1

Siem Detection Engineer Jobs in Virginia (NOW HIRING)

SIEM Engineer

Chantilly, VA · On-site

$120 - $155/hr

SIEM Engineer LOCATION Chantilly, VA 20151 CLEARANCE TS/SCI Full Poly (Please note this position ... Understanding of threat detection * Familiarity with security protocols * Ability to develop ...

New

SIEM Engineer LOCATION Reston, VA 20190 CLEARANCE TS/SCI Full Poly (Please note this position ... Understanding of threat detection * Familiarity with security protocols * Ability to develop ...

SIEM Engineer LOCATION Chantilly, VA 20151 CLEARANCE TS/SCI Full Poly (Please note this position ... Understanding of threat detection * Familiarity with security protocols * Ability to develop ...

SIEM Engineer LOCATION Tysons, VA 22182 CLEARANCE TS/SCI Full Poly (Please note this position ... Understanding of threat detection * Familiarity with security protocols * Ability to develop ...

SIEM Engineer

Reston, VA · On-site

$110 - $170/hr

SIEM Engineer LOCATION Reston, VA 20190 CLEARANCE TS/SCI Full Poly (Please note this position ... Understanding of threat detection * Familiarity with security protocols * Ability to develop ...

New

Senior Detection Engineer

Ashburn, VA · On-site

$106K - $146K/yr

... and our SIEM visibility. You will be expected to anticipate how an adversary thinks, build the ... Detection Engineering: Design, build, and optimize advanced security detections within the Splunk ...

Cymertek Corporation is seeking a skilled and proactive SIEM Engineer to join their cybersecurity ... detection, and effective incident response. Responsibilities : • Deploy and configure SIEM ...

Cymertek Corporation is seeking a skilled and proactive SIEM Engineer to join their cybersecurity ... detection, and effective incident response. Responsibilities : • Deploy and configure SIEM ...

next page

Showing results 1-20

Siem Detection Engineer information

What is a SIEM Detection Engineer?

A SIEM Detection Engineer is a cybersecurity professional responsible for designing, implementing, and maintaining Security Information and Event Management (SIEM) systems. They create and fine-tune detection rules to identify suspicious activities and potential threats within an organization's IT environment. Their role involves analyzing security logs, developing automated alerts, and collaborating with incident response teams to ensure rapid detection and response to security incidents. By continuously updating detection mechanisms, they help protect organizations from evolving cyber threats.

What are the key skills and qualifications needed to thrive as a SIEM Detection Engineer?

To thrive as a SIEM Detection Engineer, you need a strong background in cybersecurity, expertise in threat analysis, and experience with SIEM platforms, typically supported by a degree in computer science or related field and industry certifications like CISSP or GIAC. Mastery of tools such as Splunk, QRadar, or ArcSight, and scripting languages like Python or PowerShell, is commonly required. Analytical thinking, attention to detail, and effective communication are crucial soft skills for investigating incidents and collaborating with teams. These skills ensure proactive threat detection, rapid incident response, and the overall security of an organization's IT infrastructure.

What are some common challenges faced by SIEM Detection Engineers when tuning detection rules, and how can they address them?

SIEM Detection Engineers often face challenges such as minimizing false positives, adapting to evolving threats, and ensuring detection rules remain relevant as the organization's environment changes. To address these challenges, engineers regularly review and refine correlation rules based on incident feedback, collaborate closely with SOC analysts and threat intelligence teams, and stay updated on emerging attack techniques. Continuous testing and validation of rules, as well as leveraging automation where possible, are key practices to maintain effective and actionable alerts.

What is the difference between Siem Detection Engineer vs Security Analyst?

AspectSiem Detection EngineerSecurity Analyst
CertificationsCompTIA Security+, CEH, CISSP (preferred)CompTIA Security+, CEH, CISSP (preferred)
Work EnvironmentFocus on SIEM tools, log analysis, threat detectionBroader security monitoring, incident response, policy enforcement
Employer & Industry UsageIT security teams, cybersecurity firms, large enterprisesIT departments, security operations centers, government agencies

While both roles involve cybersecurity, a Siem Detection Engineer specializes in configuring and managing SIEM systems for threat detection, whereas a Security Analyst has a broader focus on monitoring security events, analyzing incidents, and implementing security policies. The roles often overlap but differ in scope and technical focus.

What job categories do people searching Siem Detection Engineer jobs in Virginia look for?

The top searched job categories for Siem Detection Engineer jobs in Virginia are:

What cities in Virginia are hiring for Siem Detection Engineer jobs?

Cities in Virginia with the most Siem Detection Engineer job openings:

Infographic showing various Siem Detection Engineer job openings in Virginia as of August 2026, with employment types broken down into 100% Full Time. Highlights an 100% In-person job distribution.

Full-time

Re-posted 25 days ago


Accenture Federal Services rating

8.7

Company rating: 8.7 out of 10

Based on 20 frontline employees who took The Breakroom Quiz

48th of 495 rated business services


Job description

Job Summary:
Accenture Federal Services is dedicated to strengthening the US federal government through technology and ingenuity. The Detection Engineer will work on the Cyber Incident Response Team (CIRT) to design, engineer, and implement security detection initiatives, developing detection logic and collaborating with teams to enhance security posture.
Responsibilities:
• Design, engineer, and implement security detection initiatives under the cybersecurity team lead.
• Develop new detection logic for SIEM (Microsoft Sentinel) and network security platforms (Cisco FirePower, IDS/IPS), incorporating AI-driven tooling where applicable.
• Write and optimize KQL queries for Sentinel to improve detection fidelity and reduce false positives.
• Tune detection sets to raise security-relevant events for triage and response teams.
• Maintain version control of detection logic using Git and GitHub workflows for collaborative development and auditability.
• Bridge the gap between network engineering and cybersecurity teams to advocate for secure network designs and maximize security device capabilities.
• Conduct technical briefings to enhance team awareness of network architecture and detection strategies.
• Collaborate with operations and management to recommend improvements to security posture and ensure compliance with industry and federal standards (e.g., NIST, CISA).
Qualifications:
Required:
• U.S. Citizenship required
• Bachelor’s degree in Cybersecurity, Computer Science, or related field (or equivalent experience)
• 6 + years experience in information security or equivalent combination of education and work experience
• 2+ years experience performing event and log analysis across enterprise security tools (AV, IDS/IPS, Firewalls, Active Directory, Web Proxies, DLP, SIEM)
• Hands-on experience with Microsoft Sentinel & KQL (minimum 1 year)
• Hands-on experience with Cisco FirePower and IDS/IPS configuration (minimum 1 year)
• Hands-on experience with SIEM platforms (Sentinel preferred)
• Detection engineering: designing and tuning signatures for IoCs and IoAs
• Packet and malware analysis using tools like Wireshark
• Git and GitHub for detection code version control and collaborative workflows
• Scripting and parsing (regex, PowerShell, Python, grep, sed, awk)
• TCP/IP, application layer protocols, and Windows/Linux internals
• MITRE ATT&CK framework for detection mapping
Preferred:
• Threat hunting and automation experience
• Familiarity with cloud security monitoring (Azure, AWS)
• Certifications such as GIAC GCIA, GCED, or Microsoft Security Operations Analyst Associate
Company:
Accenture Federal Services is a leading US federal services company and subsidiary of Accenture. Founded in 1989, the company is headquartered in Arlington, USA, with a team of 10001+ employees. The company is currently Late Stage.

What Accenture Federal Services employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom