×
Register Here to Apply for Jobs or Post Jobs. X

TS​/SCI Cyber Security Engineer

Job in San Antonio, Bexar County, Texas, 78208, USA
Listing for: Insight Global
Full Time position
Listed on 2026-02-21
Job specializations:
  • IT/Tech
    Cybersecurity, Systems Engineer, Security Manager, Network Security
Salary/Wage Range or Industry Benchmark: 100000 - 125000 USD Yearly USD 100000.00 125000.00 YEAR
Job Description & How to Apply Below

CANDIDATES MUST HAVE AN ACTIVE TOP-SECRET SCI SECURITY CLEARANCE TO BE CONSIDERED FOR THIS ROLE!!

Position: TS/SCI SIEM Cyber Security Engineer

Location:

ONSITE in San Antonio, TX at JBSA-Lackland Salary: $,000/year (depending on experience) Required

Skills & Experience:
  • Active Top-Secret SCI (TS/SCI) security clearance
  • Active GIAC Machine Learning Engineer (GMLE) certification or a bachelor's degree in computer science
  • 2-3+ years of experience using SIEM technology (Arc Sight, Splunk, and/or ELK) for log handling, reports, filters, rule creation, etc.
  • 2-3+ years of network traffic analysis experience (understanding protocols and identifying ports)
Preferred

Skills & Experience:
  • Experience with DoD (Air Force, Navy, Army, etc.) Intrusion Detection Systems (IDS) and Intrusion Prevention Systems (IPS)
  • Experience with MITRE ATT&CK framework
  • Experience with Security, Orchestration, Automation, and Response (SOAR) platforms such as Phantom or Demisto
  • Experience with Python and Power Shell
Job Description:

Insight Global is seeking a SIEM Cyber Security Engineer to support a critical mission focused on detecting, analyzing, and responding to cyber threats across a large enterprise environment. This role plays a key part in improving security visibility, reducing false positives, and ensuring early detection of malicious activity through effective SIEM content and automation.

Key responsibilities include:

  • Analyze cyber defense (DCO) events and security logs to identify malicious or suspicious activity
  • Apply current industry SIEM best practices to improve detection accuracy and overall performance
  • Correlate security alerts with enriched log data to distinguish legitimate threats from false positives
  • Monitor and assess the effectiveness of security controls, including identifying unauthorized outbound connections
  • Develop and maintain SIEM detections and use cases through enterprise‑wide log analysis
  • Build dashboards and visualizations that highlight adversary behavior and security trends
  • Create virtual “tripwires” using log data to enable early threat detection
  • Design, implement, test, and tune SIEM solutions to optimize performance and reliability
  • Build, test, and validate SIEM rules, filters, and correlation logic
  • Continuously tune SIEM content to reduce noise caused by known behavior, false positives, and system errors
  • Analyze malware threats and develop behavior‑based detections to alert on or prevent malicious activity
  • Automate SIEM tasks using scripting or programming languages
  • Create scheduled and ad‑hoc reports using SIEM tools to support operational and compliance needs
  • Develop and maintain SIEM documentation, processes, and knowledge repositories
  • Track metrics and trends to measure detection effectiveness and improve mission outcomes
  • Support operational leadership with SIEM content development and reporting needs
#J-18808-Ljbffr
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)

Job Posting Language
Employment Category
Education (minimum level)
Filters
Education Level
Experience Level (years)
Posted in last:
Salary