Demo

Security Architect - Consultant - SIEM Engineer for Remote Work

Syntricate
Columbia, SC Remote Contractor
POSTED ON 7/17/2026
AVAILABLE BEFORE 8/15/2026
Requisition Name:   Security Architect - Consultant - SIEM Engineer
Work Address –  Remote Work - 100% Remote. Preference will be given to local candidates who can come to the office as needed for client and departmental meetings, trainings, and other onsite activities.).
Duration of the Contract: 12 Months
Possibility for Extension: Yes
 
 
Security Architect - Consultant – SIEM Engineer
 
Daily Duties and Responsibilities
 
  1. This position is 100% remote and participates in a monthly on-call rotation supporting a 24x7 Security Operations Center serving multiple state agencies. Additional after-hours work may be required as needed.
  2. Enterprise SIEM and XDR
  3. Primarily assist in the planning, design, deployment, administration, and operational support of enterprise SIEM and XDR capabilities, including:
  4. Palo Alto Cortex XSIAM and Cortex XDR platform engineering, configuration, optimization, and troubleshooting
  5. Multi-tenant agency onboarding, tenant-specific configuration, role-based access, data segregation, dashboards, and reporting
  6. Detection engineering, correlation rules, analytics, threat-hunting queries, watchlists, suppression logic, and false-positive reduction
  7. Log Management and Security Data Pipelines
  8. Secondarily assist in the planning, design, deployment, and operational support of log management and security data pipelines, including:
  9. Cribl data modeling, log pipeline design, routing, parsing, normalization, enrichment, filtering, replay, and ingestion
  10. Onboarding and health monitoring of cloud, endpoint, network, identity, SaaS, and custom application telemetry
  11. Log volume, retention, performance, and cost optimization while maintaining security and compliance requirements
  12. Integrations with ticketing, case management, notification, identity, threat intelligence, and other enterprise systems as needed

    Additional Responsibilities
  13. Develop, test, deploy, and maintain automated response workflows and playbooks for enrichment, triage, containment, escalation, notifications, case management, and incident response.
  14. Create and maintain operational runbooks, standard operating procedures, escalation matrices, troubleshooting guides, architecture diagrams, data-flow documentation, use-case catalogs, and analyst knowledge articles.
  15. Support Tier 1 through Tier 3 SOC analysts and incident responders through platform troubleshooting, detection tuning, threat hunting, technical escalation, knowledge transfer, and shift handoffs.
  16. Monitor and report on ingestion health, platform availability, alert volumes, detection coverage, false positives, service levels, mean time to detect, mean time to respond, and tenant-specific operational metrics.
  17. Ensure high availability, resilience, backup, recovery, lifecycle management, and controlled change processes for SIEM, XDR, and supporting log pipeline services.
  18. Collaborate with security architects, engineers, analysts, and agency stakeholders to align solutions with business goals, industry-standard frameworks, regulatory requirements, and organizational risk tolerance.
 
Required Skills (Ranked in Order of Importance)
  1. Hands-on Palo Alto Cortex XSIAM and Cortex XDR design, implementation, administration, and operational support.
  2. Experience engineering and supporting SIEM capabilities for multi-tenant environments and 24x7 Security Operations Center operations.
  3. Experience developing and tuning detections, correlation rules, analytics, threat-hunting queries, dashboards, reporting, and alert suppression logic.
  4. Strong experience creating and managing complex playbooks.
  5. Cribl data modeling, log pipeline design, parsing, normalization, enrichment, routing, and ingestion.
  6. Experience developing automation, integrations, playbooks, and response workflows using scripting languages such as Python and Bash.
  7. Experience onboarding and troubleshooting telemetry from cloud, endpoint, network, identity, SaaS, Linux, Windows, and custom application sources.
  8. Strong understanding of enterprise security architecture, incident response, networking, access control, secure system design, and industry-standard cybersecurity frameworks.
 
Preferred Skills (Ranked in Order of Importance)
  1. Hands-on experience operating Cortex XSIAM and Cortex XDR in a large, multi-tenant environment.
  2. Hands-on Cribl administration, data modeling, and log pipeline optimization experience.
  3. Experience supporting Tier 1 through Tier 3 SOC analysts, threat hunting, incident response, and 24x7 operational handoffs.
  4. Familiarity with industry-standard security and compliance frameworks and experience developing playbooks, runbooks, procedures, and technical documentation.
 
Required Education and Certifications
  1. Bachelor''s degree in an Information Technology or Information Security-related field.
  2. Eight years of relevant work experience may be substituted in lieu of education.
  3. Five years of experience supporting large IT environments and/or system deployments.
 
Preferred Education and Certifications
  1. CISSP, Security , or GIAC certification.
  2. Palo Alto Cortex, Cribl, or other relevant SIEM/security platform certification.

Hourly Wage Estimation for Security Architect - Consultant - SIEM Engineer for Remote Work in Columbia, SC
$52.00 to $64.00
If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Security Architect - Consultant - SIEM Engineer for Remote Work?

Sign up to receive alerts about other jobs on the Security Architect - Consultant - SIEM Engineer for Remote Work career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$125,027 - $157,872
Income Estimation: 
$149,432 - $188,965
Income Estimation: 
$122,763 - $145,698
Income Estimation: 
$136,611 - $163,397
Income Estimation: 
$135,163 - $163,519
Income Estimation: 
$131,953 - $159,624
Income Estimation: 
$150,859 - $181,127
Employees: Get a Salary Increase
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Syntricate

  • Syntricate Boise, ID
  • Requisition ID: 799664 Requisition Name: Data Migration Field Support Technician Duration: 6 months [Extension Possible] Work Location : Boise, ID [Onsite]... more
  • 12 Days Ago

  • Syntricate Nashville, TN
  • Requisition ID: 65583 Requisition Name: Web Accessibility Consultant Duration: 05/21/2026 - 02/20/2027 Work Location : Nashville, Tennessee 37243 Shift tim... more
  • 12 Days Ago

  • Syntricate Jackson, TN
  • We are looking for Environmental Scientist in Jackson, TN Hybrid. Please read the job description below and let me know if you are interested. Position: En... more
  • 14 Days Ago

  • Syntricate Lansing, MI
  • Requisition Name: Database Administrator 5 Location :- Lansing MI , First Round- Virtual interview via MS Teams (video required). Candidates should join fr... more
  • 2 Days Ago


Not the job you're looking for? Here are some other Security Architect - Consultant - SIEM Engineer for Remote Work jobs in the Columbia, SC area that may be a better fit.

  • InterSources Inc Columbia, SC
  • Title: Security Architect – Consultant (SIEM Engineer) – (12751) Location: Columbia, SC 29210100% Remote Candidate Location: Open to nationwide candidates;... more
  • 5 Days Ago

  • TALENT Software Services Columbia, SC
  • Daily Duties / Responsibilities Work Schedule 100% Remote position. Participate in a monthly on-call rotation supporting a 24x7 Security Operations Center ... more
  • 5 Days Ago

AI Assistant is available now!

Feel free to start your new journey!