Talent.com
Security Infrastructure Support SIEM & Data Pipeline Technical Lead / Subject-Matter Expert (SME)
Security Infrastructure Support SIEM & Data Pipeline Technical Lead / Subject-Matter Expert (SME)Cybervance • Bethesda, MD, United States
Security Infrastructure Support SIEM & Data Pipeline Technical Lead / Subject-Matter Expert (SME)

Security Infrastructure Support SIEM & Data Pipeline Technical Lead / Subject-Matter Expert (SME)

Cybervance • Bethesda, MD, United States
1 day ago
Job type
  • Full-time
Job description

Position Title : Security Infrastructure Support SIEM & Data Pipeline Technical Lead / Subject-Matter Expert (SME)

Location : Bethesda, MD | Hybrid- Not Remote

Cybervance is a rapidly growing information security and information technology company based in Washington, D.C., and we are an equal opportunity employer. We design, develop, and manage the successful execution of training programs for government and private sector organizations. Cybervance believes in creating innovative solutions to deliver measured results.

We are seeking an experienced SIEM & Data Pipeline Technical Lead / Subject-Matter Expert (SME) to provide enterprise-level leadership and hands-on expertise in the design, development, and optimization of security information and event management (SIEM) systems and data pipeline integrations. The successful candidate will oversee the ingestion, normalization, and enrichment of log data across hybrid cloud and on-premises environments to enhance threat detection, incident response, and compliance reporting.

This role requires a deep technical understanding of SIEM platforms, data architecture, and DevSecOps practices. The ideal candidate will possess strong leadership skills, technical acumen, and the ability to communicate complex data and security concepts effectively to both technical and executive stakeholders.

Responsibilities

  • Lead the design, implementation, and administration of enterprise SIEM solutions to support cybersecurity operations, compliance, and threat intelligence objectives.
  • Architect and manage data ingestion pipelines, including log routing, filtering, and transformation for on-premises and cloud environments.
  • Develop and maintain data normalization, enrichment, and correlation rules to ensure accurate and actionable security event data.
  • Implement and manage data collection tools and agents to gather logs from diverse sources, including cloud, infrastructure, endpoint, and application systems.
  • Integrate data from hybrid infrastructure environments (on-premises and cloud) using services such as AWS CloudTrail, GuardDuty, Azure Sentinel, and O365 Security & Compliance Center.
  • Apply DevOps and CI / CD tools to create reliable, repeatable, and automated data pipeline processes supporting continuous monitoring and detection.
  • Develop and maintain automation scripts and utilities in JavaScript and Python for pipeline management, log parsing, and system integration.
  • Write and optimize complex queries in Splunk Processing Language (SPL) or SQL for analytics, dashboards, and operational reporting.
  • Ensure compliance with federal cybersecurity frameworks such as FISMA, NIST SP 800-53, NIST SP 800-92, OMB M-21-31, and CDM.
  • Collaborate with cybersecurity operations, infrastructure, and DevOps teams to ensure comprehensive coverage and efficient performance of data collection and SIEM operations.
  • Develop and maintain data dictionaries, documentation, and standard operating procedures (SOPs) for SIEM and data pipeline management.
  • Provide technical leadership and mentorship, ensuring consistency in implementation, monitoring, and troubleshooting across teams.
  • Communicate complex technical information and security concepts to both technical staff and executive stakeholders in clear, actionable terms.
  • Apply data governance principles to ensure data accuracy, completeness, and protection throughout the security pipeline.
  • Leverage the MITRE ATT&CK framework to align event data correlation with real-world adversarial behaviors and threat models.
  • Collaborate with third-party vendors and cross-functional teams to support integrations, resolve technical challenges, and ensure enterprise interoperability.

