Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Senior SIEM Engineer (ELK / Sentinel) image - Rise Careers
Job details

Senior SIEM Engineer (ELK / Sentinel)

About Coalfire


Coalfire is on a mission to make the world a safer place by solving our clients’ hardest cybersecurity challenges. We work at the cutting edge of technology to advise, assess, automate, and ultimately help companies navigate the ever-changing cybersecurity landscape. We are headquartered in Denver, Colorado with offices across the U.S. and U.K., and we support clients around the world.


But that’s not who we are – that’s just what we do.

 

We are thought leaders, consultants, and cybersecurity experts, but above all else, we are a team of passionate problem-solvers who are hungry to learn, grow, and make a difference.


Position Summary

We’re looking for a Senior SIEM Engineer to play a central role in implementing and maintaining robust security monitoring solutions—ensuring our clients stay protected against emerging cyber threats and remain compliant with industry standards. If you’re driven by a desire to innovate and thrive in a collaborative environment, come be part of a team committed to making the world a safer place.


What You'll Do
  • Collaborate with a high-performing engineering team to deliver specialized security and cloud solutions across private and public sector environments.
  • Serve as a cloud Subject Matter Expert (SME) by leading design, architecture, and deployment engagements in AWS, Azure, or GCP, leveraging automated orchestration and configuration management.
  • Partner with leading Cloud Service Providers (CSPs) and enterprise clients to meet stringent security requirements and drive digital transformation efforts.
  • Implement, update, and maintain security tooling solutions (e.g., Trend Micro, CrowdStrike, Microsoft Defender) to ensure robust threat detection, AV protection, and compliance.
  • Implement, maintain, and update SIEM solutions (e.g., Splunk, Sentinel, ELK, LogRhythm, Sumo Logic) to enhance visibility and proactively mitigate cyber threats.
  • Develop client cloud and security strategies, including future-state architectures, roadmaps, and transformation plans.
  • Conduct cloud configuration and maturity reviews to identify gaps, optimize performance, and strengthen security posture.
  • Coordinate with clients and internal teams to establish the right balance of defense-in-depth techniques, translating security objectives into secure, scalable solutions.
  • Leverage Infrastructure-as-Code to build and implement secure and compliant enterprise servers, network infrastructures, boundary protections, and cloud architectures.
  • Work across diverse technology stacks in AWS, Azure, and GCP, utilizing native cloud services to enhance deployments and streamline operations.
  • Provide guidance during security assessment and authorization processes, ensuring alignment with industry frameworks and compliance standards.
  • Author and peer-review detailed design documentation, including security documentation and vendor best practices, to maintain consistently high-quality deliverables.


What You'll Bring
  • 5+ years of hands-on systems engineering and architecture experience—including requirements definition, architecture development, use-case/story creation, and systems integration/testing.
  • 5+ years of cloud experience in architecture, design, implementation, operations, and automation (AWS, Azure, or GCP).
  • Advanced proficiency with Infrastructure-as-Code (IaC) and orchestration/automation tools (e.g., Terraform, Ansible).
  • Proven expertise with SIEM platforms (e.g., Splunk, Sentinel, ELK, LogRhythm, Sumo Logic) and enterprise antivirus (AV) solutions (e.g., Trend Micro, CrowdStrike, Microsoft Defender).
  • Deep understanding of AWS, Azure, or GCP platform capabilities (ideally as a Cloud Architect, Cloud DevOps Engineer, or Cloud Security Engineer).
  • Experience working in Agile environments with technical teams of three or more individuals.
  • Excellent communication, organizational, and problem-solving skills, with the ability to convey complex technical information clearly.
  • Strong documentation skills for creating technical diagrams, written descriptions, and other supporting materials.
  • Demonstrated ability to work both independently and as a member of a team, maintaining a professional attitude and demeanor.
  • Critical thinking skills to balance robust security requirements against mission objectives.
  • Proven track record of adapting quickly and efficiently in fast-paced, dynamic environments
  • Proven track record delivering end-to-end SIEM solutions in large-scale or high-compliance environments—from initial design through operational handover.
  • Hands-on leadership or senior-level contribution in cloud security projects, collaborating across cross-functional teams (e.g., DevOps, architecture, compliance) to drive impactful security outcomes.
  • Documented success integrating multiple security tools (SIEM, AV, intrusion detection systems, etc.) into a cohesive, enterprise-wide monitoring solution.
  • History of working under strict regulatory or industry frameworks (e.g., FedRAMP, HIPAA, PCI), ensuring solutions meet required standards without sacrificing performance.
  • Demonstrable client-facing experience in a consulting or services capacity, maintaining professionalism and clear communication in high-stakes or fast-paced engagements.


