{"schemaVersion":"jobsearcher.job.v1","id":"63af3f76dee151c4f6838388","url":"https://jobsearcher.com/jobs/63af3f76dee151c4f6838388","canonicalUrl":"https://jobsearcher.com/jobs/63af3f76dee151c4f6838388","title":"Security Engineer","description":"Ampcus Inc. is a certified global provider of a broad range of Technology and Business consulting services. We are in search of a highly motivated candidate to join our talented Team.Job Title: Security EngineerLocation(s): Tustin, CAJob Description:As a SIEM Engineer for Cortex XSIAM, you will be responsible for assisting with the log migration and detection strategy of our customers. You will work closely with the technical lead to ensure that all of the relevant log sources are on boarded and ingested into XSIAM in accordance with industry best practices and customer requirements. You will then work to determine a suitable detection strategy, helping to protect customers from threats, by designing and implementing correlation rules.Your ImpactWork with technical lead to develop log ingestion strategyContribute to detection strategy based on industry best practicesDetail step by step process to ingest high quality log sourcesPerform log source monitoring and optimizationCreate high quality correlation rulesTune log sources and correlation rulesBe an SME for SIEM, Correlation and Log Source IngestionRecognize opportunities where automation can improve analyst alert handlingCollaborate with internal and external teams to ensure product adoptionCreate technical documentation detailing SIEM aspects of the engagementTravel to customer meetings and workshops as needed (10%)Your ExperienceStrong communication (written and verbal) and presentation skills, both internally and externallyFluent English is a requirement - Any other language is a plus6+ years of deploying and integrating (SIEM) to enterprise to large enterprise-levelCoordinating and conducting event collection, log management, event management, compliance automation, and identity monitoring activities using (SIEM) platformsThe ability to create and develop correlation and detection rules, within a (SIEM) to support alerting capabilitiesExperience working with and deploying a variety of SIEM technologies (i.e Splunk, IBM QRadar)A proven ability to offer suggestions on detection strategy based on customer requirementsStrong Regular Expression skillsAbility to understand logs, locating and understanding 3rd party documentation where neededFamiliarity with reports on the status of the SIEM to include metrics on items such as number of logging sources - log collection rate, and other performance metricsKnowledge of Security Analysis & Response a plus, including both endpoint, network & cloud based environments4 years' experience with Security Operation Centers tooling and processesRelevant bachelor's degree or industry recognized qualifications (CISSP, GIAC, SIEM Vendor Qualification etc)Ability to read and understand technical design documentationAmpcus is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identify, national origin, age, protected veterans or individuals with disabilities.","company":"Ampcus","rawCompany":"ampcus","city":"Tustin","state":"CA","isRemote":false,"isActive":false,"createdAt":"2026-09-11T13:00:24.932Z","occupations":[{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"15-1212.00","title":"Information Security Analysts","slug":"information-security-analysts"},{"code":"13-1199.07","title":"Security Management Specialists","slug":"security-management-specialists"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"541519","title":"Other Computer Related Services","slug":"other-computer-related-services"},{"code":"541690","title":"Other Scientific and Technical Consulting Services","slug":"other-scientific-and-technical-consulting-services"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Security Engineer","description":"Ampcus Inc. is a certified global provider of a broad range of Technology and Business consulting services. We are in search of a highly motivated candidate to join our talented Team.Job Title: Security EngineerLocation(s): Tustin, CAJob Description:As a SIEM Engineer for Cortex XSIAM, you will be responsible for assisting with the log migration and detection strategy of our customers. You will work closely with the technical lead to ensure that all of the relevant log sources are on boarded and ingested into XSIAM in accordance with industry best practices and customer requirements. You will then work to determine a suitable detection strategy, helping to protect customers from threats, by designing and implementing correlation rules.Your ImpactWork with technical lead to develop log ingestion strategyContribute to detection strategy based on industry best practicesDetail step by step process to ingest high quality log sourcesPerform log source monitoring and optimizationCreate high quality correlation rulesTune log sources and correlation rulesBe an SME for SIEM, Correlation and Log Source IngestionRecognize opportunities where automation can improve analyst alert handlingCollaborate with internal and external teams to ensure product adoptionCreate technical documentation detailing SIEM aspects of the engagementTravel to customer meetings and workshops as needed (10%)Your ExperienceStrong communication (written and verbal) and presentation skills, both internally and externallyFluent English is a requirement - Any other language is a plus6+ years of deploying and integrating (SIEM) to enterprise to large enterprise-levelCoordinating and conducting event collection, log management, event management, compliance automation, and identity monitoring activities using (SIEM) platformsThe ability to create and develop correlation and detection rules, within a (SIEM) to support alerting capabilitiesExperience working with and deploying a variety of SIEM technologies (i.e Splunk, IBM QRadar)A proven ability to offer suggestions on detection strategy based on customer requirementsStrong Regular Expression skillsAbility to understand logs, locating and understanding 3rd party documentation where neededFamiliarity with reports on the status of the SIEM to include metrics on items such as number of logging sources - log collection rate, and other performance metricsKnowledge of Security Analysis & Response a plus, including both endpoint, network & cloud based environments4 years' experience with Security Operation Centers tooling and processesRelevant bachelor's degree or industry recognized qualifications (CISSP, GIAC, SIEM Vendor Qualification etc)Ability to read and understand technical design documentationAmpcus is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identify, national origin, age, protected veterans or individuals with disabilities.","datePosted":"2026-09-11T13:00:24.932Z","dateModified":"2026-09-11T13:00:24.932Z","hiringOrganization":{"@type":"Organization","name":"Ampcus","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Tustin","addressRegion":"CA","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"63af3f76dee151c4f6838388"},"url":"https://jobsearcher.com/jobs/63af3f76dee151c4f6838388"}}