1

Siem Engineer Jobs in Georgia (NOW HIRING)

Senior CyberSecurity Specialist - Engineer (SIEM/SOAR) Location: Remote Reports To: Senior Manager, Security Engineering Company Overview Newell Brands (NASDAQ: NWL) is a leading global consumer ...

Senior CyberSecurity Specialist - Engineer (SIEM/SOAR) Location: Remote Reports To: Senior Manager, Security Engineering Company Overview Newell Brands (NASDAQ: NWL) is a leading global consumer ...

Senior CyberSecurity Specialist - Engineer (SIEM/SOAR) Location: Remote Reports To: Senior Manager, Security Engineering Company Overview Newell Brands (NASDAQ: NWL) is a leading global consumer ...

Integrate XSOAR with SIEM, EDR, IAM, ITSM, and security tools. * Troubleshoot and optimize existing automations. * Collaborate with SOC and Security Engineering teams. Required Skills * 3+ years of ...

Security Engineering & Tool Administration ... Design, configure, implement, and maintain security platforms including SIEM, EDR/XDR, SOAR ...

New

Integrate XSOAR with SIEM, EDR, IAM, ITSM, and security tools. * Troubleshoot and optimize existing automations. * Collaborate with SOC and Security Engineering teams. Required Skills * 3+ years of ...

Integrate XSOAR with SIEM, EDR, IAM, ITSM, and security tools. * Troubleshoot and optimize existing automations. * Collaborate with SOC and Security Engineering teams. Required Skills * 3+ years of ...

Integrate XSOAR with SIEM, EDR, IAM, ITSM, and security tools. * Troubleshoot and optimize existing automations. * Collaborate with SOC and Security Engineering teams. Required Skills * 3+ years of ...

Integrate XSOAR with SIEM, EDR, IAM, ITSM, and security tools. * Troubleshoot and optimize existing automations. * Collaborate with SOC and Security Engineering teams. Required Skills * 3+ years of ...

Integrate XSOAR with SIEM, EDR, IAM, ITSM, and security tools. * Troubleshoot and optimize existing automations. * Collaborate with SOC and Security Engineering teams. Required Skills * 3+ years of ...

Integrate XSOAR with SIEM, EDR, IAM, ITSM, and security tools. * Troubleshoot and optimize existing automations. * Collaborate with SOC and Security Engineering teams. Required Skills * 3+ years of ...

Integrate XSOAR with SIEM, EDR, IAM, ITSM, and security tools. * Troubleshoot and optimize existing automations. * Collaborate with SOC and Security Engineering teams. Required Skills * 3+ years of ...

Integrate XSOAR with SIEM, EDR, IAM, ITSM, and security tools. * Troubleshoot and optimize existing automations. * Collaborate with SOC and Security Engineering teams. Required Skills * 3+ years of ...

Integrate XSOAR with SIEM, EDR, IAM, ITSM, and security tools. * Troubleshoot and optimize existing automations. * Collaborate with SOC and Security Engineering teams. Required Skills * 3+ years of ...

Integrate XSOAR with SIEM, EDR, IAM, ITSM, and security tools. * Troubleshoot and optimize existing automations. * Collaborate with SOC and Security Engineering teams. Required Skills * 3+ years of ...

Integrate XSOAR with SIEM, EDR, IAM, ITSM, and security tools. * Troubleshoot and optimize existing automations. * Collaborate with SOC and Security Engineering teams. Required Skills * 3+ years of ...

next page

Showing results 1-20

Siem Engineer information

See Georgia salary details

$32.9K

$85.9K

$116.1K

How much do siem engineer jobs pay per year?

As of Aug 14, 2026, the average yearly pay for siem engineer in Georgia is $85,918.00, according to ZipRecruiter salary data. Most workers in this role earn between $70,900.00 and $98,400.00 per year, depending on experience, location, and employer.

What is a SIEM engineer?

A SIEM Engineer is responsible for managing and maintaining Security Information and Event Management (SIEM) solutions to detect, analyze, and respond to security threats. They configure SIEM tools, create correlation rules, and analyze logs from various sources to identify potential security incidents. SIEM Engineers also work closely with cybersecurity teams to investigate alerts and improve threat detection capabilities. Their role is crucial in ensuring an organization's security posture by proactively identifying and mitigating risks.

What are some typical challenges faced by SIEM engineers, and how do they overcome them?

SIEM Engineers often deal with high volumes of log data and the challenge of distinguishing genuine security threats from false positives. They address these issues by fine-tuning alert rules, leveraging threat intelligence feeds, and constantly updating system configurations to adapt to new threats. Collaboration with other security professionals and regular training on emerging attack vectors help SIEM Engineers stay ahead of evolving cyber risks. Working in teams or with security operations centers (SOCs), they also develop incident response playbooks to streamline investigations and ensure rapid resolution of security incidents.

What are the key skills and qualifications needed to thrive as a SIEM engineer?

To thrive as a SIEM Engineer, you need strong expertise in cybersecurity, network protocols, and incident response, usually supported by a degree in computer science or a related field. Familiarity with leading SIEM platforms (such as Splunk, IBM QRadar, or ArcSight) and industry certifications like CISSP, CEH, or CompTIA Security+ are commonly required. Analytical thinking, attention to detail, and excellent problem-solving and communication skills are important soft skills for this role. These capabilities enable SIEM Engineers to effectively monitor threats, respond to incidents, and collaborate across IT and security teams to maintain a secure environment.