Bonus Points
  • Professional services background: Prior experience supporting external clients from within a consulting or professional services organization.
  • Advanced threat detection: Hands-on experience with techniques such as user and entity behavior analytics (UEBA) or machine learning-based anomaly detection.
  • Automation capabilities: Experience automating workflows in GitLab or GitHub with Terraform and Ansible.
  • Modern application architectures: Proven expertise with serverless, microservices, and related technologies.
  • Configuration baseline standards: Familiarity with CIS Benchmarks, DISA STIG, and other relevant guidelines.
  • Encryption technologies: Hands-on experience implementing SSL, PKI, and other encryption methods.
  • Compliance frameworks: Understanding of FedRAMP, FISMA, HIPAA, HITRUST, PCI, and similar regulatory standards.
  • Splunk Enterprise Certified Admin or SumoLogic Administration or Microsoft Security Operations Analyst Associate
  • AWS Solutions Architect Professional or AWS DevOps Engineer Professional or Azure Solutions Architect Expert or GCP Cloud Architect
  • Splunk Enterprise Certified Architect or Splunk Certified Automation Developer




$78,000 - $135,000 a year
The salary range listed is a reasonable estimate of the compensation range for this role based on national salary averages. The actual salary offer to the successful candidate will be based on job-related education, geographic location, training, licensure and certifications and other factors. You may also be eligible to participate in annual incentive, commission, and/or recognition programs.

Why You’ll Want to Join Us


At Coalfire, you’ll find the support you need to thrive personally and professionally. In many cases, we provide a flexible work model that empowers you to choose when and where you’ll work most effectively – whether you’re at home or an office.


Regardless of location, you’ll experience a company that prioritizes connection and wellbeing and be part of a team where people care about each other and our communities. You’ll have opportunities to join employee resource groups, participate in in-person and virtual events, and more. And you’ll enjoy competitive perks and benefits to support you and your family, like paid parental leave, flexible time off, certification and training reimbursement, digital mental health and wellbeing support membership, and comprehensive insurance options.


At Coalfire, equal opportunity and pay equity is integral to the way we do business. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. Coalfire is committed to providing access, equal opportunity, and reasonable accommodation for individuals with disabilities in employment, its services, programs, and activities. To request reasonable accommodation to participate in the job application or interview process, our Human Resources team at HumanResourcesMB@coalfire.com.

Coalfire Glassdoor Company Review
3.8 Glassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon Glassdoor star icon
Coalfire DE&I Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of Coalfire
Coalfire CEO photo
Tom McAndrew
Approve of CEO

Average salary estimate

$106500 / YEARLY (est.)
min
max
$78000K
$135000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Senior SIEM Engineer (ELK / Sentinel), Coalfire

At Coalfire, we’re on a mission to enhance cybersecurity for our clients, and we are seeking a Senior SIEM Engineer skilled in ELK or Sentinel to join our innovative team. Based in the United States, you will play a vital role in implementing and managing cutting-edge security monitoring solutions that shield our clients from emerging cyber threats while ensuring compliance with industry standards. As a Senior SIEM Engineer at Coalfire, you will collaborate with a high-performing engineering team, serving as a subject matter expert in cloud technologies like AWS, Azure, or GCP. You'll have the opportunity to lead design and deployment engagements while working alongside top-tier cloud service providers. Your expertise will facilitate the implementation of various security tools, including SIEM solutions such as Splunk and ELK, that enhance our visibility into potential threats. You’ll also be tasked with developing strategies that elevate our clients' security postures. We value problem-solvers like you who are eager to learn and grow in a collaborative environment. Join us in making the world a safer place through innovative cybersecurity solutions!

