Back to positions

[Remote] Principal Consultant - SIEM | Remote, USA

Remote role Full-time Open position

Note: The job is a remote job and is open to candidates in USA. Optiv is a leading provider of cybersecurity solutions, and they are seeking a Principal SIEM Consultant to drive technical relationships and deliver advanced SIEM solutions. The role involves architecting and validating SIEM solutions, mentoring other consultants, and presenting to technical audiences while ensuring customers meet their security operations and detection objectives.

Responsibilities

  • Work with customers to articulate business, security operations, and detection requirements and translate those needs into effective SIEM use cases, architectures, and operational models
  • Architect and validate SIEM solutions to ensure the customer’s risk reduction, visibility, and detection engineering objectives are met
  • Lead SIEM platform design, deployment, migration, and optimization efforts across Google SecOps, Microsoft Sentinel, CrowdStrike NG‑SIEM, and Palo Alto XSIAM
  • Assist with development of SIEM and SOC transformation engagement plans that enable customers to execute detection, response, and analytics strategies
  • Rationalize SIEM, logging, and security analytics technologies against business requirements, risk posture, cost constraints, and operational maturity
  • Serve as a recognized expert in SIEM architecture, log onboarding, detection engineering, UEBA, SOAR integration, and SOC operations
  • Lead and mentor other consultants on complex SIEM programs, providing technical direction and quality oversight across engagements
  • Able to present to large technical and executive audiences; speaks as an authority on SIEM strategy and security operations
  • Confidently handles difficult technical and strategic questions, consistently gaining trust and support from client stakeholders
  • Able to adapt and evolve SIEM delivery methodologies based on client maturity, platform capabilities, and operational constraints
  • Maintains broad awareness of the cybersecurity, SOC, and security analytics technology landscape beyond SIEM alone
  • Contributor to industry groups, thought leadership initiatives, whitepapers, or publications related to SIEM, SOC, or security operations

Skills

  • Bachelor's degree and approximately 10–15 years of related information security or technology consulting experience
  • Approximately 8–10 years of hands-on security architecture experience with a strong focus on SIEM and security operations platforms
  • Deep expertise in SIEM concepts including log collection and normalization, detection engineering, alerting strategy, content lifecycle management, SOC workflows, and integration with SOAR and EDR platforms
  • Strong practical experience with one or more modern SIEM platforms such as Google SecOps, Microsoft Sentinel, CrowdStrike NG‑SIEM, and Palo Alto XSIAM
  • Strong understanding of adjacent security domains including incident response, threat detection, vulnerability management, data classification, and security governance
  • Understanding of the professional services business and the organizational impact of technical and delivery decisions
  • Solid understanding of networking (TCP/IP, OSI model), operating systems (Windows, Linux/UNIX), cloud platforms, and modern security technologies (EDR, NDR, firewalls, IDS/IPS)
  • Familiarity with scripting and automation languages commonly used in SIEM environments (e.g., KQL, Python, PowerShell, YAML)
  • Strong understanding of regulatory and compliance requirements impacting security monitoring and log retention, including PCI DSS, GLBA, GDPR, and U.S. state privacy laws
  • Proven experience integrating SIEM platforms into complex enterprise and cloud environments, including log pipelines, APIs, and security tooling ecosystems
  • Willingness to travel to meet client needs
  • Valid driver's license in the U.S. and a valid passport required
  • The successful candidate must hold or be willing to pursue relevant certifications such as CISSP, CISM, CISA, or SIEM‑specific platform certifications
  • Strong interpersonal, leadership, and client‑facing skills
  • Strong written and presentation skills with the ability to clearly communicate complex SIEM and SOC concepts to technical and executive audiences
  • Possess a high standard of integrity and confidentiality

Benefits

  • Variable incentive-based bonus plan
  • Comprehensive compensation and benefits package, of which salary is a component
  • A company committed to our inclusive value through our Employee Resource Groups
  • Work/life balance
  • Professional training resources
  • Creative problem-solving and the ability to tackle unique, complex projects
  • Volunteer Opportunities. “Optiv Chips In” encourages employees to volunteer and engage with their teams and communities.
  • The ability and technology necessary to productively work remotely/from home (where applicable)

Company Overview

  • Optiv is a cyber security solutions provider in North America that help clients plan, build and run successful cyber security programs. It was founded in 2015, and is headquartered in Denver, Colorado, USA, with a workforce of 1001-5000 employees. Its website is http://www.optiv.com/.
  • Company H1B Sponsorship

  • Optiv has a track record of offering H1B sponsorships, with 2 in 2025, 8 in 2024, 9 in 2023, 11 in 2022, 20 in 2021, 12 in 2020. Please note that this does not guarantee sponsorship for this specific role.
  • Apply To This Job

    Further positions

    [Remote] Customer Success Manager

    Remote role Full-time

    [Remote] Senior Marketing Manager, New Vertical

    Remote role Full-time

    [Remote] Python Backend Engineer - Remote

    Remote role Full-time

    [Remote] Component Design Engineer

    Remote role Full-time

    [Remote] Threat Intelligence Engineer - AI Trainer

    Remote role Full-time

    [Remote] Senior Director, Partnerships Analytics

    Remote role Full-time

    [Remote] Basketball Software Engineer (Full-Stack) — Equity Only

    Remote role Full-time

    [Remote] Principal Machine Learning Engineer, ML Platform

    Remote role Full-time

    [Remote] Application Security Engineer - AI Trainer

    Remote role Full-time

    [Remote] Digital Marketing Manager

    Remote role Full-time

    Experienced Live Chat Assistant – Work from Home Opportunity at arenaflex

    Remote role Full-time

    [Remote] Senior Payroll Accountant- Multi Entity

    Remote role Full-time

    Need Children's Autism Therapist, In-Home and Centennial Center Based-Accelerated Program Paid Training and Incentive Bonuses in Englewood, CO

    Remote role Full-time

    Retail Store Associates and Stockers - 5483

    Remote role Full-time

    Experienced Live Chat Data Entry Specialist – Remote Customer Service & Data Management

    Remote role Full-time

    Art Director, Video

    Remote role Full-time

    Senior Manager, Mergers & Acquisitions Management

    Remote role Full-time

    QUALITY ASSURANCE AUTOMATION TESTER

    Remote role Full-time

    Experienced Medical Records Coordinator – Data Entry Assistant (Remote) at Taskora

    Remote role Full-time

    Specialist, CRM (Open to Remote)

    Remote role Full-time