Experience

  • 10+ years of experience designing, installing, maintaining, and supporting enterprise IT systems.
  • 5+ years of experience at the Senior Engineer level or higher.
  • 3+ years of specific experience implementing and administering SIEM platforms or related cybersecurity tools.
  • Proven experience supporting hybrid infrastructures (on-premises and cloud) including AWS, Azure, and Microsoft 365.
  • In-depth experience with SIEM platforms (e.g., Splunk, QRadar, Sentinel) and data collection tools (e.g., Cribl, Logstash, Fluentd).
  • Proficiency with log routing, filtering, and transformation tools.
  • Strong understanding of log formats (CEF, LEEF, JSON, XML) and data normalization, enrichment, and correlation techniques.
  • Hands-on experience implementing CI / CD pipelines and DevOps automation to support data ingestion and SIEM configuration management.
  • Strong scripting skills in JavaScript and Python for pipeline automation, API integration, and data parsing.
  • Proficiency in query languages such as SPL (Splunk) and SQL for building analytics, dashboards, and reports.
  • Experience with data governance, data lifecycle management, and event taxonomy design.
  • Familiarity with the MITRE ATT&CK framework and its application to SIEM rule development and event correlation.
  • Experience with federal compliance frameworks including FISMA, NIST 800-53, NIST 800-92, OMB M-21-31, and CDM.
  • Strong analytical and troubleshooting abilities to identify and resolve SIEM data flow, parsing, and correlation issues.
  • Proven ability to diagnose complex data pipeline failures and optimize performance across systems.
  • Excellent verbal and written communication skills, capable of translating complex data architecture and cybersecurity concepts to both technical and executive audiences.
  • Demonstrated ability to lead multidisciplinary teams, coordinate with vendors, and manage large-scale SIEM deployments.
  • Strong documentation skills, with experience producing SOPs, risk assessments, and technical reports.
  • Required Skills & Qualifications

  • Bachelor’s degree in computer science, Information Technology, Cybersecurity, or a related field (preferred).
  • Required Clearances

  • Current government security clearance : Public Trust.
  • Preferred Qualifications

  • Certifications such as CISSP, CISM, Splunk Enterprise Certified Architect, AWS Certified Security Specialty, or Microsoft Certified : Azure Security Engineer Associate.
  • Experience with data streaming technologies (Kafka, Kinesis, or similar) and data lake integrations.
  • Knowledge of Zero Trust Architecture and continuous monitoring methodologies.
  • Familiarity with automation frameworks (Ansible, Terraform, or CloudFormation) for infrastructure-as-code deployments.
  • #J-18808-Ljbffr

    Create a job alert for this search

    Data Infrastructure • Bethesda, MD, United States

    Related jobs
    Director of IAM Cloud Security

    Director of IAM Cloud Security

    VirtualVocations • Alexandria, Virginia, United States
    Full-time
    A company is looking for a Director of IAM Cloud Product in Information Security.Key Responsibilities Lead the strategy, design, and delivery of cloud-native IAM capabilities across various servi...Show more
    Last updated: 10 hours ago • Promoted • New!
    Senior Security Engineer

    Senior Security Engineer

    VirtualVocations • Baltimore, Maryland, United States
    Full-time
    A company is looking for a Senior Security Engineer to lead and enhance enterprise security capabilities across cloud and hybrid environments. Key Responsibilities Guide security initiatives and l...Show more
    Last updated: 30+ days ago • Promoted
    Information Security Specialist II

    Information Security Specialist II

    Oceaneering International, Inc. • Hanover, MD, United States
    Full-time
    Oceaneering Technologies (OTECH) develops, manufactures, and operates customized marine systems, shipboard equipment, subsea vehicles, and engineered solutions for commercial and U.Oceaneering Aero...Show more
    Last updated: 11 days ago • Promoted
    Senior Director of Network Security

    Senior Director of Network Security

    VirtualVocations • Baltimore, Maryland, United States
    Full-time
    Key Responsibilities Lead the implementation and management of controls for organizational compliance with regulatory and contractual obligations Establish and maintain relationships with busine...Show more
    Last updated: less than 1 hour ago • Promoted • New!
    Security Infrastructure Support SIEM & Data Pipeline Tech Lead - NIH

    Security Infrastructure Support SIEM & Data Pipeline Tech Lead - NIH

    cFocus Software Incorporated • Rockville, MD, US
    Full-time
    Quick Apply
    Security Infrastructure Support SIEM & Data Pipeline Technical Lead / Subject-Matter Expert (SME) Overview cFocus Software is seeking a Security Infrastructure Support SIEM & Data Pipeline ...Show more
    Last updated: 9 days ago
    Senior Manager, Offensive Security

    Senior Manager, Offensive Security

    VirtualVocations • Baltimore, Maryland, United States
    Full-time
    Key Responsibilities Lead Red Team operations and development, mentoring less experienced staff Conduct assessments to identify vulnerabilities in software, systems, and networks Manage the Bug...Show more
    Last updated: 4 days ago • Promoted
    Task 5 Lead / Security Specialist SME

