Jr SIEM/UEBA Engineer
The Junior SIEM/UEBA Engineer supports cybersecurity operations for a federal government client by administering, configuring, and optimizing SIEM and UEBA platforms to enable continuous monitoring, threat detection, and incident response. This early-career role involves log source onboarding, detection rule tuning, alert triage, and compliance reporting within a highly regulated federal IT environment, working under senior engineers to enhance security posture and operational effectiveness.
About Careertakes
👉 Important disclosure: Careertakes is a third-party recruiting platform supporting this hiring process. If selected, you will be employed directly by our client, IT (Federal Cybersecurity/Government Contracting).
Applicants for this role may also receive access to additional matched opportunities through the Careertakes platform.
Role Overview
Confidential Client is hiring a Jr SIEM/UEBA Engineer to join a federal cybersecurity operations team supporting continuous monitoring, detection, and incident response. This is an early-career technical role focused on SIEM and UEBA platform support, log onboarding, detection tuning, alert triage, and reporting. The position requires the ability to obtain and maintain a government background investigation and associated IT access authorizations.
- Location: Washington, DC (primary) — approved remote/telework locations may apply
- Employment type: Full-time
- Salary range: $95,000 — $125,000 per year
What You’ll Do
You will contribute to day-to-day SIEM and UEBA operations under senior guidance. Key responsibilities include:
- Assist with SIEM platform administration: user management, data source configuration, retention policies, and health monitoring
- Support onboarding of new log sources: collection configuration, parsing, normalization, and validation
- Help develop, test, and tune detection/correlation rules to reduce false positives and improve detection fidelity
- Monitor ingestion and platform performance; escalate anomalies or collection failures to senior engineers
- Assist with UEBA platform configuration: behavioral baselines, risk scoring, and anomaly detection tuning
- Perform initial alert triage and security event analysis; document findings in the case/ITSM system
- Support integration of threat intelligence feeds, IOC matching, and enrichment workflows
- Develop and maintain dashboards, saved searches, and operational reports for continuous monitoring and compliance
- Contribute to documentation, runbooks, and after-action reports following incidents and tuning activities
- Support log management tasks across on-prem and cloud sources (Microsoft 365, Azure Monitor, AWS CloudTrail)
Required Qualifications
- Bachelor’s degree in Cybersecurity, Computer Science, IT, Information Systems, or related field — or equivalent combination of education and relevant experience
- 1–3 years of hands-on experience in cybersecurity operations, SIEM administration, or log management
- Foundational experience with at least one enterprise SIEM (Splunk, Microsoft Sentinel, IBM QRadar, Elastic SIEM, or equivalent)
- Basic understanding of log collection, parsing, normalization, and retention across Windows, Linux, and network devices
- Basic proficiency with SIEM query languages (e.g., Splunk SPL, KQL)
- Ability to obtain and maintain a government background investigation and required IT access authorizations
- Right now the role will primarily support federal systems; prior federal contracting experience is a plus but not required
Preferred / Nice-to-Have
- Exposure to UEBA platforms (Splunk UBA, Securonix, Microsoft Sentinel UEBA, or equivalent)
- Cloud log experience: Microsoft 365 audit logs, Azure Monitor, AWS CloudTrail
- Entry-level certifications such as CompTIA Security+, CompTIA CySA+, Splunk Core Certified User, or Microsoft SC-200
- Basic scripting for automation (Python, PowerShell, Bash)
- Familiarity with MITRE ATT&CK, NIST SP 800-53, FISMA, and Zero Trust (NIST SP 800-207)
- Experience with SIEM dashboarding, reporting, and compliance-focused detection content
Skills & Competencies
- Foundational SIEM and UEBA engineering knowledge (ingestion, parsing, correlation rules, risk scoring)
- Strong analytical and critical-thinking skills for methodical alert triage and event analysis
- Clear written and verbal communication; ability to document technical findings and runbooks
- Team player attitude; receptive to mentorship and feedback from senior engineers
- Strong organizational skills and attention to detail when managing multiple triage tasks
- Proficiency with Microsoft Office and collaboration tools (Teams, SharePoint)
Security & Workplace Requirements
- Must be able to obtain and maintain a government background investigation and associated IT access authorizations prior to performing work
- Primary work will be performed supporting a federal client in Washington, DC with approved remote/telework locations as allowed by the program
- This role follows federal security frameworks and compliance requirements (FISMA, NIST SP 800-53, OMB M-22-09, etc.)
Compensation & Benefits
- Salary range: $95,000 — $125,000 per year
- Competitive benefits including health, dental, and vision insurance; 401(k) with company match; flexible spending accounts; paid holidays; and paid time off
- Professional development opportunities and training support
Why Candidates Choose This Role
- Hands-on, early-career SIEM/UEBA engineering experience on federal programs
- Mentorship from senior cybersecurity engineers and direct exposure to enterprise detection engineering
- Work that supports national security missions and meaningful impact in federal cybersecurity operations
Equal Opportunity & Hiring Transparency
Careertakes and our client are Equal Opportunity Employers committed to building a diverse and inclusive workforce. We prohibit discrimination or harassment of any kind. To support a fair and efficient hiring process, AI tools may be used to assist with application review or resume screening. These tools do not replace human decision-making. Final hiring decisions are made by people.
If you have questions about how your data is used, please contact us directly.
Negotiate a higher salary! Check the salary ranges for this job type in your area.
View My Salary Range