2

Siem Engineer Remote Jobs in Raleigh, NC (NOW HIRING)

This role serves as a frontline defender, analyzing alerts from SIEM, EDR, and email security ... This role reports to the Director, Security Operations and is hybrid-remote based in our Raleigh ...

Siem Engineer Remote information

See Raleigh, NC salary details

$24

$52

$74

How much do siem engineer remote jobs pay per hour?

As of Jul 29, 2026, the average hourly pay for siem engineer remote in Raleigh, NC is $52.13, according to ZipRecruiter salary data. Most workers in this role earn between $42.07 and $60.53 per hour, depending on experience, location, and employer.

What is a SIEM Engineer and what do they do?

A SIEM (Security Information and Event Management) Engineer is an IT security professional responsible for implementing, managing, and optimizing SIEM solutions to protect an organization's information systems. They collect, analyze, and monitor security data from various sources to detect suspicious activities, respond to incidents, and ensure compliance with security policies. Remote SIEM Engineers work from off-site locations, leveraging secure access and communication tools to maintain and troubleshoot SIEM platforms, analyze threat intelligence, and coordinate with security teams to enhance the organization's cybersecurity posture.

What are some common challenges faced by remote SIEM Engineers, and how can they be addressed?

Remote SIEM Engineers often face challenges such as maintaining clear communication with security teams, managing alerts across multiple time zones, and ensuring secure access to sensitive systems. To address these, it's important to leverage collaboration tools, establish clear incident response protocols, and use secure VPNs or access controls. Regular virtual meetings and thorough documentation also help keep everyone aligned and ensure swift incident handling.

What are the key skills and qualifications needed to thrive as a SIEM Engineer (Remote), and why are they important?

To thrive as a SIEM Engineer (Remote), you need strong expertise in cybersecurity principles, log analysis, and incident response, often supported by a degree in information security or related certifications like CompTIA Security+ or CISSP. Familiarity with SIEM platforms such as Splunk, IBM QRadar, or ArcSight, as well as scripting and automation tools, is essential. Excellent problem-solving, communication, and the ability to work independently are crucial soft skills for remote collaboration and timely threat detection. These skills ensure effective monitoring, quick response to security threats, and seamless teamwork in distributed environments.

What is the difference between Siem Engineer Remote vs Security Analyst Remote?

AspectSiem Engineer RemoteSecurity Analyst Remote
Required CredentialsCertifications like CISSP, CEH, or vendor-specific SIEM certificationsCertifications such as CompTIA Security+, CISSP, or GIAC certifications
Work EnvironmentFocus on configuring, managing, and optimizing SIEM tools remotelyMonitoring security alerts, analyzing threats, and incident response remotely
Employer & Industry UsageUsed in cybersecurity firms, large enterprises, and government agenciesCommon across various industries including finance, healthcare, and tech

Both roles involve cybersecurity but differ in focus: Siem Engineers primarily manage SIEM systems, while Security Analysts analyze security data and respond to threats. Both roles are often remote and require relevant certifications, making them closely related in the cybersecurity field.

What cities near Raleigh, NC are hiring for Siem Engineer Remote jobs? Cities near Raleigh, NC with the most Siem Engineer Remote job openings:
Infographic showing various Siem Engineer Remote job openings in Raleigh, NC as of July 2026, with employment types broken down into 80% Full Time, and 20% Contract. Highlights an 100% Remote job distribution, with an average salary of $108,438 per year, or $52.1 per hour.

