Talent.com
Security Infrastructure Support SIEM & Data Pipeline Technical Lead / Subject-Matter Expert (SME)
Security Infrastructure Support SIEM & Data Pipeline Technical Lead / Subject-Matter Expert (SME)Cybervance • Bethesda, MD, United States
serp_jobs.error_messages.no_longer_accepting
Security Infrastructure Support SIEM & Data Pipeline Technical Lead / Subject-Matter Expert (SME)

Security Infrastructure Support SIEM & Data Pipeline Technical Lead / Subject-Matter Expert (SME)

Cybervance • Bethesda, MD, United States
job_description.job_card.30_days_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.full_time
job_description.job_card.job_description

Position Title : Security Infrastructure Support SIEM & Data Pipeline Technical Lead / Subject-Matter Expert (SME)

Location : Bethesda, MD | Hybrid- Not Remote

Cybervance is a rapidly growing information security and information technology company based in Washington, D.C., and we are an equal opportunity employer. We design, develop, and manage the successful execution of training programs for government and private sector organizations. Cybervance believes in creating innovative solutions to deliver measured results.

We are seeking an experienced SIEM & Data Pipeline Technical Lead / Subject-Matter Expert (SME) to provide enterprise-level leadership and hands-on expertise in the design, development, and optimization of security information and event management (SIEM) systems and data pipeline integrations. The successful candidate will oversee the ingestion, normalization, and enrichment of log data across hybrid cloud and on-premises environments to enhance threat detection, incident response, and compliance reporting.

This role requires a deep technical understanding of SIEM platforms, data architecture, and DevSecOps practices. The ideal candidate will possess strong leadership skills, technical acumen, and the ability to communicate complex data and security concepts effectively to both technical and executive stakeholders.

Responsibilities

  • Lead the design, implementation, and administration of enterprise SIEM solutions to support cybersecurity operations, compliance, and threat intelligence objectives.
  • Architect and manage data ingestion pipelines, including log routing, filtering, and transformation for on-premises and cloud environments.
  • Develop and maintain data normalization, enrichment, and correlation rules to ensure accurate and actionable security event data.
  • Implement and manage data collection tools and agents to gather logs from diverse sources, including cloud, infrastructure, endpoint, and application systems.
  • Integrate data from hybrid infrastructure environments (on-premises and cloud) using services such as AWS CloudTrail, GuardDuty, Azure Sentinel, and O365 Security & Compliance Center.
  • Apply DevOps and CI / CD tools to create reliable, repeatable, and automated data pipeline processes supporting continuous monitoring and detection.
  • Develop and maintain automation scripts and utilities in JavaScript and Python for pipeline management, log parsing, and system integration.
  • Write and optimize complex queries in Splunk Processing Language (SPL) or SQL for analytics, dashboards, and operational reporting.
  • Ensure compliance with federal cybersecurity frameworks such as FISMA, NIST SP 800-53, NIST SP 800-92, OMB M-21-31, and CDM.
  • Collaborate with cybersecurity operations, infrastructure, and DevOps teams to ensure comprehensive coverage and efficient performance of data collection and SIEM operations.
  • Develop and maintain data dictionaries, documentation, and standard operating procedures (SOPs) for SIEM and data pipeline management.
  • Provide technical leadership and mentorship, ensuring consistency in implementation, monitoring, and troubleshooting across teams.
  • Communicate complex technical information and security concepts to both technical staff and executive stakeholders in clear, actionable terms.
  • Apply data governance principles to ensure data accuracy, completeness, and protection throughout the security pipeline.
  • Leverage the MITRE ATT&CK framework to align event data correlation with real-world adversarial behaviors and threat models.
  • Collaborate with third-party vendors and cross-functional teams to support integrations, resolve technical challenges, and ensure enterprise interoperability.

