Planned Systems International · 22 hours ago
Cybersecurity SIEM (Security Information Event Management) Engineer
Planned Systems International is hiring for a Cybersecurity SIEM Engineer. This role involves administering and tuning SIEM technology to detect and analyze cybersecurity threats, collaborating with IT teams, and improving the cybersecurity program's effectiveness.
Software
Responsibilities
Operates and maintains SIEM tools and components, such as log aggregators, forwarders, and data observability systems
Tests, implements, and tunes new on-premises and cloud-based technical environments that support infrastructure visibility, analysis, automation, and secure data retention
Develops content that enables cybersecurity personnel to take maximum advantage of existing tool capabilities, including workflows, integrations, and automated tasks
Collaborates across Information Technology Services teams to integrate SIEM components with cybersecurity enrichment and analysis platforms and system management tools
Creates and maintains architectural documentation and operational procedures that describe the scope, purpose, configuration, use, and maintenance of the SIEM tools and environments
Contributes to projects (as assigned or independently) that improve the effectiveness and efficiency of a cybersecurity program, including but not limited to workflow improvements, automation expansion, management tool enhancements, program or strategic initiatives, and user awareness training
Qualification
Required
Related Bachelor's Degree and 5 or more years of experience. Or, related Master's Degree and 3 or more years of experience. Or, equivalent related education or experience
Ability to perform research, read documentation, and independently learn new skills
Must be a self-starter
Ability to work both alone and as part of a collaborative team
Demonstrated skills in critical thinking and problem solving
Excellent written and verbal communication skills, including active listening, ability to prepare and deliver presentations, and clear written correspondence and documentation
HSPD-12 compliant credential required
One or more professional security and/or systems engineering certifications, such as GIAC (SANS) certifications, Security+, CISSP, or training evidencing effort to attain future certification
Experience includes at least 3 years in an Information Technology role working specifically in a SIEM engineering role, or a role that includes significant time performing SIEM engineering (tool selection, installation, and maintenance)
Technical background in multiple disciplines, including experience with: Windows and Linux server and workstation system administration; TCP/IP networking concepts, Bash command-line expertise, network protocols and architecture; security measures/defense-in-depth
Experience managing, and troubleshooting tools and significant infrastructure in a production (live) environment
Experience dealing with common cyber security concepts and threats and describing them to others
Intermediate scripting/programming ability with various languages, preferably Python, in support of security orchestration and automation
Preferred
Technology-specific experience or training/certifications with Splunk SIEM and Cribl is a plus
Understanding of cloud security architecture (AWS/Azure/Google Cloud), event collection and aggregation a plus
Benefits
Paid leave
Employer sponsored group medical
Dental
Vision
Short-term and long-term disability
Life insurance
AD&D coverage
Legal services
Identity theft
Accident insurance
Flexible spending account
Health saving account options
401(k) retirement plan with an employer contribution match
Professional courses
Certifications
Tuition reimbursement programs
Company
Planned Systems International
Planned Systems International, Inc. provides information technology (IT) solutions and services to federal government and private sector
Funding
Current Stage
Late StageRecent News
Washington Technology
2025-12-04
2025-10-09
Company data provided by crunchbase