...
Senior Manager, Enterprise Security with Security Clearance
Denver, CO · On-site
$117K - $161K/yr
In this position, you will build, mentor, and lead a team of security engineers spanning enterprise ... SIEM/detection strategy, and cloud security posture management. Stay current with the evolving ...
Senior Manager, Enterprise Security with Security Clearance
Denver, CO · On-site
$117K - $161K/yr
In this position, you will build, mentor, and lead a team of security engineers spanning enterprise ... SIEM/detection strategy, and cloud security posture management. Stay current with the evolving ...
Sr. Cyber Security Engineer
Denver, CO · On-site
$120 - $160/hr
The ideal candidate will possess deep technical expertise in cloud security, SIEM/SOAR technologies, vulnerability management, incident response, detection engineering, and security automation, along ...
Sr. Cyber Security Engineer
Denver, CO · On-site
$120 - $160/hr
The ideal candidate will possess deep technical expertise in cloud security, SIEM/SOAR technologies, vulnerability management, incident response, detection engineering, and security automation, along ...
Senior Security Integration Engineer (Elastic Stack) with Security Clearance
Colorado Springs, CO · On-site
$110K - $152K/yr
... to-end SIEM integration. Key Responsibilities: • Lead customer-facing technical discussions ... detection engineering or threat hunting workflows in Elastic Security. • Have knowledge of ...
Senior Security Integration Engineer (Elastic Stack) with Security Clearance
Colorado Springs, CO · On-site
$110K - $152K/yr
... to-end SIEM integration. Key Responsibilities: • Lead customer-facing technical discussions ... detection engineering or threat hunting workflows in Elastic Security. • Have knowledge of ...
Senior Cyber Security Engineer
Lakewood, CO · On-site
$118K - $162K/yr
Build and tune SIEM ingests, use cases, and alerting to sharpen detection capabilities. Detection ... SIEM and detection engineering; automation/scripting; and assessment/compliance/audit support.
Senior Cyber Security Engineer
Lakewood, CO · On-site
$118K - $162K/yr
Build and tune SIEM ingests, use cases, and alerting to sharpen detection capabilities. Detection ... SIEM and detection engineering; automation/scripting; and assessment/compliance/audit support.
Senior Cyber Security Engineer
Lakewood, CO · On-site
$118K - $162K/yr
Build and tune SIEM ingests, use cases, and alerting to sharpen detection capabilities. Detection ... SIEM and detection engineering; automation/scripting; and assessment/compliance/audit support.
Senior Cyber Security Engineer
Lakewood, CO · On-site
$118K - $162K/yr
Build and tune SIEM ingests, use cases, and alerting to sharpen detection capabilities. Detection ... SIEM and detection engineering; automation/scripting; and assessment/compliance/audit support.
Siem Detection Engineer information
What is a SIEM Detection Engineer?
What are the key skills and qualifications needed to thrive as a SIEM Detection Engineer?
What are some common challenges faced by SIEM Detection Engineers when tuning detection rules, and how can they address them?
What is the difference between Siem Detection Engineer vs Security Analyst?
| Aspect | Siem Detection Engineer | Security Analyst |
|---|---|---|
| Certifications | CompTIA Security+, CEH, CISSP (preferred) | CompTIA Security+, CEH, CISSP (preferred) |
| Work Environment | Focus on SIEM tools, log analysis, threat detection | Broader security monitoring, incident response, policy enforcement |
| Employer & Industry Usage | IT security teams, cybersecurity firms, large enterprises | IT departments, security operations centers, government agencies |
While both roles involve cybersecurity, a Siem Detection Engineer specializes in configuring and managing SIEM systems for threat detection, whereas a Security Analyst has a broader focus on monitoring security events, analyzing incidents, and implementing security policies. The roles often overlap but differ in scope and technical focus.
What are popular job titles related to Siem Detection Engineer jobs in Colorado?
For Siem Detection Engineer jobs in Colorado, the most frequently searched job titles are:
What job categories do people searching Siem Detection Engineer jobs in Colorado look for?
The top searched job categories for Siem Detection Engineer jobs in Colorado are:
What cities in Colorado are hiring for Siem Detection Engineer jobs?
Cities in Colorado with the most Siem Detection Engineer job openings:

Full-time
Posted 4 days ago
Job description
Why This Role Matters
The Senior Cybersecurity Engineer at Bluestaq owns the defensive posture of software systems that underpin national security decisions - space domain awareness, satellite command and control, and the infrastructure behind them. This is not a scan-and-report seat. You close vulnerabilities, build detection logic that catches real threats, and lead incident response when things get loud. No playbook required. If you need to be told what to look for, this isn't the right level.
What You Own
- Own the full vulnerability lifecycle - scanning with vulnerability management tools, triage by mission risk, remediation tracking, and verified closure across the fleet.
- Build and tune detection rules in SIEM tools (Splunk, Elastic, ArcSight, Sentinel, etc.) mapped to MITRE ATT&CK tactics relevant to Bluestaq's threat model.
- Serve as an incident responder for security events - contain, help scope, and provide clear status to the IR lead/leadership.
- Deliver written post-mortems with root cause, timeline, and tracked action items following incident closure.
- Maintain endpoint antivirus coverage across the fleet - configure policies, ensure definition currency, and coordinate remediation of flagged systems.
- Apply DISA STIGs to operating systems (Linux, Windows, etc.); document deviations and manage compliance artifacts (POA&Ms) in compliance management platforms (eMASS, Xacta, or equivalent RMF tools).
- Assist in CI/CD pipeline security - provide guidance as far left as possible in the development cycle to ensure developers are generating clean, secure code and catching vulnerabilities before they reach production.
- Review threat intelligence and peer-organization incident disclosures; translate findings into deployed detection logic within a sprint cycle.
What You Bring
Must-Haves
- Production experience across the vulnerability lifecycle - scanning, risk-based triage, and driving findings to verified closure.
- Hands-on SIEM detection engineering - building and tuning rules, mapped to MITRE ATT&CK, beyond running queries.
- Real incident response reps - containment, scoping, and writing clear post-mortems with root cause and action items.
- Applied DISA STIG and NIST RMF - OS hardening (Linux, Windows), managing POA&Ms, and working in compliance platforms (eMASS, Xacta, or equivalent).
- Endpoint anti-malware / on-access scanning experience - deploying and maintaining coverage across a fleet.
- Linux and Windows systems Administration in production environments.
- Cloud experience - AWS, Google Cloud, Azure, or equivalent.
- Scripting and automation - Python, Bash, Go, or similar, plus config management / IaC (Ansible, Terraform, or equivalent).
- Threat-intel-to-detection -consuming external findings and translating them into deployed detection logic.
- Security-minded in Ci/CD and architecture - flagging design risk and steering developers toward secure practices.
- Investigative rigor - you dig deep, ask why, and don't settle for surface-level answers.
- Strong written and verbal communication - you can put technical findings in front of peers, leadership, and cross-functional teams.
- Ownership mentality - you follow through, document your work, and know when to persevere vs. ask for help.
Required Education & Experience
- High School Diploma/GED and 8+ years of relevant experience, OR
- Associate degree in a related field and 6+ years of relevant experience, OR
- Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or related field and 4+ years of relevant experience, OR
- Master's degree in a related field and 2+ years of relevant experience