SIEM Content Developer
Ft. Belvoir, VA, United States
Full Time Mid-level / Intermediate Clearance required USD 52K - 123K * est.
Amyx, Inc.
Overview
Amyx is looking to hire a SIEM Content Developer. This positions will be in support for the Defense Logistics Agency.
Majority of the work at the Government facility located at DLA Land and Maritime, 3990 E. Broad St., Columbus, Ohio, Ft. Belvoir, Virginia or HDIFC 74 N Washington Ave Battle Creek, MI.
Responsibilities
The SIEM Lead will be responsible for researching and developing new threat detection use cases based on emerging threats, threat intelligence research and Threat Detection Analyst feedback. The SIEM Lead will work with stakeholders and cybersecurity tool SMEs to identify gaps in security protection and analytics capabilities. The SIEM Lead will develop custom scripts to enhance SIEM functionality. The SIEM lead will review quality of data feeds and recommend and/or implement improvements. The SIEM lead will collaborate with stakeholders to identify critical systems and application components to develop alerting priorities and create signatures tailored to individual programs and applications.
Qualifications
Minimum Requirements:
• Five (5) years of relevant IT experience
•Three (3) years working with a SIEM in a content development or Incident Response role.• Three (3) years of System and/or Network Administration experience• Understanding of various log formats • Understanding of the MITRE ATT&CK framework• Strong understanding of network architecture• Experience developing and maintaining scripts (preferably using Powershell, Python or SPL)• Understanding of Defense-in-Depth • Must possess a current DOD Top Secret Clearance and be eligible for an IT-I Critical Sensitive security clearance or Tier 5 (T5) at time of proposal submission.• Must have Baseline Certification for IT-II and CNDSP/CSSP-IR when on boarding and must have one of the “Computer Network Defense” CE Certifications within six (6) months of on-boarding.
Benefits include:
- Medical, Dental, and Vision Plans (PPO & HSA options available)
- Flexible Spending Accounts (Health Care & Dependent Care FSA)
- Health Savings Account (HSA)
- 401(k) with matching contributions
- Roth
- Qualified Transportation Expense with matching contributions
- Short Term Disability
- Long Term Disability
- Life and Accidental Death & Dismemberment
- Basic & Voluntary Life Insurance
- Wellness Program
- PTO
- 11 Holidays
- Professional Development Reimbursement
Please contact talent@amyx.com with any questions!
Amyx is proud to be an Equal Opportunity Employer. All qualified candidates will be considered without regard to race, color, religion, national origin, age, disability, sexual orientation, gender identity, status as a protected veteran, or any other characteristic protected by law. Amyx is a VEVRAA federal contractor and we request priority referral of veterans.
Physical DemandsEmployee needs to be able to sit at a workstation for extended periods; use hand(s) to handle or feel objects, tools, or controls; reach with hands and arms; talk and hear. Most positions require ability to work on desktop or laptop computer for extended periods of time reading, reviewing/analyzing information, and providing recommendations, summaries and/or reports in written format. Must be able to effectively communicate with others verbally and in writing. Employee may be required to occasionally lift and/or move moderate amounts of weight, typically less than 20 pounds. Regular and predictable attendance is essential.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Analytics Clearance DoD Incident response MITRE ATT&CK PowerShell Python Security Clearance SIEM Threat detection Threat intelligence Top Secret Top Secret Clearance
Perks/benefits: Career development Flex hours Flexible spending account Flex vacation Gear Health care Insurance Wellness
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.