or apply directly on Expel's site. We never take the application ourselves.
Is this posting real?
- This role has been open
- 30 days Expel's roles stay open a median of 32 days
- Reposted
- No
- Salary listed
- No 0% of Expel's roles list one
- Ghost-job risk at Expel
- moderate 3 stale, 1 reposted of 9 open
- Hiring momentum
- 20 roles opened in the last 90 days ↑ up vs. the prior 90 days
- Last confirmed on the employer's board
- 2026-09-17
Measured from postings appearing on and disappearing from Expel's own greenhouse board since 2026-08-03. Full hiring picture for Expel.
About this role
As a Managed SIEM Detection Engineer at Expel, you will leverage your expertise to enhance customers' SIEM systems, ensuring they effectively surface threats while minimizing alert noise and optimizing costs. Your role involves authoring and tuning detection content, migrating detection logic, and collaborating with various teams to deliver high-quality security solutions. This position offers opportunities for professional growth as the function evolves and expands.
- benefits
- 3/5
- freshness
- 4/5
- career value
- 4/5
- role clarity
- 4/5
- pay transparency
- 0/5
Scored from the posting itself — how clearly the role is described, how much it says about pay and benefits, and how recently it was listed. Not a judgement of Expel as an employer.
What you need
- Hands-on SIEM expertise across Splunk, Microsoft Sentinel, and/or CrowdStrike NG SIEM
- 3+ years with detection and response tooling, particularly SIEM, SOAR, and EDR
- 3+ years writing, deploying, and tuning custom detections from research or investigative work
- SIEM migration experience translating detection logic between platforms
- Working knowledge of attacker tactics and techniques and the MITRE ATT&CK framework
- Solid fundamentals across Windows, macOS, and Linux, networking basics, and cloud IAM models
Nice to have
- One or more SIEM or vendor certifications
- Experience authoring platform-agnostic detections with Sigma
- Familiarity with detection-as-code practices
- Industry security certifications such as GIAC, Security+, or similar
- A bachelor's degree in Computer Science or Information Security
What you get
- Base salary range between $111,900 and $162,300 USD + bonus eligibility and equity
- Unlimited PTO
- Work location flexibility
- Up to 24 weeks of parental leave
- Excellent health benefits
Worth weighing
- No specific mention of the technology stack beyond SIEM platforms
- Role involves a significant amount of optimization and tuning, which may not appeal to all candidates
- Remote role limited to candidates authorized to work in the United States
Summarised from Expel's posting. Read the full original.
Listed by Expel on their greenhouse job board, last confirmed open on 2026-09-17. PitchMeAI is not the employer.
More roles at Expel
- Systems EngineerHerndon, Virginia
- Senior Security Solutions EngineerRemote
- Talent Operations AssociateRemote
- Senior Deal Desk ManagerRemote