2

Siem Engineer Remote Jobs in Worcester, MA (NOW HIRING)

Siem Engineer Remote information

See Worcester, MA salary details

$25

$53

$76

How much do siem engineer remote jobs pay per hour?

As of Sep 6, 2026, the average hourly pay for siem engineer remote in Worcester, MA is $53.51, according to ZipRecruiter salary data. Most workers in this role earn between $43.17 and $62.12 per hour, depending on experience, location, and employer.

What is a SIEM engineer?

A SIEM (Security Information and Event Management) Engineer is an IT security professional responsible for implementing, managing, and optimizing SIEM solutions to protect an organization's information systems. They collect, analyze, and monitor security data from various sources to detect suspicious activities, respond to incidents, and ensure compliance with security policies. Remote SIEM Engineers work from off-site locations, leveraging secure access and communication tools to maintain and troubleshoot SIEM platforms, analyze threat intelligence, and coordinate with security teams to enhance the organization's cybersecurity posture.

What are the key skills and qualifications needed to thrive as a SIEM engineer?

To thrive as a SIEM Engineer (Remote), you need strong expertise in cybersecurity principles, log analysis, and incident response, often supported by a degree in information security or related certifications like CompTIA Security+ or CISSP. Familiarity with SIEM platforms such as Splunk, IBM QRadar, or ArcSight, as well as scripting and automation tools, is essential. Excellent problem-solving, communication, and the ability to work independently are crucial soft skills for remote collaboration and timely threat detection. These skills ensure effective monitoring, quick response to security threats, and seamless teamwork in distributed environments.

What are some common challenges faced by remote SIEM engineers, and how can they be addressed?

Remote SIEM Engineers often face challenges such as maintaining clear communication with security teams, managing alerts across multiple time zones, and ensuring secure access to sensitive systems. To address these, it's important to leverage collaboration tools, establish clear incident response protocols, and use secure VPNs or access controls. Regular virtual meetings and thorough documentation also help keep everyone aligned and ensure swift incident handling.

What is the difference between Siem Engineer Remote vs Security Analyst Remote?

AspectSiem Engineer RemoteSecurity Analyst Remote
Required CredentialsCertifications like CISSP, CEH, or vendor-specific SIEM certificationsCertifications such as CompTIA Security+, CISSP, or GIAC certifications
Work EnvironmentFocus on configuring, managing, and optimizing SIEM tools remotelyMonitoring security alerts, analyzing threats, and incident response remotely
Employer & Industry UsageUsed in cybersecurity firms, large enterprises, and government agenciesCommon across various industries including finance, healthcare, and tech

Both roles involve cybersecurity but differ in focus: Siem Engineers primarily manage SIEM systems, while Security Analysts analyze security data and respond to threats. Both roles are often remote and require relevant certifications, making them closely related in the cybersecurity field.

What are popular job titles related to Siem Engineer Remote jobs in Worcester, MA?

For Siem Engineer Remote jobs in Worcester, MA, the most frequently searched job titles are:

What job categories do people searching Siem Engineer Remote jobs in Worcester, MA look for?

The top searched job categories for Siem Engineer Remote jobs in Worcester, MA are:

What cities near Worcester, MA are hiring for Siem Engineer Remote jobs?

Cities near Worcester, MA with the most Siem Engineer Remote job openings:

Senior Information Security Engineer (REMOTE)

thg

Worcester, MA • On-site, Remote

$106K - $144K/yr

Full-time

Re-posted 16 days ago


Job description

We are seeking a highly experienced and skilled Senior Information Security Engineer to join our IT Security organization in our Worcester, MA office or remote work arrangement.

POSITION OVERVIEW:

The Senior Information Security Engineer (SIEM & IDS/IPS Administrator) is responsible for the endtoend administration, maintenance, and optimization of the organization’s onpremise Security Information and Event Management (SIEM) platform and Intrusion Detection/Prevention Systems (IDS/IPS). This role ensures that these critical security technologies remain highly available, strategically aligned with enterprise security objectives, governed according to policy, and operating at peak effectiveness.

The engineer will work closely with cybersecurity, infrastructure, and governance teams to ensure that threat detection, alerting, and response capabilities are robust, reliable, and continuously improving.

This is a full time, exempt position.

IN THIS ROLE, YOU WILL:   

SIEM Administration & Engineering

  • Manage, maintain, and optimize the onpremise SIEM platform, including log ingestion, parsing, correlation rules, dashboards, and alerting.
  • Ensure SIEM availability, performance, and scalability to support enterprise security monitoring needs.
  • Develop and tune detection rules, correlation logic, and use cases aligned with threat intelligence and organizational risk.
  • Oversee log source onboarding, configuration, and validation across servers, applications, network devices, and security tools.
  • Conduct regular SIEM health checks, capacity planning, and lifecycle management.

IDS/IPS Administration & Engineering

  • Administer and maintain onpremise IDS/IPS platforms, ensuring accurate detection and prevention of malicious activity.
  • Tune signatures, policies, and rulesets to reduce false positives while maintaining strong detection coverage.
  • Monitor IDS/IPS performance, availability, and event trends to identify anomalies or operational issues.
  • Coordinate with network and security teams to implement policy updates, rule changes, and architectural improvements.

Operational Excellence & Governance

  • Ensure both SIEM and IDS/IPS solutions are aligned with security governance frameworks, compliance requirements, and organizational policies.
  • Maintain documentation for system configurations, processes, runbooks, and governance controls.
  • Support audit activities by providing evidence, reports, and system configuration details.
  • Participate in incident response activities by providing SIEM/IDS/IPS insights, event analysis, and technical expertise.

Strategic Alignment & Continuous Improvement

  • Evaluate emerging threats and recommend enhancements to detection logic and monitoring capabilities.
  • Collaborate with architecture and leadership teams to align SIEM and IDS/IPS strategies with longterm security objectives.
  • Identify opportunities to automate processes, improve detection fidelity, and enhance operational efficiency.

WHAT YOU NEED TO APPLY:

  • Minimum 5 years of handson experience administering, managing, and maintaining:
    • An onpremise SIEM security solution, and
    • An onpremise IDS/IPS security solution
  • Demonstrated experience ensuring high availability, governance alignment, and operational effectiveness of security monitoring technologies.
  • Strong understanding of SIEM architecture, log ingestion pipelines, correlation logic, and event normalization.
  • Expertise with IDS/IPS technologies, signature tuning, network traffic analysis, and threat detection methodologies.
  • Proficiency with security log formats (syslog, JSON, CEF, LEEF, etc.).
  • Familiarity with network protocols, firewall rules, and enterprise network architecture.
  • Experience with Linux/Windows server administration as it relates to security tooling.
  • Ability to analyze security events, identify patterns, and support incident response.
  • Strong analytical and problemsolving abilities.
  • Excellent communication skills for crossteam collaboration.
  • Ability to work independently in a remote environment while managing multiple priorities.
  • Detailoriented mindset with a commitment to governance, documentation, and operational discipline.
  • Preferred Qualifications (Optional Enhancements)
    • Industry certifications such as:
      • GIAC (GCIA, GCDA, GCED, GMON)
      • CompTIA Security+ / CySA+
      • CISSP or equivalent
    • Experience with automation (Python, PowerShell, or similar).
    • Familiarity with threat intelligence platforms and frameworks (MITRE ATT&CK, NIST CSF).