Expel

Managed SIEM Detection Engineer

Expel · Remote

Posted about a month ago

or apply directly on Expel's site. We never take the application ourselves.

Is this posting real?

This role has been open
30 days
Expel's roles stay open a median of 32 days
Reposted
No
Salary listed
No
0% of Expel's roles list one
Ghost-job risk at Expel
moderate
3 stale, 1 reposted of 9 open
Hiring momentum
20 roles opened in the last 90 days
↑ up vs. the prior 90 days
Last confirmed on the employer's board
2026-09-17

Measured from postings appearing on and disappearing from Expel's own greenhouse board since 2026-08-03. Full hiring picture for Expel.

About this role

As a Managed SIEM Detection Engineer at Expel, you will leverage your expertise to enhance customers' SIEM systems, ensuring they effectively surface threats while minimizing alert noise and optimizing costs. Your role involves authoring and tuning detection content, migrating detection logic, and collaborating with various teams to deliver high-quality security solutions. This position offers opportunities for professional growth as the function evolves and expands.

Our read on this posting3.0out of 5
benefits
3/5
freshness
4/5
career value
4/5
role clarity
4/5
pay transparency
0/5

Scored from the posting itself — how clearly the role is described, how much it says about pay and benefits, and how recently it was listed. Not a judgement of Expel as an employer.

What you need

  • Hands-on SIEM expertise across Splunk, Microsoft Sentinel, and/or CrowdStrike NG SIEM
  • 3+ years with detection and response tooling, particularly SIEM, SOAR, and EDR
  • 3+ years writing, deploying, and tuning custom detections from research or investigative work
  • SIEM migration experience translating detection logic between platforms
  • Working knowledge of attacker tactics and techniques and the MITRE ATT&CK framework
  • Solid fundamentals across Windows, macOS, and Linux, networking basics, and cloud IAM models

Nice to have

  • One or more SIEM or vendor certifications
  • Experience authoring platform-agnostic detections with Sigma
  • Familiarity with detection-as-code practices
  • Industry security certifications such as GIAC, Security+, or similar
  • A bachelor's degree in Computer Science or Information Security

What you get

  • Base salary range between $111,900 and $162,300 USD + bonus eligibility and equity
  • Unlimited PTO
  • Work location flexibility
  • Up to 24 weeks of parental leave
  • Excellent health benefits

Worth weighing

  • No specific mention of the technology stack beyond SIEM platforms
  • Role involves a significant amount of optimization and tuning, which may not appeal to all candidates
  • Remote role limited to candidates authorized to work in the United States

Summarised from Expel's posting. Read the full original.

Listed by Expel on their greenhouse job board, last confirmed open on 2026-09-17. PitchMeAI is not the employer.

More roles at Expel

All 9 open roles at Expel

Apply to a Managed SIEM Detection Engineer position at Expel - Jobs near me at Remote