    Task 5 Lead / Security Specialist SME

    Peraton • Falls Church, VA, US
    Full-time
    Task 5 Lead / Security Specialist Sme.Peraton is seeking a Task 5 Lead / Security Specialist SME.Responsible for the performance and execution of all security task projects and activities.This includes...Show more
    Last updated: 16 hours ago • Promoted • New!
    LEAD INFORMATION SECURITY ENGINEER

    LEAD INFORMATION SECURITY ENGINEER

    Lumen Technologies • Herndon, VA, United States
    Full-time
    We are igniting business growth by connecting people, data and applications - quickly, securely, and effortlessly.Together, we are building a culture and company from the people up - committed to t...Show more
    Last updated: 11 days ago • Promoted
    Senior Security Engineer

    Senior Security Engineer

    Legal & General America • Frederick, MD, United States
    Full-time
    At Legal & General America, we aim to make a positive difference in the lives of our customers, partners, colleagues, and the communities in which they live. As a recognized market leader of term li...Show more
    Last updated: 30+ days ago • Promoted
    ISMS Consultant

    ISMS Consultant

    VirtualVocations • Baltimore, Maryland, United States
    Full-time
    A company is looking for an ISMS Consultant (w / m / d) to support their IT-Security team in the area of Information Security Management Systems (ISMS). Key Responsibilities Establish, implement, and ...Show more
    Last updated: 1 day ago • Promoted
    SOC Analyst

    SOC Analyst

    VirtualVocations • Baltimore, Maryland, United States
    Full-time
    A company is looking for a SOC Analyst to review data and identify anomalies for further investigation.Key Responsibilities Review data to identify anomalies requiring further investigation Perf...Show more
    Last updated: 30+ days ago • Promoted
    Security Control Assessor

    Security Control Assessor

    VirtualVocations • Baltimore, Maryland, United States
    Full-time
    A company is looking for a Security Control Assessor.Key Responsibilities Conduct comprehensive assessments of management, operational, and technical security controls Evaluate security controls...Show more
    Last updated: 30+ days ago • Promoted
    Director, Infrastructure

    Director, Infrastructure

    Legal & General America • Frederick, MD, United States
    Permanent
    At Legal & General America, we aim to make a positive difference in the lives of our customers, partners, colleagues, and the communities in which they live. As a recognized market leader of term li...Show more
    Last updated: 14 days ago • Promoted
    SIEM & Data Pipeline Technical Lead / SME

    SIEM & Data Pipeline Technical Lead / SME

    Gunnison Consulting Group, Inc. • Bethesda, MD, US
    Full-time
    This position is contingent upon a future opening with Gunnison.Salary : $155,000 - $185,000 / year.Hybrid, primarily remote with ad hoc on-site work, frequency TBD. This position serves as a Gunnison ...Show more
    Last updated: 9 days ago • Promoted
    Security Infrastructure Support Team Lead

    Security Infrastructure Support Team Lead

    Cybervance • Bethesda, MD, United States
    Full-time
    Cybervance is a rapidly growing information security and information technology company based in Washington, D.We design, develop, and manage the successful execution of training programs for gover...Show more
    Last updated: 3 days ago • Promoted
    Sr. TSCM Lead

    Sr. TSCM Lead

    Obsidian Solutions Group LLC • Dunn Loring, VA, US
    Full-time
    Senior Technical Surveillance Countermeasures (TSCM) Lead support (Level IV).Primary Location : Springfield, VA (NGA Campus). Obsidian Solutions Group is seeking a TSCM Operations Lead to ensure team...Show more
    Last updated: 19 days ago • Promoted
    NAVAIR - Software Development and Acquisitions Analyst

    NAVAIR - Software Development and Acquisitions Analyst

    SimVentions, Inc • Barstow, MD, US
    Full-time
    SimVentions is a 100% employee-owned business and has consistently been voted one of Virginia's Best Places to Work.We are seeking a detail-oriented candidate with extensive knowledge of computer o...Show more
    Last updated: 4 days ago • Promoted
    Information Security Awareness Lead

    Information Security Awareness Lead

    VirtualVocations • Alexandria, Virginia, United States
    Full-time
    A company is looking for an Information Security Awareness Lead to design and deliver security awareness initiatives.Key Responsibilities Develop and execute a multi-year security awareness train...Show more
    Last updated: 30+ days ago • Promoted