1

Siem Engineer Jobs in Wisconsin (NOW HIRING)

Senior Security Engineer, IAM

Milwaukee, WI · On-site

$112K - $154K/yr

This engineer owns the architecture, strategy, and operational maturity of AI-enabled identity ... Lead integration of identity telemetry into the detection stack (SIEM/SOAR, UEBA) to detect ...

WI · On-site

$90 - $120/hr

Proven experience in **threat detection engineering** and/or **threat hunting*** Experience with **SIEM platforms**, preferably **Splunk*** Ability to work in a **multicultural, international ...

WI · On-site

$90 - $120/hr

For their operations in Zaventem, they are looking for a Senior ICT Security Engineer to strengthen ... Security monitoring and auditing tools (SIEM) * Vulnerability Management & pen testing

IT/OT Engineer

Foxboro, WI · On-site

$88K - $105K/yr

Firewall, Intrusion Detection/Prevention Systems (IDS/IPS), security information and event management (SIEM) solutions, etc. * Industrial control systems: Programmable Logic Controllers (PLCs), Human ...

WI · On-site

$70 - $90/hr

Functiebeschrijving We zoeken een 2e/3e-lijn Support Engineer die de squad kan ondersteunen in ... Forensische, SIEM, antimalware en EDR oplossingen - security alert en incident management

New

SIEM, SOAR, EDR, Schnittstellen) weiter * Du analysierst bestehende Prozesse und identifizierst ... Engineering oder Automatisierung * Kenntnisse in Skriptsprachen (vor allem Python) sowie im Umgang ...

IT Security Manager

Madison, WI · On-site

$130K - $180K/yr

... engineering experience. * 3+ years leading or managing technical security professionals. * Strong hands-on background with enterprise security tools such as SIEM, EDR, firewalls, IDS/IPS, and ...

New

Senior SOC Analyst

Milwaukee, WI · On-site

$94K - $123K/yr

Our globally distributed engineering teams focus on adaptable technology and open architecture to ... SIEM, EDR, NDR, and cloud platforms, escalating to the SOC Lead as appropriate. • Respond to ...

WI · On-site

$80 - $110/hr

De rol combineert expert-level incident response, proactief threat hunting en detection engineering ... Ontwerpen, ontwikkelen, testen en onderhouden van SIEM/EDR/XDR detectie use cases en ...

New

WI · On-site

$110 - $150/hr

... SIEM and XDR platforms. You'll run root cause analysis on real events, lead initial response for ... Coordinate with Security Engineering and IT during active incidents to accelerate response and ...

New

WI · On-site

$80 - $120/hr

... SIEM and XDR platforms. You'll run root cause analysis on real events, lead initial response for ... Coordinate with Security Engineering and IT during active incidents to accelerate response and ...

New

WI · On-site

$144 - $205/hr

The Netskope Solutions Engineer will come on board with the full support of the executive team ... Experience working with Cloud Identity Providers, SCIM, SIEM, SOAR, EDR and SD‑WAN Deployments ...

WI · On-site

$110 - $150/hr

Support proactive threat hunting and detection engineering by converting incident learnings into improved SIEM queries, EDR detections, alert tuning, and response automation opportunities.

New

Showing results 21-40

Siem Engineer information

See Wisconsin salary details

$39.4K

$102.7K

$138.8K

How much do siem engineer jobs pay per year?

As of Sep 4, 2026, the average yearly pay for siem engineer in Wisconsin is $102,704.00, according to ZipRecruiter salary data. Most workers in this role earn between $84,800.00 and $117,600.00 per year, depending on experience, location, and employer.

What is a SIEM engineer?

A SIEM Engineer is responsible for managing and maintaining Security Information and Event Management (SIEM) solutions to detect, analyze, and respond to security threats. They configure SIEM tools, create correlation rules, and analyze logs from various sources to identify potential security incidents. SIEM Engineers also work closely with cybersecurity teams to investigate alerts and improve threat detection capabilities. Their role is crucial in ensuring an organization's security posture by proactively identifying and mitigating risks.

What are the key skills and qualifications needed to thrive as a SIEM engineer?

