Security Engineer (SIEM / EL3 Logging)

Pingwind
Worldwide Remote
Remote

Who this role is best for

Strong fit for mid-level security professionals with federal cybersecurity experience who can manage compliance frameworks and lead incident response. The role emphasizes technical expertise in SIEM and EL3 logging within a remote work arrangement and federal domain.

Best fit for

  • Mid-level security professionals with federal compliance experience and SIEM/EL3 logging expertise
    — “Security Engineer (SIEM / EL3 Logging) is responsible for designing, implementing, and maintaining robust security monitoring, logging, and incident response capabilities for the FSA IAM systems.
  • Candidates who have led security remediation efforts and maintained POA&M in compliance platforms
    — “manage remediation efforts for security findings, support Ongoing Security Assessments (OSA), and maintain Plan of Action and Milestones (POA&M) in CSAM.
  • Individuals with a background in federal identity management and threat detection
    — “provide security expertise for identity verification, account recovery processes, and overall environment protection.

Things to consider

  • The role requires a bachelor's degree and 8 years of experience, which may be a barrier for less experienced candidates.
    — “Required Education: Bachelors Required Experience: 8 years
  • Strong familiarity with federal compliance frameworks like FISMA and NIST RMF is a hard requirement.
    — “Deep knowledge of NIST RMF, FISMA, FedRAMP, and CSAM processes

How to stand out

  • Emphasize experience with federal compliance tools and real-time threat detection in your resume and interviews.
    — “implementing and enhancing SIEM processes to detect and respond to threats in real time
  • Highlight your ability to manage POA&M and lead security remediation efforts in past roles.
    — “maintain Plan of Action and Milestones (POA&M) in CSAM
  • Demonstrate your understanding of encryption standards and logging requirements in your application materials.
    — “proper encryption standards for data at rest (AES-256 with SHA-256) and data in transit (latest TLS protocols)
Pace · SteadyCollaboration · MediumAutonomy · MediumDecision Impact · CompanyLevel · Mid

Derived from job-description analysis by Serendipath's career intelligence engine.

What success looks like

  • implementing and enhancing SIEM processes
  • managing security controls and inheritance statements
  • tracking remediation efforts
  • ensuring compliance with federal cybersecurity policies
Typical background
8 years of experience in security engineeringstrong expertise in SIEM tools and advanced logging

Skills & requirements

Required

SIEM ToolsAdvanced LoggingSecurity Event ManagementNIST RMFFismaSecurity RemediationPoa&m ManagementVulnerability TrackingEncryption StandardsCompliance Tracking

Preferred

Cloud-native Technologies

Stack & domain

SIEMEL3Security Event ManagementNIST RMFFismaFedrampCSAMSecurity RemediationPoa&mVulnerability TrackingData EncryptionSecurity ToolsMicrosoft OfficeCompliance PlatformsAnalysisDocumentationCompliance TrackingProblem-solvingCollaborationFederal Cybersecurity PoliciesIdentity Management SecurityCybersecurityFederal GovernmentIT InfrastructureSupply Chain Management

About the role

Original posting from Pingwind via Lever

Location: Remote

Required Clearance: Public Trust 

Required Education: Bachelors

Required Experience: 8 years

Position Description

The Security Engineer (SIEM / EL3 Logging) is responsible for designing, implementing, and maintaining robust security monitoring, logging, and incident response capabilities for the FSA IAM systems. This role ensures advanced event logging (EL3), Security Event and Incident Management (SIEM), and overall security compliance to protect sensitive identity data and support rapid threat detection.

Responsibilities

The Security Engineer ensures the IAM solution meets Event Log Management and Advanced Logging (EL3) requirements, proper encryption standards for data at rest (AES-256 with SHA-256) and data in transit (latest TLS protocols), and FISMA compliance. They lead Security Incident Management, manage remediation efforts for security findings, support Ongoing Security Assessments (OSA), and maintain Plan of Action and Milestones (POA&M) in CSAM. Key responsibilities include implementing and enhancing SIEM processes to detect and respond to threats in real time, managing security controls and inheritance statements, addressing Continuous Diagnostics and Monitoring (CDM) results, handling Common Vulnerabilities and Exposures (CVE) findings, tracking remediation efforts, and ensuring the Cybersecurity Framework (CSF) scorecard meets or exceeds required ratings. The role also supports broader compliance activities, including supply chain risk management, data planning, federal records and CUI handling, IT accessibility (Section 508), technology business management reporting, and project, risk, and schedule documentation needed to sustain the Authority to Operate (ATO). They provide security expertise for identity verification, account recovery processes, and overall environment protection.

Required Qualifications

  • Strong expertise in SIEM tools, advanced logging (EL3), and security event management
  • Deep knowledge of NIST RMF, FISMA, FedRAMP, and CSAM processes
  • Experience with security remediation, POA&M management, and vulnerability tracking
  • Familiarity with data encryption standards (AES-256, TLS) and logging requirements
  • Ability to analyze security events, logs, and alerts for threat detection
  • Excellent documentation and compliance tracking skills
  • Strong problem-solving and analytical abilities under pressure
  • Effective collaboration with security, operations, and development teams
  • Understanding of federal cybersecurity policies and identity management security
  • Proficiency with security tools, Microsoft Office, and compliance platforms

About PingWind

PingWind is focused on delivering outstanding services to the federal government. We have extensive experience in the fields of cybersecurity, development, IT infrastructure, supply chain management and other professional services such as system design and continuous improvement. PingWind is an SBA certified Service-Disabled Veteran-Owned Small Business (SDVOSB) with offices in Northern Virginia and Huntsville AL.

www.PingWind.com

Our benefits include:

·       Eleven Federal Holidays

·       Paid Time Off accrued each pay period

·       Parental Leave

·       Three medical plan choices with generous employer contribution

·       Dental and Vision Insurance

·       Company paid Short-Term and Long-Term Disability

·       Company paid Life and AD&D Insurance

·       401k with competitive matching and vesting schedule 

·       Continuing education assistance

·       Short Term / Long Term Disability & Life Insurance

·       Medical, Dependent Care and Commuter Flexible Spending Accounts

·       Employee Assistance Program 

·       Wellness benefits include Calm Health app and WellHub gym subsidy (formerly GymPass)

·       529 College Savings Plan

·       Legal Insurance 

·       Pet Insurance

Salary Range

$93k-$128K

The pay range for this job is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) job responsibilities, education, certifications, experience, as well as internal equity mapping and alignment with market data, or other applicable laws.

Veterans are encouraged to apply

PingWind, Inc. does not discriminate in employment opportunities, terms, and conditions of employment, or practices on the basis of race, age, gender, religious or political beliefs, national origin or heritage, disability, sexual orientation, or any characteristic protected by law.

Source: Pingwind careers (Lever)

Similar roles