2

Siem Engineer Remote Jobs in Florida (NOW HIRING)

Senior Platform Engineer

Tampa, FL ยท Remote

$98K - $135K/yr

This is a remote position with preference given to East Coast candidates. โ€ฏโ€ฏ Responsibilities ... Implement and manage IAM, firewalls, and SIEM solutions. * Integrate diverse and non-traditional ...

Senior Insider Threat Engineer

Miami, FL ยท On-site +1

$109K - $150K/yr

Become a part of our caring community (Remote role, though selected candidate is required to live ... Cross-Platform Correlation - Correlate Purview and Proofpoint ITM telemetry with SIEM, UEBA, and ...

New

Senior Insider Threat Engineer

Miami, FL ยท On-site +1

$109K - $150K/yr

Become a part of our caring community (Remote role, though selected candidate is required to live ... Cross-Platform Correlation - Correlate Purview and Proofpoint ITM telemetry with SIEM, UEBA, and ...

New

Senior Insider Threat Engineer

Tampa, FL ยท On-site +1

$108K - $148K/yr

Become a part of our caring community (Remote role, though selected candidate is required to live ... Cross-Platform Correlation - Correlate Purview and Proofpoint ITM telemetry with SIEM, UEBA, and ...

New

Senior Insider Threat Engineer

Tampa, FL ยท On-site +1

$108K - $148K/yr

Become a part of our caring community (Remote role, though selected candidate is required to live ... Cross-Platform Correlation - Correlate Purview and Proofpoint ITM telemetry with SIEM, UEBA, and ...

New

Senior Insider Threat Engineer

Miami, FL ยท On-site +1

$109K - $150K/yr

Become a part of our caring community (Remote role, though selected candidate is required to live ... Cross-Platform Correlation - Correlate Purview and Proofpoint ITM telemetry with SIEM, UEBA, and ...

New

Senior Insider Threat Engineer

Tampa, FL ยท On-site +1

$108K - $148K/yr

Become a part of our caring community (Remote role, though selected candidate is required to live ... Cross-Platform Correlation - Correlate Purview and Proofpoint ITM telemetry with SIEM, UEBA, and ...

New

MSP Sr. Engineer

Orlando, FL ยท Remote

$97K - $133K/yr

This is a remote position with no office requirement; however, the role includes periodic on-site ... Lead or support implementation of the MSP technology stack - EDR/MDR, SIEM, Zero Trust, Backup/DR ...

Senior Cloud Engineer

Tampa, FL ยท On-site +1

$70K - $144K/yr

Location Remote based role with preference in Hub Office City. About The Job You're Considering ... Experience integrating third-party SIEM, EDR, or MDM platforms with Microsoft solutions * Hands-on ...

Regional Sales Manager, Tampa (Enterprise)

Tampa, FL ยท On-site +1

$140K - $160K/yr

... engineer up to CxO * Forecasting predictably and hitting sales targets * We are a remote-first ... SIEM & Observability) & IT Personas (CISO/CIO's) * Experience working with at least one earlier ...

Regional Sales Manager, Miami (Enterprise)

Miami, FL ยท On-site +1

$140K - $160K/yr

... engineer up to CxO * Forecasting predictably and hitting sales targets * We are a remote-first ... SIEM & Observability) & IT Personas (CISO/CIO's) * Experience working with at least one earlier ...

Siem Engineer Remote information

What is a SIEM engineer?

A SIEM (Security Information and Event Management) Engineer is an IT security professional responsible for implementing, managing, and optimizing SIEM solutions to protect an organization's information systems. They collect, analyze, and monitor security data from various sources to detect suspicious activities, respond to incidents, and ensure compliance with security policies. Remote SIEM Engineers work from off-site locations, leveraging secure access and communication tools to maintain and troubleshoot SIEM platforms, analyze threat intelligence, and coordinate with security teams to enhance the organization's cybersecurity posture.

How much do SIEM engineers make?

SIEM engineers typically earn between $80,000 and $130,000 annually, depending on experience, certifications, and location. Senior roles or those with specialized skills in tools like Splunk or QRadar can earn higher salaries, especially with additional security certifications such as CISSP or CISA.

What are some common challenges faced by remote SIEM engineers, and how can they be addressed?

Remote SIEM Engineers often face challenges such as maintaining clear communication with security teams, managing alerts across multiple time zones, and ensuring secure access to sensitive systems. To address these, it's important to leverage collaboration tools, establish clear incident response protocols, and use secure VPNs or access controls. Regular virtual meetings and thorough documentation also help keep everyone aligned and ensure swift incident handling.

What are the key skills and qualifications needed to thrive as a SIEM engineer?