Frequently Asked Questions (FAQs) for Senior SIEM Engineer (ELK / Sentinel) Role at Coalfire
What are the responsibilities of a Senior SIEM Engineer at Coalfire?

As a Senior SIEM Engineer at Coalfire, you will be responsible for implementing, maintaining, and updating security monitoring solutions. This includes leveraging your expertise in SIEM platforms such as ELK and Sentinel to enhance threat detection and compliance. Collaborating with a talented engineering team, you will also serve as a cloud Subject Matter Expert, leading security engagements in AWS, Azure, or GCP.

Join Rise to see the full answer
What qualifications do I need to apply for the Senior SIEM Engineer position at Coalfire?

To qualify for the Senior SIEM Engineer role at Coalfire, candidates should have a minimum of 5 years of hands-on experience in systems engineering and architecture. Proficiency with SIEM platforms and cloud technologies, particularly AWS, Azure, or GCP, is essential, alongside strong skills in Infrastructure-as-Code and orchestration tools like Terraform and Ansible.

Join Rise to see the full answer
Can you describe the work culture at Coalfire for a Senior SIEM Engineer?

Coalfire fosters a supportive and flexible work culture that prioritizes connection and community. As a Senior SIEM Engineer, you'll have the chance to work collaboratively with like-minded professionals who are passionate about solving cybersecurity challenges. The company offers flexible work models, enabling you to choose the best environment for your productivity.

Join Rise to see the full answer
What is the salary range for the Senior SIEM Engineer position at Coalfire?

The salary range for the Senior SIEM Engineer role at Coalfire is between $78,000 and $135,000 annually, based on national averages. The actual offer will depend on factors such as education, location, and relevant experience, and successful candidates may also be eligible for incentive programs and recognition opportunities.

Join Rise to see the full answer
How does Coalfire support professional development for Senior SIEM Engineers?

Coalfire supports professional development through training and certification reimbursement programs. As a Senior SIEM Engineer, you will have opportunities to enhance your expertise and grow within the cybersecurity field, participating in employee resource groups and events aimed at continuous learning.

Join Rise to see the full answer
Common Interview Questions for Senior SIEM Engineer (ELK / Sentinel)
What experience do you have with SIEM platforms like Splunk or ELK?

Discuss your hands-on experience with SIEM solutions by detailing specific implementations you have worked on. Highlight your contributions to enhancing threat detection capabilities and any metrics that demonstrate the effectiveness of your work.

Join Rise to see the full answer
How do you approach the design and deployment of security monitoring solutions?

Describe your methodology by discussing the steps you take from requirements gathering to deployment. Emphasize collaboration with stakeholders, use of best practices, and any tools used to ensure a compliant and effective implementation.

Join Rise to see the full answer
Can you explain your experience with Infrastructure-as-Code?

Provide details about your hands-on experience with IaC tools like Terraform or Ansible. Discuss specific projects where you've used these tools to manage configuration and deployments, highlighting improvements in efficiency or compliance.

Join Rise to see the full answer
What strategies do you use for threat detection and incident response?

Explain your approach by discussing how you utilize SIEM tools, threat intelligence, and established protocols for monitoring potential threats. Include examples of previous incidents where your strategies led to effective resolutions.

Join Rise to see the full answer
How do you stay updated with the latest developments in cybersecurity?

Highlight your commitment to continuous learning through industry conferences, webinars, training, and active participation in professional networks. Mention any relevant certifications you've pursued to demonstrate your dedication to staying current.

Join Rise to see the full answer
Describe a challenging project you led related to SIEM implementations.

Share a specific incident where you encountered significant challenges during a SIEM implementation. Discuss the obstacles faced, your approach to resolving them, and the successful outcomes achieved.

Join Rise to see the full answer
How do you balance security requirements with operational objectives?

Discuss your critical thinking skills and how you assess both security requirements and business needs. Provide an example of how you've successfully found the right balance in a previous role.

