Back to previous page
Security Infrastructure Support SIEM & Data Pipeline Technical Lead/SME
Program, Project & Product Leadership
Bethesda, Maryland, 20817
Contract
Ref.: 139731
Job Summary:
Our client is seeking a Security Infrastructure Support – SIEM & Data Pipeline Technical Lead / SME to join their team! This position is located in Bethesda, Maryland.
 
Duties:
 
Our client is seeking a Security Infrastructure Support – SIEM & Data Pipeline Technical Lead / SME to join their team! This position is located in Bethesda, Maryland.
Duties:
- Lead the architecture, design, and deployment of SIEM and log management solutions across enterprise environments
- Develop, implement, and maintain secure and efficient data pipelines to aggregate, normalize, and enrich log data from multiple sources
- Oversee integration between on-premise and cloud environments to ensure complete visibility of security events
- Manage data flow, transformation, and correlation logic to support incident detection and response
- Develop scripts and automation processes: Python, JavaScript, or similar to streamline log ingestion, normalization, and monitoring
- Implement and manage CI/CD processes and DevOps practices to support repeatable, reliable pipeline deployments
- Serve as a subject matter expert for cybersecurity data architecture, assisting in the development of data dictionaries, dashboards, and reports
- Collaborate with cross-functional teams, vendors, and federal stakeholders to align with CDM and NIST cybersecurity compliance frameworks
- Provide mentorship and technical guidance to junior engineers and analysts
- Communicate complex security and data concepts effectively to both technical and executive audiences
- Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or related field
- 10+ years of experience designing, installing, maintaining, and supporting enterprise IT systems
- 5+ years at the Senior Engineer level or higher in infrastructure or cybersecurity roles
- 3+ years of hands-on experience with cybersecurity tools or SIEM implementation and administration
- Strong experience in hybrid, on-prem + cloud, environments and cloud security operations: AWS, Azure, O365
- Expertise with SIEM solutions, log collection tools, and data transformation/normalization techniques
- Deep understanding of log formats: CEF, LEEF, JSON, XML, data enrichment, and event correlation
- Proficiency with CI/CD tools, DevOps pipelines, and automation scripting: Python, JavaScript
- Strong query-writing abilities using SPL or SQL
- Demonstrated ability to explain complex data and security concepts to technical and non-technical audiences
- Familiarity with data governance, MITRE ATT&CK, and federal cybersecurity frameworks: FISMA, NIST 800-53, NIST 800-92, OMB M-21-31, CDM
- Strong analytical, troubleshooting, and problem-solving skills
- Experience collaborating with third-party vendors and cross-functional federal or enterprise teams
- Medical, Dental, & Vision Insurance Plans
- Employee-Owned Profit Sharing (ESOP)
- 401K offered