To thrive as a SIEM Engineer (Remote), you need strong expertise in cybersecurity principles, log analysis, and incident response, often supported by a degree in information security or related certifications like CompTIA Security+ or CISSP. Familiarity with SIEM platforms such as Splunk, IBM QRadar, or ArcSight, as well as scripting and automation tools, is essential. Excellent problem-solving, communication, and the ability to work independently are crucial soft skills for remote collaboration and timely threat detection. These skills ensure effective monitoring, quick response to security threats, and seamless teamwork in distributed environments.

What is the difference between Siem Engineer Remote vs Security Analyst Remote?

AspectSiem Engineer RemoteSecurity Analyst Remote
Required CredentialsCertifications like CISSP, CEH, or vendor-specific SIEM certificationsCertifications such as CompTIA Security+, CISSP, or GIAC certifications
Work EnvironmentFocus on configuring, managing, and optimizing SIEM tools remotelyMonitoring security alerts, analyzing threats, and incident response remotely
Employer & Industry UsageUsed in cybersecurity firms, large enterprises, and government agenciesCommon across various industries including finance, healthcare, and tech

Both roles involve cybersecurity but differ in focus: Siem Engineers primarily manage SIEM systems, while Security Analysts analyze security data and respond to threats. Both roles are often remote and require relevant certifications, making them closely related in the cybersecurity field.

What cities in Florida are hiring for Siem Engineer Remote jobs? Cities in Florida with the most Siem Engineer Remote job openings:

Security Operations Center Cloud Engineer

Lakeview Loan Servicing

Coral Gables, FL โ€ข On-site, Remote

$165/hr

Full-time

Re-posted 26 days ago


Job description

Overview

The IT Security Team is looking for a seasoned professional to support a passionate, innovative, and results driven team. The Senior Security Operations Center (SOC) Cloud Engineer is responsible for monitoring, detecting, and responding to threats in AWS and Azure environments. This role focuses on integrating cloud logs into the SIEM, developing threat detections, and supporting incident response. The ideal candidate has strong technical expertise in cloud security and works closely with SOC analysts to enhance visibility and response across cloud workloads.

This role can be remote anywhere in the country.ย  The salary range for this role is $165,000 to $175,000, plus an annual bonus. However Lakeview considers several factors when extending an offer, including but not limited to, the roles and associated responsibilities, a candidate's work experience, education/training, location and key skills.ย 


Responsibilities
  • Collect, monitor, and analyze log sources from AWS and Azure, including CloudTrail, GuardDuty, Security Hub, Azure Activity Logs, Defender for Cloud, and other relevant telemetry sources.
  • Ensure AWS and Azure log sources are properly ingested into the SIEM (e.g., Splunk) and normalized for effective detection, alerting, and investigation.
  • Design and implement cloud threat detections for activities such as unauthorized access, privilege escalation, lateral movement, and data exfiltration in cloud environments.
  • Collaborate with SOC analysts to triage and respond to security alerts and incidents related to AWS and Azure platforms.
  • Proactively hunt for threats in AWS and Azure environments using SIEM, native cloud tools, and EDR platforms.
  • Develop, document, and automate cloud incident response procedures using SOAR platforms such as Splunk SOAR.
  • Work with infrastructure and DevOps teams to improve visibility and security posture across AWS and Azure.
  • Stay up to date on new and evolving threats and vulnerabilities targeting cloud platforms and recommend appropriate mitigations.
  • Mentor and support junior analysts on cloud detection and response techniques.

Qualifications
  • 8+ years of related experience in IT and Cyber Security.
  • 3+ years of direct experience securing AWS and Azure cloud environments.
  • 5+ years of experience working in an operational security environment (e.g., SOC, NOC).
  • Bachelorโ€™s degree in Cybersecurity, Computer Science, or related field preferred.
  • One or more of the following certifications preferred: AWS Certified Security - Specialty, Azure Security Engineer Associate, GCIH, GCIA, GCFA.
  • Experience using SIEM platforms (preferably Splunk) for log ingestion, correlation, and threat detection in cloud environments.
  • Strong knowledge of AWS and Azure security services such as GuardDuty, Security Hub, IAM, VPC Flow Logs, Azure Activity Logs, Defender for Cloud, and Sentinel.
  • Familiarity with cloud IAM, network configurations, encryption, and resource monitoring in AWS and Azure.
  • Hands-on experience with endpoint protection platforms, IDS/IPS, and firewalls in hybrid and cloud networks.
  • Scripting skills (e.g., Python, PowerShell, Bash) for automating detections, investigations, or response actions.
  • Deep understanding of network protocols such as TCP/IP, HTTP/S, and DNS as they relate to cloud services.
  • Detail-oriented with strong analytical skills and the ability to troubleshoot complex security issues.
  • Experience with cloud forensic techniques and incident response is a strong plus.
  • Exposure to container security, Infrastructure-as-Code (IaC), and CI/CD security best practices in cloud environments is a plus.