Principal Security Engineer - Splunk & SIEM Engineering - Remote

UnitedHealth Group

Raleigh, NC • On-site, Remote

$112K - $193K/yr

Full-time

Retirement

Posted 7 days ago


UnitedHealth Group rating

7.6

Company rating: 7.6 out of 10

Based on 146 frontline employees who took The Breakroom Quiz

189th of 890 rated healthcare providers


Job description

Optum is a global organization that delivers care, aided by technology to help millions of people live healthier lives. The work you do with our team will directly improve health outcomes by connecting people with the care, pharmacy benefits, data and resources they need to feel their best. Here, you will find a culture guided by inclusion, talented peers, comprehensive benefits and career development opportunities. Come make an impact on the communities we serve as you help us advance health optimization on a global scale. Join us to start Caring. Connecting. Growing together.
We are seeking a highly experienced Principal Security Engineer to lead Splunk engineering and onboarding efforts across acquired entities. This role will serve as the Splunk Subject Matter Expert (SME) and play a critical leadership role in integrating newly acquired environments into the enterprise security monitoring ecosystem.
The ideal candidate blends deep technical expertise in Splunk infrastructure with strong program leadership, ensuring scalable log ingestion, normalization, and operational excellence across diverse environments.
You'll enjoy the flexibility to work remotely * from anywhere within the U.S. as you take on some tough challenges. For all hires in the Minneapolis or Washington, D.C. area, you will be required to work in the office a minimum of four days per week.
Primary Responsibilities:
  • Splunk Engineering & SME Leadership
    • Serve as the primary Splunk SME, providing architecture guidance, troubleshooting support, and strategic direction
    • Design, build, and optimize enterprise-scale Splunk infrastructure (indexers, search heads, forwarders, clustering, and cloud/hybrid deployments)
    • Define standards, best practices, and governance for Splunk usage, data onboarding, and content development
    • Lead performance tuning, capacity planning, and cost optimization initiatives
  • Acquisition Integration & Log Onboarding
    • Lead onboarding of logs from newly acquired entities into Splunk, including:
      • Log source identification and prioritization
      • Data ingestion architecture design
      • Field extraction, parsing, and normalization
    • Partner with acquisition teams, IT, and security stakeholders to ensure timely and complete visibility
    • Develop repeatable onboarding playbooks and integration frameworks for rapid scaling
    • Ensure alignment with enterprise security use cases, compliance requirements, and detection strategies
  • Security Data Engineering & Operations
    • Implement and maintain secure, reliable log pipelines across cloud, on-prem, and SaaS environments
    • Ensure high availability and resilience of Splunk services
    • Oversee data quality, integrity, and retention policies
    • Support SOC operations by enabling efficient search, dashboards, alerts, and detection content
  • Collaboration & Leadership
    • Act as a technical leader and mentor to security engineers and analysts
    • Collaborate with cross-functional teams (Cloud, Infrastructure, DevOps, Security Operations)
    • Influence and drive adoption of standardized logging and monitoring practices
    • Communicate technical strategies and risks to senior leadership

You'll be rewarded and recognized for your performance in an environment that will challenge you and give you clear direction on what it takes to succeed in your role as well as provide development for other roles you may be interested in.
Required Qualifications:
  • 4+ years of experience in security engineering, SIEM, or data platform engineering
  • 3+ years of experience with Splunk Enterprise and/or Splunk Cloud
  • Experience managing and scaling Splunk infrastructure
  • Solid experience onboarding logs across:
  • Cloud platforms (AWS, Azure, GCP)
  • Network/security devices
  • Endpoints, SaaS, and custom applications
  • Data ingestion (UF/HF, APIs, syslog, cloud-native integrations)
  • Parsing, CIM normalization, and knowledge objects
  • Proven solid scripting skills (Python, Bash, or similar)

Preferred Qualifications:
  • Experience with Security Operations (SOC) and detection engineering
  • Experience supporting M&A / acquisition integrations
  • Knowledge of SOAR platforms and automation
  • Familiarity with frameworks such as MITRE ATT&CK

*All employees working remotely will be required to adhere to UnitedHealth Group's Telecommuter Policy
Pay is based on several factors including but not limited to local labor markets, education, work experience, certifications, etc. In addition to your salary, we offer benefits such as, a comprehensive benefits package, incentive and recognition programs, equity stock purchase and 401k contribution (all benefits are subject to eligibility requirements). No matter where or when you begin a career with us, you'll find a far-reaching choice of benefits and incentives. The salary for this role will range from $112,700 - $193,200 annually based on full-time employment. We comply with all minimum wage laws as applicable.
Application Deadline: This will be posted for a minimum of 2 business days or until a sufficient candidate pool has been collected. Job posting may come down early due to volume of applicants.
At UnitedHealth Group, our mission is to help people live healthier lives and make the health system work better for everyone. We believe everyone-of every race, gender, sexuality, age, location and income-deserves the opportunity to live their healthiest life. Today, however, there are still far too many barriers to good health which are disproportionately experienced by people of color, historically marginalized groups and those with lower incomes. We are committed to mitigating our impact on the environment and enabling and delivering equitable care that addresses health disparities and improves health outcomes - an enterprise priority reflected in our mission.
UnitedHealth Group is an Equal Employment Opportunity employer under applicable law and qualified applicants will receive consideration for employment without regard to race, national origin, religion, age, color, sex, sexual orientation, gender identity, disability, or protected veteran status, or any other characteristic protected by local, state, or federal laws, rules, or regulations.
UnitedHealth Group is a drug - free workplace. Candidates are required to pass a drug test before beginning employment.

What UnitedHealth Group employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom