1

Siem Detection Engineer Jobs in Florida (NOW HIRING)

Responsibilities : • Develop custom detection logic across SIEM, EDR, and other security tooling within a cutting-edge technology stack. • Leverage threat modeling, detection engineering ...

Threat Detection Engineer

Sarasota, FL · On-site

$120 - $180/hr

... and skilled Threat Detection Engineer to join our growing Security Operations team. In this ... Security Information and Event Management (SIEM) systems * Network security devices (firewalls ...

About the Role As a Forward Deployed Data Engineer -- SIEM/SOAR, you build the content that powers TENEX's MDR delivery. From detection rules and log parsers to SOAR playbooks, dashboards, and custom ...

SIEM/SOAR Security Engineer Visa: USC, GC, GC-EAD, H4-EAD Interview: Video Mode: Onsite Work ... Ability to conduct fraud analysis and threat detection . Generate different types of reports using ...

Cloud Engineer

Saint Petersburg, FL · Hybrid

$140K - $160K/yr

Familiarity with SIEM detection engineering concepts and security logging pipelines. * Knowledge of security frameworks and models such as NIST CSF, CIS Controls, and MITRE ATT&CK * Relevant ...

Cloud Engineer

Saint Petersburg, FL · On-site

$140K - $160K/yr

Familiarity with SIEM detection engineering concepts and security logging pipelines. * Knowledge of security frameworks and models such as NIST CSF, CIS Controls, and MITRE ATT&CK * Relevant ...

Engineer

Tampa, FL · On-site

$90K - $100K/yr

... detection rules • Hands-on experience with Open Policy Agency (OPA) for policy enforcement • Proficiency in DevOps tools and practices • Experience with SIEM query languages such as Splunk SPL ...

SOC Engineer

Sarasota, FL · On-site

$90 - $140/hr

As a SOC Engineer, you'll operate across incident response, platform quality, and operational ... Ensure SIEM and detection quality. Apply deep platform knowledge to evaluate detection fidelity ...

Experience with Google Cloud SecOps tool stack and architecture, including Google Chronicle SIEM, Google SecOps SOAR, Google Siemplify SOAR, threat detection engineering, and security operations ...

Experience with Google Cloud SecOps tool stack and architecture, including Google Chronicle SIEM, Google SecOps SOAR, Google Siemplify SOAR, threat detection engineering, and security operations ...

next page

Showing results 1-20

Siem Detection Engineer information

What is a SIEM Detection Engineer?

A SIEM Detection Engineer is a cybersecurity professional responsible for designing, implementing, and maintaining Security Information and Event Management (SIEM) systems. They create and fine-tune detection rules to identify suspicious activities and potential threats within an organization's IT environment. Their role involves analyzing security logs, developing automated alerts, and collaborating with incident response teams to ensure rapid detection and response to security incidents. By continuously updating detection mechanisms, they help protect organizations from evolving cyber threats.

What are the key skills and qualifications needed to thrive as a SIEM Detection Engineer?

To thrive as a SIEM Detection Engineer, you need a strong background in cybersecurity, expertise in threat analysis, and experience with SIEM platforms, typically supported by a degree in computer science or related field and industry certifications like CISSP or GIAC. Mastery of tools such as Splunk, QRadar, or ArcSight, and scripting languages like Python or PowerShell, is commonly required. Analytical thinking, attention to detail, and effective communication are crucial soft skills for investigating incidents and collaborating with teams. These skills ensure proactive threat detection, rapid incident response, and the overall security of an organization's IT infrastructure.

What are some common challenges faced by SIEM Detection Engineers when tuning detection rules, and how can they address them?

SIEM Detection Engineers often face challenges such as minimizing false positives, adapting to evolving threats, and ensuring detection rules remain relevant as the organization's environment changes. To address these challenges, engineers regularly review and refine correlation rules based on incident feedback, collaborate closely with SOC analysts and threat intelligence teams, and stay updated on emerging attack techniques. Continuous testing and validation of rules, as well as leveraging automation where possible, are key practices to maintain effective and actionable alerts.

What is the difference between Siem Detection Engineer vs Security Analyst?

AspectSiem Detection EngineerSecurity Analyst
CertificationsCompTIA Security+, CEH, CISSP (preferred)CompTIA Security+, CEH, CISSP (preferred)
Work EnvironmentFocus on SIEM tools, log analysis, threat detectionBroader security monitoring, incident response, policy enforcement
Employer & Industry UsageIT security teams, cybersecurity firms, large enterprisesIT departments, security operations centers, government agencies

While both roles involve cybersecurity, a Siem Detection Engineer specializes in configuring and managing SIEM systems for threat detection, whereas a Security Analyst has a broader focus on monitoring security events, analyzing incidents, and implementing security policies. The roles often overlap but differ in scope and technical focus.