To thrive as a SIEM Engineer, you need strong expertise in cybersecurity, network protocols, and incident response, usually supported by a degree in computer science or a related field. Familiarity with leading SIEM platforms (such as Splunk, IBM QRadar, or ArcSight) and industry certifications like CISSP, CEH, or CompTIA Security+ are commonly required. Analytical thinking, attention to detail, and excellent problem-solving and communication skills are important soft skills for this role. These capabilities enable SIEM Engineers to effectively monitor threats, respond to incidents, and collaborate across IT and security teams to maintain a secure environment.

What are some typical challenges faced by SIEM engineers, and how do they overcome them?

SIEM Engineers often deal with high volumes of log data and the challenge of distinguishing genuine security threats from false positives. They address these issues by fine-tuning alert rules, leveraging threat intelligence feeds, and constantly updating system configurations to adapt to new threats. Collaboration with other security professionals and regular training on emerging attack vectors help SIEM Engineers stay ahead of evolving cyber risks. Working in teams or with security operations centers (SOCs), they also develop incident response playbooks to streamline investigations and ensure rapid resolution of security incidents.

How much do SIEM engineers make?

SIEM engineers typically earn a salary ranging from $80,000 to $130,000 annually, depending on experience, certifications, and location. Senior roles or those with specialized skills in tools like Splunk or QRadar can command higher salaries. Compensation may also include benefits such as bonuses and professional development opportunities.
Infographic showing various Siem Engineer job openings in Wisconsin as of August 2026, with employment types broken down into 92% Full Time, 5% Part Time, and 3% Contract. Highlights an 84% Physical, 5% Hybrid, and 11% Remote job distribution, with an average salary of $102,704 per year, or $49.4 per hour.

Senior Security Engineer, IAM

Relativity

Milwaukee, WI • On-site

$112K - $154K/yr

Other

Medical, Dental, Vision

Posted 12 days ago


Job description

Posting Type

Remote

Job Overview

The Senior IAM Engineer is a technically authoritative leader who sets the direction for the enterprise IAM function and anchors identity as the primary control plane in a defense-in-depth program. This engineer owns the architecture, strategy, and operational maturity of AI-enabled identity technologies across the workforce, customer, and non-human (machine and agent) identity domains. Partnering with the Manager of Enterprise Security and leading cross-functional teams, the role reduces Relativity's identity attack surface, sets the standards others build against, mentors engineers, and elevates the organization's ability to detect and respond to identity-based threats.

Job Description and Requirements

Role Responsibilites:

Continuous Adaptive Trust & Identity Architecture

  • Design identity architecture spanning workforce, machine, and workload identity, mapping layered controls to relevant frameworks as a core tier of defense-in-depth.

  • Design and advance continuous adaptive trust capabilities (continuous access evaluation (CAE), risk-based and phishing-resistant authentication, and signal-driven session revocation) as the maturation of the enterprise Zero Trust architecture.

  • Engineer and optimize ZTNA, least-privilege micro-segmentation, MFA/FIDO2, and JIT access across access paths.

  • Design and optimize SSO, federation, and authentication standards (SAML, OAuth 2.0, OIDC, SCIM, Kerberos, LDAP) across SaaS and multi-cloud environments.

  • Define and tune hardening standards using CIS Benchmarks/DISA STIGs with automated compliance validation.

Identity Lifecycle, Governance & PAM

  • Design and optimize identity lifecycle automation (joiner/mover/leaver) integrating HR systems, directories, and downstream applications.

  • Engineer identity governance and administration (IGA) capabilities: access reviews, certification campaigns, and segregation-of-duties enforcement.

  • Lead implementation and optimization of privileged access management (PAM) including credential vaulting, JIT elevation, and session monitoring.

  • Design governance for non-human identities (service accounts, workloads, secrets) with automated drift detection and policy-as-code enforcement.

Detection, Response & Threat Context

  • Lead integration of identity telemetry into the detection stack (SIEM/SOAR, UEBA) to detect credential abuse, privilege escalation, and lateral movement, reducing MTTD and MTTR.

  • Develop identity-focused IR playbooks covering account takeover, credential compromise, federation abuse, and session hijacking.