Experience

  • 10+ years of experience designing, installing, maintaining, and supporting enterprise IT systems.
  • 5+ years of experience at the Senior Engineer level or higher.
  • 3+ years of specific experience implementing and administering SIEM platforms or related cybersecurity tools.
  • Proven experience supporting hybrid infrastructures (on-premises and cloud) including AWS, Azure, and Microsoft 365.
  • In-depth experience with SIEM platforms (e.g., Splunk, QRadar, Sentinel) and data collection tools (e.g., Cribl, Logstash, Fluentd).
  • Proficiency with log routing, filtering, and transformation tools.
  • Strong understanding of log formats (CEF, LEEF, JSON, XML) and data normalization, enrichment, and correlation techniques.
  • Hands-on experience implementing CI / CD pipelines and DevOps automation to support data ingestion and SIEM configuration management.
  • Strong scripting skills in JavaScript and Python for pipeline automation, API integration, and data parsing.
  • Proficiency in query languages such as SPL (Splunk) and SQL for building analytics, dashboards, and reports.
  • Experience with data governance, data lifecycle management, and event taxonomy design.
  • Familiarity with the MITRE ATT&CK framework and its application to SIEM rule development and event correlation.
  • Experience with federal compliance frameworks including FISMA, NIST 800-53, NIST 800-92, OMB M-21-31, and CDM.
  • Strong analytical and troubleshooting abilities to identify and resolve SIEM data flow, parsing, and correlation issues.
  • Proven ability to diagnose complex data pipeline failures and optimize performance across systems.
  • Excellent verbal and written communication skills, capable of translating complex data architecture and cybersecurity concepts to both technical and executive audiences.
  • Demonstrated ability to lead multidisciplinary teams, coordinate with vendors, and manage large-scale SIEM deployments.
  • Strong documentation skills, with experience producing SOPs, risk assessments, and technical reports.
  • Required Skills & Qualifications

  • Bachelor’s degree in computer science, Information Technology, Cybersecurity, or a related field (preferred).
  • Required Clearances

  • Current government security clearance : Public Trust.
  • Preferred Qualifications

  • Certifications such as CISSP, CISM, Splunk Enterprise Certified Architect, AWS Certified Security Specialty, or Microsoft Certified : Azure Security Engineer Associate.
  • Experience with data streaming technologies (Kafka, Kinesis, or similar) and data lake integrations.
  • Knowledge of Zero Trust Architecture and continuous monitoring methodologies.
  • Familiarity with automation frameworks (Ansible, Terraform, or CloudFormation) for infrastructure-as-code deployments.
  • #J-18808-Ljbffr

    serp_jobs.job_alerts.create_a_job

    Data Infrastructure • Bethesda, MD, United States

    Job_description.internal_linking.related_jobs
    ISSM II : Security Authorization Lead (Onsite)

    ISSM II : Security Authorization Lead (Onsite)

    Dobbs Defense Solutions, LLC • Washington, DC, United States
    serp_jobs.job_card.full_time
    A defense contracting company located in Minnesota is looking for an experienced Information System Security Manager (ISSM) to oversee the security of information systems and ensure compliance with...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    National Security ISSM - RMF & Cybersecurity Leader

    National Security ISSM - RMF & Cybersecurity Leader

    KBR • Bethesda, MD, United States
    serp_jobs.job_card.full_time
    A leading defense contractor is seeking an Information System Security Manager (ISSM) in Maryland to provide cybersecurity and risk management support. The role involves leading security audits, del...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Chemical Security & Elimination Subject Matter Expert (SME)

    Chemical Security & Elimination Subject Matter Expert (SME)

    Red Gate Group • Fort Belvoir, Virginia, USA
    serp_jobs.job_card.full_time
    The Red Gate Group is seeking a Chemical Security & Elimination Subject Matter Expert (SME) to support the Defense Threat Reduction Agency (DTRA). In this mission-critical role you will help str...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Director of Cybersecurity, Infrastructure & Secure Architecture

    Director of Cybersecurity, Infrastructure & Secure Architecture

    Klaritee • Washington, DC, United States
    serp_jobs.job_card.full_time
    The Executive Director of the Klaritee Federal Safety Council and the Director of Regulatory Affairs, Law & Civic Compliance will jointly lead the recruitment process for this role beginning in Jan...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_1_day • serp_jobs.job_card.promoted
    Lead Data Loss Prevention (DLP) Security Engineer

    Lead Data Loss Prevention (DLP) Security Engineer

    CoStar Realty Information, Inc. • Arlington, VA, United States
    serp_jobs.job_card.full_time
    Lead Data Loss Prevention (DLP) Security Engineer.CoStar Group (NASDAQ : CSGP) is a leading global provider of commercial and residential real estate information, analytics, and online marketplaces....serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Security Engineer (ISSE) Columbia, MD

    Security Engineer (ISSE) Columbia, MD

    Polaris Consulting Group • Columbia, MD, United States
    serp_jobs.job_card.full_time
    Polaris is looking for an Information Systems Security Engineer (ISSE).Candidate will perform system or network designs that encompass multiple enclaves, to include those with differing data protec...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    SiteScope SME