What job categories do people searching Siem Detection Engineer jobs in Florida look for?

The top searched job categories for Siem Detection Engineer jobs in Florida are:

What cities in Florida are hiring for Siem Detection Engineer jobs?

Cities in Florida with the most Siem Detection Engineer job openings:

Infographic showing various Siem Detection Engineer job openings in Florida as of August 2026, with employment types broken down into 90% Full Time, 5% Part Time, and 5% Contract. Highlights an 85% Physical, 5% Hybrid, and 10% Remote job distribution.

Detection Engineer

Ampcus Inc

Jacksonville, FL • On-site

Full-time

Re-posted 3 days ago


Key responsibilities

  • Develop custom detection logic across SIEM, EDR, and other security tools.

  • Work with cross-functional teams to create tailored security content.

  • Lead technical knowledge sharing sessions and stay current with detection engineering techniques.


Job description

Job Summary:
Ampcus Inc. is a certified global provider of a broad range of Technology and Business consulting services. They are seeking a highly motivated Detection Engineer to develop custom detection logic across various security tools and work closely with cross-functional teams to create tailored security content.
Responsibilities:
• Develop custom detection logic across SIEM, EDR, and other security tooling within a cutting-edge technology stack.
• Leverage threat modeling, detection engineering frameworks, and other creative methods to produce high-fidelity, investigation-worthy alerting.
• Work closely with cross-functional teams to create tailored, purpose-built security content.
• Lead technical knowledge sharing sessions to empower other teammates and stay on the forefront of content development & beyond.
• Possess a “detection-as-code” mindset to drive security content that is confidently deployed, continuously tested, and expertly tuned.
• Become immersed in our technology stack and logging to deliver solutions that push the boundaries of our security capabilities. Use this familiarity to present our security teams with the most relevant data to make quick and accurate decisions.
• Stay current with the latest detection engineering techniques, threat tactics, and industry knowledgebase.
• Shape the future of our data science and advanced analytic efforts.
Qualifications:
Required:
• Bachelor’s degree in computer science/information systems or the equivalent combination of education, training, or work experience.
• GSEC, GCIH, CISSP or other security or network certifications desired.
• Typically requires two or more years of experience with:
• Experience with cloud-native data platforms, event streaming and analytic engines.
• Knowledge of network design and data flow/pipelines.
• Strong understanding of security data lakes, SIEM, EDR, and interacting with SOAR.
• Expert proficiency with programming/scripting languages and query languages (Python, R, Powershell, SQL/KQL/LQL).
• Adaptability to new languages and technologies.
• Clean and thoughtful documentation to enable knowledge sharing and reference materials.
• Agile project development methodologies and incident case management experience.
• Familiarity with 'detection-as-code' and implementing CI/CD in detection engineering.
• Ability to identify untapped value, while also possessing a 'consumer-first' mindset to build outstanding security content.
• In-depth knowledge of security technologies (encryption, data protection, design, privilege access, etc.).
• Exploratory mindset, ownership, time management, presentation and organizational skills.
• Passion for securing the mission, continuous learning and a growth mindset.
Company:
Ampcus is a global business, technology consulting and an staff augmentation firm specializing in AI/ML,digital solutions, Cybersecurity & Risk management, Testing, Forensics & Fraud services and human capital management. Founded in 2004, the company is headquartered in Chantilly, USA, with a team of 1001-5000 employees. The company is currently Late Stage.

Ampcus logo

About Ampcus

Sourced by ZipRecruiter

Ampcus Inc. is a ISO 20000, ISO 27000, ISO 9001, CMMI DEV/3 SM and CMMI SVC/3 SM certified global provider of a broad range of Technology and Business consulting services. From strategy to execution, our disciplined yet flexible approach starts and ends with our clients. By listening hard and working harder, client goals become our goals. Their success is our satisfaction. It’s why our clients sleep well at night. We believe that the success of an engagement is determined by strong project management, as well as clear communication and mutual commitment working collaboratively. Our methodology begins with listening to the customer about their needs, then working with their team to gain a clear understanding of the requirements, while providing knowledge transfer of best practices for the organization.

Industry

It services

Company size

1,001 - 5,000 Employees

Headquarters location

Chantilly, VA, US

Year founded

2004