SIEM Architect/Engineer

TSG Risk Management

SIEM Architect/Engineer

new york city, NY
Full Time
Paid
  • Responsibilities

    SIEM Architect / Engineer

    Location: New York, NY
    Base Salary Range: $168,924 – $270,278

    Bring Your Authentic Self to Work

    You are more than a job title. Our client believes people perform their best when they feel comfortable bringing their authentic selves to work every day.

    They value the diverse perspectives, experiences, and backgrounds that each team member brings and are committed to fostering an inclusive, respectful workplace where everyone feels they belong. Their culture emphasizes integrity, client focus, collaboration, and long-term thinking, with the goal of creating meaningful impact for both employees and clients.

    Recognition and Reward

    Your contributions matter. This organization believes strong performance should be recognized and rewarded.

    Employees are supported by a competitive compensation structure that includes a strong base salary, annual performance reviews, and bonus opportunities tied to both individual and organizational success.

    Compensation & Benefits

    In addition to a highly competitive base salary, employees are eligible for:

    • Annual performance-based bonus opportunities

    • Additional company profitability bonus programs

    • A retirement program with employer contributions of up to 15% of eligible earnings

    • Comprehensive health benefits beginning on day one

    • Generous paid time away and flexible work options where applicable

    Balance Work and Life

    This organization understands that careers are only one part of a full life. Employees are encouraged to pursue personal interests, support their communities, and grow both professionally and personally.

    Benefits include:

    • Generous time-off policies and wellness support

    • Matching charitable contribution programs

    • Opportunities to support causes important to you

    • Access to professional development resources and continuous learning opportunities

    The Role: SIEM Architect / Engineer

    Our client is seeking a highly skilled and hands-on SIEM Architect / Engineer to lead the design, implementation, and optimization of enterprise-scale SIEM platforms.

    This role requires deep technical expertise in security data engineering, log management, and threat detection , along with a consultative mindset to help security teams solve complex challenges and strengthen their security operations.

    Key Responsibilities

    • Architect, design, and implement scalable SIEM solutions for enterprise environments

    • Utilize technologies such as Splunk, Cribl, Snowflake, Databricks, and AWS-native services to enable advanced detection and investigation capabilities

    • Ingest, analyze, and normalize diverse security telemetry sources to ensure strong visibility across the environment

    • Partner with internal stakeholders to understand security operations needs and develop SIEM strategies and roadmaps

    • Develop and refine detection logic, correlation rules, and alerting mechanisms to improve signal-to-noise ratios

    • Integrate SIEM platforms with the broader security ecosystem including SOAR, EDR, threat intelligence platforms, and cloud security tools

    • Maintain system reliability through health monitoring, high-availability configurations, and resilient log pipelines

    • Stay current with emerging threats, SIEM technologies, and security industry trends

    • Provide advanced troubleshooting and performance optimization for SIEM environments

    What We're Looking For

    The ideal candidate will have strong hands-on experience in enterprise security engineering and SIEM architecture.

    • 5–7+ years of experience designing, deploying, and optimizing SIEM platforms in enterprise environments

    • Hands-on experience with Cribl, Splunk, AWS, Snowflake, and Databricks

    • Strong understanding of security telemetry including firewall logs, endpoint data, identity providers, cloud services, and application logs

    • Experience automating and integrating workflows using Python, Bash, Terraform, or similar tools

    • Ability to engineer log pipelines and normalize/enrich security data for detection and analysis

    • Familiarity with MITRE ATT &CK, detection engineering, and threat hunting methodologies

    • Experience working within cloud security and DevSecOps environments

    • Strong communication skills with the ability to translate technical solutions into meaningful business outcomes

    Apply Today

    If you're interested in learning more about this opportunity, apply now to begin the conversation with our recruiting team.

    If this role is not the right fit, we welcome you to stay connected for future opportunities.