Demo

SIEM Analyst (HYBRID)

Crest Security Assurance
Smyrna, GA Full Time
POSTED ON 3/18/2026
AVAILABLE BEFORE 9/13/2026

Position Title: SIEM Analyst

Location: Smyrna, GA

Clearance Requirement: Active Secret

Certifications: IASAE Level II per DoD 8140

Employment Type: Full-Time (Hybrid)



Position Overview:

The SIEM Analyst is responsible for supporting the management, optimization, and continuous monitoring of Security Information and Event Management (SIEM) systems within Department of Defense (DoD) environments. This role focuses on reviewing, validating, and optimizing SIEM log sources, rule configurations, and system deployment metrics to ensure comprehensive and efficient threat detection.

The SIEM Analyst will collaborate with cybersecurity teams to develop processes and Standard Operating Procedures (SOPs) for effective SIEM log management, incident detection, and threat response. This position requires strong analytical skills, attention to detail, and a proactive approach to SIEM management and improvement. The ideal candidate will have experience with log analysis, configuration validation, and the identification of security misconfigurations in a SIEM environment.



Responsibilities:

Develop and Document SIEM Processes and SOPs:

  • Assist in developing and documenting a process and SOP for the regular review and validation of SIEM logs and sources.
  • Define procedures for identifying SIEM misconfigurations, evaluating SIEM rules, and generating reports on system deployment metrics such as active log source counts, log types, entities, and rules reviewed or modified.

SIEM Log Source Review:

  • Regularly review and validate SIEM log sources in collaboration with cybersecurity experts to build or update asset profiles. Use these profiles to assess system risk and criticality, leveraging data from Mission Assurance, Configuration Management Database (CMDB), and other resources.

Establish and Maintain SIEM Log Review Schedules:

  • Implement and manage a regular schedule for reviewing SIEM logs based on system sensitivity and risk profiles. Perform reviews daily, weekly, or monthly, depending on the system's criticality.
  • Conduct weekly SIEM log reviews, focusing on identifying:
  • Unusual system behavior
  • Deviations from established baselines
  • Configuration changes

Incident Reporting and Collaboration:

  • Monitor and relay any anomalous or potentially malicious activity detected in the SIEM to Cyber Operations (Cyber Ops) Analysts.
  • Provide timely communication and findings to cybersecurity leadership to ensure prompt action on security issues.

Continuous SIEM Rule Assessment:

  • Conduct regular evaluations of SIEM rules to ensure their effectiveness in identifying potential security threats. Review 10-15 SIEM signatures monthly to ensure they are relevant and effective.
  • Work with ISSM, ISO, and Cyber Ops Analysts to identify SIEM rules that need optimization to improve threat detection accuracy and reduce false positives.

Log Source Configuration Validation:

  • Validate the configuration of log sources to ensure that all relevant security data is collected, ingested, and processed by the SIEM. Identify any missing or misconfigured log sources and create incidents (IRs) to assign these to the SIEM team for resolution.

Documentation and Reporting:

  • Maintain detailed documentation on SIEM configurations, rule assessments, and incident reports.
  • Generate and present reports with system deployment metrics to cybersecurity leadership, focusing on log source counts, rule modifications, and overall SIEM performance.



Minimum Qualifications:

Experience:

  • 5-7 years of experience in cybersecurity or a related role, with hands-on experience managing SIEM systems.
  • Strong understanding of log analysis, rule-based threat detection, and incident response processes.
  • Familiarity with DoD cybersecurity policies and standards, including experience working with SIEM tools in a defense environment.

Education:

  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field (or equivalent experience).

Certifications:

  • Must meet DoD 8140/8570 IASAE Level II certification requirements, including one or more of the following certifications:
  • CASP CE
  • CISSP (or Associate)
  • CSSLP

Clearance:

  • Active DoD Secret clearance is required



Preferred Skills:

Technical Expertise:

  • Proficiency with SIEM tools such as Splunk, ArcSight, LogRhythm or QRadar, and familiarity with DoD-specific implementations.
  • Strong understanding of network security, log source validation, and rule-based threat detection.

Communication:

  • Strong verbal and written communication skills, with the ability to collaborate with both technical and non-technical stakeholders.
  • Experience preparing and delivering reports and presentations on SIEM performance and security incidents.

Problem Solving:

  • Ability to think analytically and make data-driven decisions to optimize SIEM configurations and rule effectiveness.



Salary : $140,000 - $150,000

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a SIEM Analyst (HYBRID)?

Sign up to receive alerts about other jobs on the SIEM Analyst (HYBRID) career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$75,004 - $94,003
Income Estimation: 
$95,426 - $117,847
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$139,945 - $168,577
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Employees: Get a Salary Increase
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Not the job you're looking for? Here are some other SIEM Analyst (HYBRID) jobs in the Smyrna, GA area that may be a better fit.

  • EY Atlanta, GA
  • Location: Anywhere in Country At EY, we’re all in to shape your future with confidence. We’ll help you succeed in a globally connected powerhouse of divers... more
  • 4 Days Ago

  • EY Alpharetta, GA
  • Location: Anywhere in Country At EY, we’re all in to shape your future with confidence. We’ll help you succeed in a globally connected powerhouse of divers... more
  • 4 Days Ago

AI Assistant is available now!

Feel free to start your new journey!