Gen SIEM Analyst
Listed on 2026-07-01
-
IT/Tech
Cybersecurity, Security Management & Operations
Next-Gen SIEM Analyst
Location:
Remote (Austin, Texas) Duration:
Long Term
Must have education department experience from any state client experience.
Job DescriptionThis project will optimize the agency's Crowd Strike SIEM and related Crowd Strike services to improve threat detection, monitoring, and response capabilities. The contractor will expand and tune telemetry, integrate additional high-value log sources, enhance security dashboards, and support the rollout of additional Crowd Strike services. The effort will increase visibility into endpoint and security risk, improve signal quality and correlation, and provide security leadership with clear insight into security operations effectiveness and overall risk posture.
Expected outcomes include: expanded and optimized Crowd Strike SIEM telemetry coverage, integration of additional high-value log sources, improved dashboards for operational and executive visibility, enhanced detection fidelity and monitoring effectiveness, and clearer insight for leadership into endpoint risk and security operations performance.
Duties to be performed include: assessing current Crowd Strike SIEM configuration, telemetry coverage, and log ingestion; enabling and tuning additional Crowd Strike telemetry to improve visibility and signal quality; identifying and integrating new high-value log sources into Crowd Strike SIEM; developing and refining security dashboards aligned to SOC and executive use cases; assisting with technical enablement and rollout of additional Crowd Strike services;
validating data quality, parsing, and correlation within the SIEM; coordinating with Security Operations, IT Operations, and system owners; identifying gaps, risks, and improvement opportunities in monitoring and detection; providing weekly status updates and monthly executive-level progress summaries; and delivering supporting documentation and recommendations to sustain improvements.
Deliverables include: summary of work performed and capabilities delivered, documentation supporting all telemetry enablement, log integrations, and dashboard implementations, measurable improvements in monitoring, detection, or visibility, and recommendations for future enhancements or next-phase efforts.
CandidateSkills and Qualifications
Minimum requirements:
candidates that do not meet or exceed the minimum stated requirements (skills/experience) will be displayed to customers but may not be chosen for this opportunity.
- 8 - Required
- Demonstrated skill with documentation, reporting, and knowledge transfer - 8 - Required
- Experience with Stakeholder Engagement, and Executive Communication - 8 - Required
- Experience in SIEM Detection Engineering and Alert Optimization - 8 - Required
- Experience in Log Source Integration and Data Normalization - 3 - Required
- Hands-On Experience with Crowd Strike SIEM and Dashboard Development - 5 - Preferred
- Hands-On Experience with SIEM and Dashboard Development
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).