← Back to Jobs
Administrative
SEIM Engineer with Security Clearance
Apex SystemsFort Meade, MD🇺🇸United StatesPosted 13 Jul 2026
Quick Overview
Work Type
On Site
Level
Mid Senior
Job Description
SIEM Engineer
Location: Fort Meade, Maryland (Onsite) Role Overview
Our organization is seeking a SIEM Engineer to support a critical enterprise migration from Splunk to Elastic. This role will serve as a senior analyst, responsible for developing queries, tuning alerts, and performing advanced analysis within a large-scale environment. The position involves translating existing security use cases, dashboards, and alerts while ensuring detection capabilities are maintained or improved throughout the transition. Key Responsibilities
Serve as a senior SIEM analyst leveraging Splunk, with responsibility for query development (SPL), alert tuning, correlation, and advanced analysis.
Support and contribute to enterprise SIEM migration efforts from Splunk to Elastic, including translating use cases, dashboards, and alerts.
Validate data ingestion pipelines and log sources during the migration to ensure fidelity.
Leverage network monitoring and detection capabilities (netflow, PCAP, IDS) to identify adversary activity.
* Perform advanced log analysis, correlation, and threat detection across large-scale datasets. Discover adversary campaigns, anomalies, and inconsistencies across SIEM platforms.
Support the development of cyber fusion frameworks aligned with best practices.
Analyze and document malicious actor TTPs, mapping them to enterprise vulnerabilities.
Produce detailed analytic reports and visualizations to communicate findings.
Provide mitigation strategies to reduce risk and improve the enterprise security posture.
Required Qualifications
Bachelor’s Degree with 8-15 years of relevant experience, or equivalent professional experience.
An active IAT Level II or III Certification.
Experience with Splunk, including SPL query development, dashboard creation, and alert tuning.
Experience supporting or participating in SIEM platform migrations, preferably from Splunk to Elastic.
Familiarity with Elastic/ELK Stack tools such as Elasticsearch, Kibana, Logstash, and Beats.
Knowledge of network protocols (TCP/IP, OSI) and cyber threat methodologies.
Experience analyzing netflow, PCAP, and custom application logging data.
Experience with security tools such as Wireshark, passive DNS, and threat intelligence platforms.
Preferred Qualifications
Experience supporting DISN or DOW networks.
Demonstrated experience building SIEM dashboards, analytics, and detection content in Splunk and/or Elastic.
Hands-on experience with Splunk to Elastic migrations, data pipeline validation, or detection engineering conversions.
Familiarity with intelligence-driven defense methodologies.
IAT Level III and/or IAM Level II/III Certifications.
Location: Fort Meade, Maryland (Onsite) Role Overview
Our organization is seeking a SIEM Engineer to support a critical enterprise migration from Splunk to Elastic. This role will serve as a senior analyst, responsible for developing queries, tuning alerts, and performing advanced analysis within a large-scale environment. The position involves translating existing security use cases, dashboards, and alerts while ensuring detection capabilities are maintained or improved throughout the transition. Key Responsibilities
Serve as a senior SIEM analyst leveraging Splunk, with responsibility for query development (SPL), alert tuning, correlation, and advanced analysis.
Support and contribute to enterprise SIEM migration efforts from Splunk to Elastic, including translating use cases, dashboards, and alerts.
Validate data ingestion pipelines and log sources during the migration to ensure fidelity.
Leverage network monitoring and detection capabilities (netflow, PCAP, IDS) to identify adversary activity.
* Perform advanced log analysis, correlation, and threat detection across large-scale datasets. Discover adversary campaigns, anomalies, and inconsistencies across SIEM platforms.
Support the development of cyber fusion frameworks aligned with best practices.
Analyze and document malicious actor TTPs, mapping them to enterprise vulnerabilities.
Produce detailed analytic reports and visualizations to communicate findings.
Provide mitigation strategies to reduce risk and improve the enterprise security posture.
Required Qualifications
Bachelor’s Degree with 8-15 years of relevant experience, or equivalent professional experience.
An active IAT Level II or III Certification.
Experience with Splunk, including SPL query development, dashboard creation, and alert tuning.
Experience supporting or participating in SIEM platform migrations, preferably from Splunk to Elastic.
Familiarity with Elastic/ELK Stack tools such as Elasticsearch, Kibana, Logstash, and Beats.
Knowledge of network protocols (TCP/IP, OSI) and cyber threat methodologies.
Experience analyzing netflow, PCAP, and custom application logging data.
Experience with security tools such as Wireshark, passive DNS, and threat intelligence platforms.
Preferred Qualifications
Experience supporting DISN or DOW networks.
Demonstrated experience building SIEM dashboards, analytics, and detection content in Splunk and/or Elastic.
Hands-on experience with Splunk to Elastic migrations, data pipeline validation, or detection engineering conversions.
Familiarity with intelligence-driven defense methodologies.
IAT Level III and/or IAM Level II/III Certifications.
Similar jobs
Senior AI Systems Architect with Security Clearance
Bart & Associates · Ashburn, United States
2 minutes agoQuality Assurance Tester with Security Clearance
Bart & Associates, LLC · Ashburn, United States
2 minutes agoDigital Network Exploitation Analyst 4 with Security Clearance
Wyetech, LLC · Annapolis Junction, United States
22 minutes ago$81 - $122/hrData \u0026 Metrics Analyst (REMOTE) with Security Clearance
Koniag Government Services · Chantilly, United States
25 minutes agoSystems Safety Engineer with Security Clearance
HX5, LLC · Niceville, United States
41 minutes agoSenior Red Hat Enterprise Linux (RHEL) Engineer with Security Clearance
Maximus Inc · Colorado Springs, United States
41 minutes ago$120k - $125k/yr