Knowledge and Skills Required:

  • Strong problem-solving and analytical skills with attention to detail.
  • Ability to work independently and collaboratively in a fast-paced environment.
  • Self-starter with strong interpersonal, written and verbal communication skills and the ability to interact with technical and non-technical stakeholders.

Certifications

  • Splunk Enterprise Certified Admin, Splunk Enterprise Certified Architect OR Splunk Cloud Certified Admin, Splunk SOAR Certified Automation Developer preferred
Location & Compensation
  • The hourly rate for this role is $165-175K depending on the individualโ€™s experience
  • Role can be 100% fully remote depending on geographic location
Physical Demands and Work Environment

The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job.ย  Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

While performing the duties of this job, the employee is regularly required to sit and use hands to handle, touch or feel objects, tools, or controls.ย  The employee frequently is required to talk and hear.ย  The noise level in the work environment is usually moderate.ย  The employee is occasionally required to stand; walk; reach with hands and arms.ย  The employee is rarely required to stoop, kneel, crouch, or crawl.ย  The employee must regularly lift and/or move up to 10 pounds.ย  Specific vision abilities required by this job include close vision, color vision, and the ability to adjust focus.

EEOC

Lakeview is an Equal Employment Opportunity employer.ย  All aspects of consideration for employment and employment with the Company are governed on the basis of merit, competence and qualifications without regard to race, color, religion, sex, national origin, age, disability, veteran status, sexual orientation, or any other category protected by federal, state, or local law.

Qualifications:
  • 8+ years of related experience in IT and Cyber Security.
  • 3+ years of direct experience securing AWS and Azure cloud environments.
  • 5+ years of experience working in an operational security environment (e.g., SOC, NOC).
  • Bachelorโ€™s degree in Cybersecurity, Computer Science, or related field preferred.
  • One or more of the following certifications preferred: AWS Certified Security - Specialty, Azure Security Engineer Associate, GCIH, GCIA, GCFA.
  • Experience using SIEM platforms (preferably Splunk) for log ingestion, correlation, and threat detection in cloud environments.
  • Strong knowledge of AWS and Azure security services such as GuardDuty, Security Hub, IAM, VPC Flow Logs, Azure Activity Logs, Defender for Cloud, and Sentinel.
  • Familiarity with cloud IAM, network configurations, encryption, and resource monitoring in AWS and Azure.
  • Hands-on experience with endpoint protection platforms, IDS/IPS, and firewalls in hybrid and cloud networks.
  • Scripting skills (e.g., Python, PowerShell, Bash) for automating detections, investigations, or response actions.
  • Deep understanding of network protocols such as TCP/IP, HTTP/S, and DNS as they relate to cloud services.
  • Detail-oriented with strong analytical skills and the ability to troubleshoot complex security issues.
  • Experience with cloud forensic techniques and incident response is a strong plus.
  • Exposure to container security, Infrastructure-as-Code (IaC), and CI/CD security best practices in cloud environments is a plus.

Knowledge and Skills Required:

  • Strong problem-solving and analytical skills with attention to detail.
  • Ability to work independently and collaboratively in a fast-paced environment.
  • Self-starter with strong interpersonal, written and verbal communication skills and the ability to interact with technical and non-technical stakeholders.

Certifications

  • Splunk Enterprise Certified Admin, Splunk Enterprise Certified Architect OR Splunk Cloud Certified Admin, Splunk SOAR Certified Automation Developer preferred
Location & Compensation
  • The hourly rate for this role is $165-175K depending on the individualโ€™s experience
  • Role can be 100% fully remote depending on geographic location
Physical Demands and Work Environment

The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job.ย  Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

While performing the duties of this job, the employee is regularly required to sit and use hands to handle, touch or feel objects, tools, or controls.ย  The employee frequently is required to talk and hear.ย  The noise level in the work environment is usually moderate.ย  The employee is occasionally required to stand; walk; reach with hands and arms.ย  The employee is rarely required to stoop, kneel, crouch, or crawl.ย  The employee must regularly lift and/or move up to 10 pounds.ย  Specific vision abilities required by this job include close vision, color vision, and the ability to adjust focus.

EEOC

Lakeview is an Equal Employment Opportunity employer.ย  All aspects of consideration for employment and employment with the Company are governed on the basis of merit, competence and qualifications without regard to race, color, religion, sex, national origin, age, disability, veteran status, sexual orientation, or any other category protected by federal, state, or local law.

Education:UNAVAILABLEEmployment Type: FULL_TIME