Join Rise to see the full answer
What is your experience collaborating with cross-functional teams?

Share examples of successful collaborations with teams such as DevOps, architecture, or compliance. Highlight your communication and project management skills and how they contributed to achieving common goals.

Join Rise to see the full answer
What regulatory frameworks are you familiar with, and how do they influence your work?

Explain your familiarity with frameworks like FedRAMP, HIPAA, or PCI and how these standards guide your approach to security implementations and compliance in your previous roles.

Join Rise to see the full answer
How do you document your work and ensure knowledge transfer within your team?

Discuss your documentation practices, including maintaining design documents and knowledge bases. Mention how you ensure that team members are informed and capable of executing tasks based on your documentation.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User

Join Coalfire as a Technical Senior Manager of Site Reliability Engineering and lead the charge in delivering resilient and secure systems for our clients.

Photo of the Rise User
Posted 2 days ago

Join Coalfire as a Consultant to assess and enhance client cybersecurity practices in a remote work environment.

Photo of the Rise User
Posted 13 days ago

Join Peraton as a Network Administrator to support critical IT Service Desk operations for the FBI's network systems.

Photo of the Rise User
Inclusive & Diverse
Empathetic
Growth & Learning
Mission Driven

Mayo Clinic is looking for a skilled Oracle Application Analyst to optimize reporting and analytics solutions in support of our administrative systems and to enhance overall user experience.

Posted 14 days ago

Become a key player in maintaining and enhancing the IT infrastructure at Crystal Mountain Resort as an IT Network Administrator.

Photo of the Rise User

MCA Connect is looking for a Mid-Level Technical Solution Engineer specializing in D365 CE to enhance client systems and customize solutions.

Photo of the Rise User
Posted 12 days ago

Join CyberArk as a GRC Compliance Expert to drive compliance initiatives and support customer security assessments in a hybrid work environment.

Photo of the Rise User
Posted 6 days ago

Join Fever as an IT Support Specialist and help shape the future of entertainment while ensuring seamless tech support globally.

Photo of the Rise User
Posted 10 days ago

Join Scalable Capital as a Senior Application Security Architect and lead initiatives to secure their innovative digital investment platform.

Photo of the Rise User
Increasingly Remote 80 Feet Rd, 7th Block, Koramangala, Bengaluru, Karnataka, India
Posted 8 days ago

We are seeking an experienced Oracle Fusion SCM Analyst to enhance Oracle Fusion adoption initiatives at DataArt.

Coalfire is a cybersecurity and compliance services company that secures the future of businesses by solving complex cybersecurity challenges and is trusted by leading organizations across various sectors.

69 jobs
MATCH
Calculating your matching score...
BADGES
Badge ChangemakerBadge Diversity ChampionBadge Flexible CultureBadge Future Maker
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, hybrid
DATE POSTED
April 23, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
Photo of the Rise User
8 people applied to DevOps Engineer 3 at Granicus
Photo of the Rise User
Someone from OH, Akron just viewed Customer Support Representative at ProVia
Photo of the Rise User
17 people applied to SOC Analyst I at CBIZ
Photo of the Rise User
80 people applied to Cybersecurity Intern at Dewberry
Photo of the Rise User
Someone from OH, Alliance just viewed Store Representative - Mid-Shift at Serv-U-Success
Photo of the Rise User
Someone from OH, Eastlake just viewed (REMOTE) Account Executive at Trellis
Photo of the Rise User
12 people applied to Junior Security Engineer at Epic
Photo of the Rise User
Someone from OH, Elyria just viewed Security Officer - Factory Patrol at Allied Universal
C
14 people applied to ISSE/ ISSO at Centuria
Photo of the Rise User
Someone from OH, Cincinnati just viewed Staff Software Test Engineer, Platform at Clari
Photo of the Rise User
Someone from OH, Perrysburg just viewed Sourcing Leader, Minerals & Cullet at Owens Corning
Photo of the Rise User
Someone from OH, North Royalton just viewed Remote AI Voice Trainer (High-Quality Microphone Required) at Datadog