Demo

SIEM Content Engineer

Tyto Athene, LLC
Washington, DC Full Time
POSTED ON 1/8/2026
AVAILABLE BEFORE 2/6/2026

Tyto Athene is searching for a forward-thinking and self-motivated SIEM Content Engineer to focus on enhancing a government client’s detection content for their Security Operations Center (SOC). This exciting role requires curiosity, creativity, and critical thinking skills, as well as superior attention to detail, great organizational skills, and the ability to work in a highly collaborative work environment.



Responsibilities:

  • Evaluate existing SIEM content to determine which content should be removed or updated to improve fidelity
  • Leverage the MITRE ATT&CK framework, monitor the threat landscape and evaluate existing data sources to identify opportunities for new SIEM content development
  • Support the onboarding of new data sources by developing relevant SIEM content
  • Develop SIEM detection uses cases and review them with relevant stakeholders, such as security engineers, SIEM engineers, SOC analysts, and incident responders
  • Collaborate with security engineers to improve logging from various appliances and correct misconfigurations
  • Coordinate closely with SOC analysts and incident responders to develop playbooks for triaging and responding to events created by the SIEM tool
  • Develop and maintain a SIEM content catalog, including mapping to the MITRE ATT&CK framework, to improve the efficiency of deploying the security stack to new environments
  • Design, develop, and monitor various dashboards and reports that provide information on content coverage, alerting, and fidelity



Required:

  • Bachelor’s degree required
  • Eight (8) years of general work experience (with at least six (6) years of IT/Cyber experience) and two (2) years of experience using Splunk (or a similar SIEM tool) in a cybersecurity context (e.g., as a content developer, administrator, or SOC analyst, etc.…)
  • Direct experience developing SIEM content in collaboration with a Tier 1 security operations center
  • Effective verbal and written communication skills that include the ability to describe highly technical concepts in non-technical terms
  • Ability to manage, analyze, and report complex data in an easy-to-understand format for a variety of stakeholders
  • Familiarity with the MITRE ATT&CK Framework
  • Experience with Splunk and development
  • Experience developing Splunk dashboards, reports, and alerts



Desired:

  • Experience with Splunk Enterprise Security is a plus



Clearance:

  • Secret Clearance required



Location:

  • Remote

Salary : $150,000 - $160,000

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a SIEM Content Engineer?

Sign up to receive alerts about other jobs on the SIEM Content Engineer career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$86,356 - $101,827
Income Estimation: 
$108,740 - $126,996
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Tyto Athene, LLC

  • Tyto Athene, LLC Washington, DC
  • Tyto Athene is hiring a Data Visualization Developer to join a newly awarded contract supporting a federal customer. This role involves designing and devel... more
  • 13 Days Ago

  • Tyto Athene, LLC Annapolis, MD
  • Tyto Athene is searching for a Sr. IT Project Manager to join a team of expert engineers and technicians supporting a mission critical high profile governm... more
  • 13 Days Ago

  • Tyto Athene, LLC Gu Oidak, AZ
  • Description Tyto Athene is searching for a Network Specialist to support our NE&S contract at Andersen AFB, Guam. The Network Specialist ensures that the D... more
  • 3 Days Ago

  • Tyto Athene, LLC Baltimore, MD
  • Description Tyto Athene is seeking a Telecommunications Program Manager to support the Social Security Administration's Telecom Program and telephony syste... more
  • 3 Days Ago


Not the job you're looking for? Here are some other SIEM Content Engineer jobs in the Washington, DC area that may be a better fit.

  • Content Guru Reston, VA
  • Content Guru is a world-leading provider of enterprise cloud Customer Experiences (CX) and contact centre solutions, driving the future of communication te... more
  • 20 Days Ago

  • Amyx, Inc. Fort Belvoir, VA
  • SIEM Content Developer Job Locations US-VA-Ft. Belvoir ID 2025-4269 Category Defense Type Full Time Overview Amyx is looking to hire a SIEM Content Develop... more
  • 16 Days Ago

AI Assistant is available now!

Feel free to start your new journey!