What are popular job titles related to Siem Engineer jobs in Georgia?

For Siem Engineer jobs in Georgia, the most frequently searched job titles are:

What job categories do people searching Siem Engineer jobs in Georgia look for?

The top searched job categories for Siem Engineer jobs in Georgia are:

What cities in Georgia are hiring for Siem Engineer jobs?

Cities in Georgia with the most Siem Engineer job openings:

Infographic showing various Siem Engineer job openings in Georgia as of August 2026, with employment types broken down into 87% Full Time, 6% Part Time, 1% Temporary, and 6% Contract. Highlights an 86% Physical, 5% Hybrid, and 9% Remote job distribution, with an average salary of $85,918 per year, or $41.3 per hour.

Security Observability Engineer

Starr Insurance Companies

Alpharetta, GA

Full-time

Re-posted 3 days ago


Job description

Join Starr, a global leader in commercial insurance with over a century of expertise. We empower our employees to innovate, make impactful decisions, and build lasting client relationships worldwide. At Starr, you'll work in an entrepreneurial culture alongside accessible leaders, leveraging our financial strength and vast industry experience to deliver solutions for our clients, no matter how complex. Grow your career with a rapidly growing company that invests in its people and their ability to drive real progress.

Security Observability Engineer

Job Overview

We are seeking an experienced Security Observability Engineer to lead the migration, optimization, and secure operation of our log ingestion and observability pipelines. The role emphasizes secure data delivery, advanced SIEM coverage, Splunk expertise, data reduction strategies, and robust load balancing and high availability for log infrastructure.

Key Responsibilities

End-to-End SIEM Pipeline Management & Optimization

Lead the migration of log sources from Splunk ingestion to Cribl Stream/Edge

pipelines, ensuring load-balanced, fault-tolerant delivery and processing of security and IT logs.

Architect and manage scalable, resilient pipelines-including design,

implementation, and operation of load balancing solutions (e.g., Cribl worker groups, external load balancers, or syslog load distribution) for high ingest volumes.

Analyze, tune and securely onboard all log sources (rewalls, EDR, cloud,

authentication, proxies, etc.)-covering parsing, ltering, and data reduction techniques to minimize Splunk ingest/storage costs without sacricing security coverage.

Develop and maintain Cribl and Splunk congurations, including advanced

transformations, eld normalization, masking, and enrichment for security analytics.

Ensure optimal distribution of logging workload across Cribl worker nodes and

Splunk indexers to prevent bottlenecks, data loss, or single points of failure. Security Event Visibility and SOC Enablement

Collaborate with SOC, IR, and threat detection teams to ensure all security logs

reach the SIEM eRiciently and reliably, and logs are tuned for actionable detection. Actively monitor, test, and remediate pipeline balancing and ingestion health to

maximize uptime and forensic visibility.

Respond to and resolve SIEM and pipeline issues that impact security, detection, or

compliance visibility.

Governance, Compliance & Documentation

Apply and document security policies for log routing, load balancing, event

retention, and integrity-ensuring pipeline architecture meets audit, legal, and privacy requirements.

Track and report ingest reduction, Splunk cost savings, pipeline health, and event

loss/drop rates across the load-balanced infrastructure.

Maintain clear, up-to-date documentation of log ows, pipeline topology, load

balancing strategies, and operational procedures.

Required Skills & Qualications

Extensive hands-on experience with Splunk SIEM engineering (indexers, search

heads, clustering, forwarders, CIM, performance/load optimization).

2+ years with Cribl Stream/Edge, including deployment and tuning of distributed,

load-balanced pipelines.

Deep understanding of machine data transport (syslog, HEC, TCP, UDP), log

balancing strategies (syslog balancers, DNS round-robin, Cribl worker groups, etc.), and high-availability logging environments.

Proven expertise onboarding, parsing, and tuning security log sources (rewalls,

cloud, EDR/XDR, IAM, authentication, and networking) for best possible coverage and SOC/IR support.

Advanced Splunk SPL, data model, event parsing, and alert tuning skills; practical

SIEM optimization experience.

Scripting/automation ability (Python, shell/CLI, or similar) for pipeline management

and validation.

Strong troubleshooting, monitoring, and operational dashboard skills for both

pipeline and SIEM health.

Preferred Qualications

Hands-on experience designing and operating clustered/HA Cribl and Splunk

deployments (worker groups, clustered indexers, resilient data forwarders, etc.). Splunk ES or Cribl certications.

Key Success Metrics

No loss of security data or alert coverage during/after pipeline migration and

optimization.

Documented, measurable reductions in Splunk ingest volume and

operational/storage cost.

Consistently balanced log throughput and minimal risk of bottlenecks or

overloads-pipeline health and reliability metrics maintained above SLA. Well-documented, adaptable pipeline and load balancing architecture.

The estimated salary range for this position is 90k-120k

Starr is an equal opportunity employer, which means we'll consider all suitably qualified applicants regardless of gender identity or expression, ethnic origin, nationality, religion or beliefs, age, sexual orientation, disability status or any other protected characteristic. We recruit and develop our people based on merit and we're committed to creating an inclusive environment for all employees. We offer first class training and development opportunities to all employees. Our aim is to grow our own talent and bring out the best in people.