  • Apply threat intelligence context to prioritize identity exposure remediation and lead identity-focused purple team engagements.

AI DevSecOps & Collaboration

  • Design identity controls embedded in AI-augmented CI/CD pipelines (secret scanning, IaC identity policy, workload identity) with AI-generated fix recommendations surfaced in PR workflows.

  • Define and track identity KPIs: privileged access coverage, certification completion, authentication anomaly rates, and entitlement drift.

  • Partner with GRC on identity controls aligned to SOX, SOC 2, ISO 27001, HIPAA, GDPR, and CCPA, and support audits, certifications, e-discovery, and forensic integrity requirements.

  • Provide technical guidance and mentorship to Advanced and Engineer-level identity engineers.

Minimum qualifications:

  • Must be able to obtain and maintain the required Public Trust clearance for this role.

  • Bachelor's in Computer Science, Information Security, or equivalent experience.

  • 8+ years of hands-on experience in enterprise IAM or security engineering, with deep specialization in identity, authentication, and access domains, or a Master's degree in Cybersecurity or a relevant field with 6+ years of experience.

  • Expert, hands-on experience architecting and operating identity platforms across IdP/SSO (Okta, Entra ID/Azure AD, Ping), IGA (SailPoint, Saviynt), and PAM (CyberArk, BeyondTrust), with advanced knowledge of authentication and federation protocols (SAML, OIDC, OAuth 2.0, SCIM, LDAP, Kerberos).

  • Demonstrated experience leading identity threat detection, complex access investigations, and detection-engineering efforts, including designing automation for access enforcement and observability.

  • Working command of industry-standard security benchmarks and frameworks (MITRE, NIST 800-63, Zero Trust) and the ability to translate them into technical controls.

  • Proficiency in at least one scripting/automation language (Python, Bash, or PowerShell) applied to containerized services, CLI-based commands, and identity-specific use cases (API-driven provisioning, policy-as-code).

  • Proven ability to mentor engineers and communicate technical strategy and findings clearly to engineering peers, leadership, and non-technical stakeholders.

Preferred qualifications:

  • Experience securing SaaS, cloud-native, or globally distributed regulated environments.

  • Cloud IAM experience across AWS, Azure, or GCP, and securing non-human/workload identities at scale.

  • Experience with AI-augmented security and governance for AI-assisted and agentic identity workflows (UEBA, ML-based access-risk scoring, agentic identity).

  • Experience embedding identity and access controls (secrets management, workload identity, policy-as-code) into CI/CD pipelines and infrastructure-as-code environments.

  • Familiarity with legal technology, e-discovery, litigation holds, and digital forensics chain-of-custody requirements.

  • Experience leading compliance and audit engagements (SOX, SOC 2, ISO 27001, FedRAMP, HIPAA, GDPR, CCPA) from an identity and access control perspective.

  • Certifications such as CISSP, CISM, GCIH, GCFA, CCSP, AWS Security Specialty, SC-300, or AZ-500.

Relativity is a diverse workplace with different skills and life experiences-and we love and celebrate those differences. We believe that employees are happiest when they're empowered to be their full, authentic selves, regardless how you identify.

Benefit Highlights:

Comprehensive health, dental, and vision plans

Parental leave for primary and secondary caregivers

Flexible work arrangements

Two, week-long company breaks per year

Additional time off

Long-term incentive program

Training investment program

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, or national origin, disability or protected veteran status, or any other legally protected basis, in accordance with applicable law.

Relativity is committed to competitive, fair, and equitable compensation practices.

This position is eligible for total compensation which includes a competitive base salary, an annual performance bonus, and long-term incentives.

The expected salary range for this role is between following values:

$130000 and $195000

The final offered salary will be based on several factors, including but not limited to the candidate's depth of experience, skill set, qualifications, and internal pay equity. Hiring at the top end of the range would not be typical, to allow for future meaningful salary growth in this position.

Required Skills:

Access Management, Application Security, Endpoint Security, Network Security, Penetration Testing, Security Architecture Design, Security Information, Security Information and Event Management (SIEM), Security Operations, Vulnerability Management