remote

Salary
$120,000–$135,000from the description
Posted
Jul 16, 2026
Location
Last confirmed open
Jul 21, 2026

What this job asks for AI summary

A fully remote senior security engineering role centered on owning and optimizing a SIEM platform — building detection rules, dashboards, and queries to improve threat visibility. The position also spans cloud security, data loss prevention, and incident response support in collaboration with SOC and infrastructure teams. Best suited to an experienced security engineer with hands-on SIEM expertise and familiarity with cloud environments.

Mid level · 4+ years · Remote · Full-time

Advertised as Senior, but the requirements read as Mid.

Must have (2)
Sumo Logic, Splunk or QradarAWS or Azure
Nice to have (2)
Microsoft PurviewPython or PowerShell

“or” means any one of them counts — you don't need all of them.

We read this from the posting text with AI. Skim the description below before ruling yourself out.

How this req sits in the market our data

Roughly 13,500 people nationally plausibly meet what this posting asks for (information security analysts). range 8,100–24,300

Applicant volume Heavy — This req sits in a large pool with little in its requirements to thin it, and auto-apply tools fire at everything in the occupation. Applying early and leading with the rare skills below is what gets read.

What won't set you apart
Sumo Logic45%

Most people in this occupation already list these. Still required — just not what gets you shortlisted.

What the occupation pays Median $132,021 (middle half $99,961–$167,095). This posting is about at that midpoint.

Estimated from BLS employment for this occupation and area, per-skill prevalence across our listing corpus, and published wage benchmarks — as of Jul 28, 2026. It is a model, not a headcount.

Why we read it this way (10)

The degree requirement states 'Bachelor's degree … or equivalent practical experience', so no formal degree is hard-gated.

The SIEM requirement names Sumo Logic, Splunk, and QRadar as interchangeable examples ('such as … or similar'); all three are captured as alternatives on a single skill.

Cloud familiarity is listed under Requirements with 'particularly AWS and/or Azure', making it a hard gate; AWS and Azure are treated as interchangeable alternatives on one skill.

Microsoft Purview (DLP) is explicitly flagged 'highly desirable' in the Requirements section — a softening qualifier that places it closer to preferred despite its location; treated as preferred.

Python/PowerShell scripting is explicitly called 'a plus', so it is preferred.

Certifications (Security+, GIAC, CISSP) and cybersecurity frameworks (NIST, CIS, ISO) are described as 'advantageous' — not hard gates; omitted from the skills list as they name no specific technology tool.

Endpoint security and incident response/SOC collaboration appear in Requirements but name no specific product or tool, so they are omitted per the instruction to list only concrete, named technologies.

Seniority is assessed as Mid (4+ years, no org-wide scope) despite the 'Senior' title; the experience bar and scope align with a mid-level security engineering role.

Compensation includes a monthly bonus on top of the stated base salary range; the bonus amount is unspecified.

Caller marked this a fully-remote role — scored against the national candidate pool.

Read the full posting

The employer publishes the full description on their own site — read it there ↗. Or sign in to read it here — it's free, and it also lets you track this application.

Apply

Apply on employer site ↗