

Mainstay
Lead SIEM Engineer
⭐ - Featured Role | Apply direct with Data Freelance Hub
This role is for a Lead SIEM Engineer on a contract basis, paying $70.00 per hour for 40 hours per week. Key skills include Cybersecurity, Scala, and ETL. Remote work location; experience in monitoring and incident response required.
🌎 - Country
United States
💱 - Currency
$ USD
-
💰 - Day rate
560
-
🗓️ - Date
November 9, 2025
🕒 - Duration
Unknown
-
🏝️ - Location
Remote
-
📄 - Contract
Unknown
-
🔒 - Security
Unknown
-
📍 - Location detailed
Remote
-
🧠 - Skills detailed
#Cybersecurity #Scala #"ETL (Extract #Transform #Load)" #Monitoring #Leadership #Indexing #DevOps #Security
Role description
Be responsible for designing & setting up the ingestion of various customer data flows to include pre-processing data into a useable format, ensuring proper parsing and indexing
Collaborate with cross-functional teams and responsible for designing & integrating Elastic with a wide variety of data sources and developing associated knowledge objects such as queries, dashboards, reports, alerts for monitoring and analytics
Perform data transformation using Elastic query language
Track the health of the Elastic environment and optimize its performance. Troubleshoot and resolve issues related to security, performance, data indexing, and searches
Perform watch-officer monitoring duties, including:
Monitoring, detecting, investigating, and responding to cybersecurity threats and events using Elastic /SIEM Platform
Reviewing correlated alerts and logs for compromise scenarios
Performing triage of security alerts to prioritize response
Identifying false positives
Investigating security incidents and determining root cause
Collecting and preserving logs for analysis
Escalating confirmed incidents to leadership or SOC teams
Coordinating with IT or DevOps for containment and remediation
Creating after-action reports (AAR) post-incident
Job Type: Contract
Pay: $70.00 per hour
Expected hours: 40 per week
Work Location: Remote
Be responsible for designing & setting up the ingestion of various customer data flows to include pre-processing data into a useable format, ensuring proper parsing and indexing
Collaborate with cross-functional teams and responsible for designing & integrating Elastic with a wide variety of data sources and developing associated knowledge objects such as queries, dashboards, reports, alerts for monitoring and analytics
Perform data transformation using Elastic query language
Track the health of the Elastic environment and optimize its performance. Troubleshoot and resolve issues related to security, performance, data indexing, and searches
Perform watch-officer monitoring duties, including:
Monitoring, detecting, investigating, and responding to cybersecurity threats and events using Elastic /SIEM Platform
Reviewing correlated alerts and logs for compromise scenarios
Performing triage of security alerts to prioritize response
Identifying false positives
Investigating security incidents and determining root cause
Collecting and preserving logs for analysis
Escalating confirmed incidents to leadership or SOC teams
Coordinating with IT or DevOps for containment and remediation
Creating after-action reports (AAR) post-incident
Job Type: Contract
Pay: $70.00 per hour
Expected hours: 40 per week
Work Location: Remote