    SiteScope SME

    Computer World Services • Bethesda, MD, US
    serp_jobs.job_card.full_time
    Computer World Services Corp (CWS) is seeking an exceptional candidate to serve as the SiteScope SME for the National Institutes of Health (NIH) Center for Information Technology (CIT) Operations M...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Sr / Mid-level Security Engineer

    Sr / Mid-level Security Engineer

    Piper Companies • Fulton, MD, United States
    serp_jobs.job_card.full_time
    Piper Companies is seeking a Sr / Mid-level Security Engineer.The Sr / Mid-level Security Engineer will have a strong background in security monitoring, incident response, and cloud security, with hand...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Information System Security Manager (ISSM)

    Information System Security Manager (ISSM)

    The Johns Hopkins University Applied Physics Laboratory • Laurel, MD, United States
    serp_jobs.job_card.full_time
    Do you love solving problems while enabling impactful research to operate securely?.Are you passionate about making meaningful contributions to national security cyber missions?.Do you like collabo...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Security Specialist Team Lead

    Security Specialist Team Lead

    QinetiQ US • Fort Belvoir, Virginia, USA
    serp_jobs.job_card.temporary
    We are a world-class team of professionals who deliver next generation technology and products in robotic and autonomous platforms ground soldier and maritime systems in 50 locations world-wide.Muc...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_1_day • serp_jobs.job_card.promoted
    Senior Strategic Consultant - DOS Training Security Engineering

    Senior Strategic Consultant - DOS Training Security Engineering

    Dexis Consulting Group • Washington, DC, US
    serp_jobs.job_card.full_time
    Senior Strategic Consultant - DOS Training Security Engineering.Dexis is a dynamic professional services firm dedicated to partnering with government and community leaders both in the U.At Dexis, y...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_hours • serp_jobs.job_card.promoted • serp_jobs.job_card.new
    Sr. Manager - Network Security Engineering & Ops (Remote)

    Sr. Manager - Network Security Engineering & Ops (Remote)

    Donnelley Financial, LLC • Rockville, MD, United States
    serp_jobs.filters.remote
    serp_jobs.job_card.full_time
    Join a dynamic team at the pulse of global markets, where we deliver innovative software and service solutions for essential financial reporting and capital markets transactions.At DFIN, we are a v...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Lead Adversarial Security Engineer

    Lead Adversarial Security Engineer

    Trellix • Washington, DC, United States
    serp_jobs.job_card.full_time
    Lead Adversarial Security Engineer.Trellix, the trusted CISO ally, is redefining the future of cybersecurity and soulful work. Our comprehensive, GenAI-powered platform helps organizations confronte...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Cloud Security Subject Matter Expert (SME)

    Cloud Security Subject Matter Expert (SME)

    Peraton • Beltsville, Maryland, USA
    serp_jobs.job_card.full_time
    Peraton is currently seeking an experienced.CIRT Cloud Security Subject Matter Expert (SME).Federal Strategic Cyber Program. The customer requirement requires every employee to be onsite for the fir...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    SIEM & Data Pipeline Technical Lead / SME

    SIEM & Data Pipeline Technical Lead / SME

    MBL Technologies, Inc. • Bethesda, MD, United States
    serp_jobs.job_card.full_time
    Federal government and commercial markets.Our solutions are tailored to support each client’s mission, accounting for their unique needs and operating environments to ensure success.We bring the ri...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Technology Solutions Security Leader

    Technology Solutions Security Leader

    AECOM • Arlington County, Virginia, USA
    serp_jobs.job_card.full_time
    Technology Solutions Security Leader.Security specialty within the Technology Solutions practice.The candidate will be responsible for the following areas. Articulates the Technology Solutions strat...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_hours • serp_jobs.job_card.promoted • serp_jobs.job_card.new
    Security Infrastructure Support Senior Security Engineer

    Security Infrastructure Support Senior Security Engineer

    KellyMitchell Group • Bethesda, MD, United States
    serp_jobs.job_card.full_time
    Our client is seeking a Security Infrastructure Support Senior Security Engineer to join their team! This position is located in Bethesda, Maryland. Design, deploy, and maintain enterprise IT securi...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Regional Cyber Security Assessor (RCSO)

    Regional Cyber Security Assessor (RCSO)

    AGR, LLC • Beltsville, MD, US
    serp_jobs.job_card.full_time
    We are currently seeking an experienced.Regional Cyber Security Assessor (RCSO) Analyst.RCSO's are cyber security consultants and experts whose core function is to support and implement the cyber s...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted