Information Security Engineer jobs in United States
cer-icon
Apply on Employer Site
company-logo

Acuative · 1 day ago

Information Security Engineer

Acuative is a global IT solutions provider committed to delivering top-tier network managed services and solutions. The SIEM Engineer is responsible for designing, implementing, tuning, and maintaining Security Information and Event Management (SIEM) systems across regulated and commercial client environments.

Information Technology
badNo H1BnoteSecurity Clearance RequirednoteU.S. Citizen Onlynote

Responsibilities

Design and deploy SIEM instances (e.g., LogRhythm for regulated, Elastic Stack for commercial clients) across cloud and on-premise environments
Build scalable log ingestion pipelines leveraging FIPS 140-3 validated cryptographic modules when required
Engineer multi-tenant configurations with strict client isolation controls
Onboard log sources from firewalls, servers, endpoints, and SaaS platforms
Normalize and parse logs to ensure consistency, searchability, and structured alerting
Maintain and document the log source catalog and retention policies
Collaborate with analysts and threat intelligence teams to build and optimize detection rules
Tune alert thresholds to minimize false positives while maintaining sensitivity
Conduct rule audits and implement playbook-driven updates
Integrate SIEM with SOAR platforms for automated incident response
Develop or enhance detection and response workflows using scripting or playbook engine
Benchmark performance and optimize query performance

Qualification

SIEM engineeringLogRhythmElastic StackSplunkScriptingRegulatory frameworksPythonPowerShellRegexLog formatsSOAR platformsMulti-tenant environmentCertifications

Required

Bachelor's degree in Cybersecurity, Information Systems, or related field (or equivalent experience)
3–5 years of experience in SIEM engineering or log management roles
Experience with LogRhythm, Elastic Stack, Splunk, or comparable platforms
Familiarity with regulatory control frameworks (e.g., NIST 800-53, FedRAMP, PCI-DSS)
Strong knowledge of log formats (e.g., Syslog, JSON, Windows Event Logs)
Proficiency in scripting (e.g., Python, PowerShell, Regex) for parsing and automation
U.S. Citizen with the ability to obtain or maintain a security clearance

Preferred

Experience in a multi-tenant MSSP or SOC environment
Certifications: LogRhythm Certified Professional, Elastic Certified Engineer, GCIA, or equivalent
Familiarity with SOAR platforms (e.g., Swimlane, Palo Alto XSOAR)

Company

Acuative

twittertwittertwitter
company-logo
Acuative simplifies the entire process of managing your technology.