Cyber Defense Engineer - SIEM
AI summary of the role
NorthMark Strategies seeks a Cyber Defense Engineer to architect and implement AI-enhanced SIEM/SOAR solutions within the Office of the CISO.
No longer in the current catalog. Last included 2026-09-09. Check the employer’s posting for availability.
What you’ll do
- Design, develop, and deploy AI-enhanced detections and automations within the SIEM/SOAR platform to improve signal-to-noise ratio and reduce alert fatigue.
- Engineer and optimize SIEM pipelines using AI/ML techniques for anomaly detection, behavioral analytics, and threat correlation.
- Integrate SIEM with security tools and data sources to build a context-rich, intelligence-driven monitoring ecosystem.
- Develop and implement AI-assisted threat detection models, including user/entity behavior analytics (UEBA) and predictive analytics.
What you’ll bring
- 4–6+ years of experience in cybersecurity engineering, SOC engineering, or insider threat.
- Demonstrated expertise in SIEM engineering and security monitoring at scale.
- Experience integrating or developing AI/ML capabilities within security operations or detection engineering.
- Strong understanding of the Microsoft security stack (e.g., Sentinel, Defender suite).
Technologies
SIEM · SOAR · Microsoft Sentinel · Microsoft Defender · KQL · Python · PowerShell · API development · AI/ML · UEBA
About NorthMark Strategies
Multi-strategy investment firm that builds and operates its own high-performance computing and AI infrastructure to power research, simulations, and portfolio businesses.
Private Late · 50–100 people
Source and classification
Internal deployment & tooling · Evidence for this classification:
Cyber Defense Engineer – SIEM About NorthMark Strategies: At NorthMark Strategies, we believe the future isn’t something to hope for, it’s something to build. We don’t just invest, we create, bringing together strategic insight and technical horsepower to deliver outcomes that endure. About the Role: The Cyber Defense Engineer reports to the Director of Cyber Defense and operates within the Office of the CISO. This role is responsible for architecting, developing, and implementing advanced security solutions that enhance cyber defense investigations and incident response capabilities. This position places a strong emphasis on AI-driven security engineering, including the development of intelligent detection systems, automation pipelines, and data-driven defense mechanisms. The ideal candidate will combine deep expertise in the Microsoft security ecosystem with experience leveraging
More from the job description
Cyber Defense Engineer – SIEM About NorthMark Strategies: At NorthMark Strategies, we believe the future isn’t something to hope for, it’s something to build. We don’t just invest, we create, bringing together strategic insight and technical horsepower to deliver outcomes that endure. About the Role: The Cyber Defense Engineer reports to the Director of Cyber Defense and operates within the Office of the CISO. This role is responsible for architecting, developing, and implementing advanced security solutions that enhance cyber defense investigations and incident response capabilities. This position places a strong emphasis on AI-driven security engineering, including the development of intelligent detection systems, automation pipelines, and data-driven defense mechanisms. The ideal candidate will combine deep expertise in the Microsoft security ecosystem with experience leveraging artificial intelligence and machine learning to improve SIEM/SOAR performance, detection fidelity, and operational efficiency. You will collaborate across IT and security teams to design scalable logging, enrichment, and response architectures, while continuously advancing the organization’s AI-enabled SIEM engineering maturity. Responsibilities Include, but Are Not Limited to: • Design, develop, and deploy AI-enhanced detections and automations within the SIEM/SOAR platform to improve signal [... source excerpt omitted ...] hment strategies, and AI model tuning. • Support SOC operations by enhancing detection engineering, incident response workflows, and operational metrics through AI augmentation. Requirements and Qualifications • Bachelor’s degree in computer science, Information Security, or a related field. · 4–6+ years of experience in cybersecurity engineering, SOC engineering, or insider threat. · Demonstrated expertise in SIEM engineering and security monitoring at scale. · Experience integrating or developing AI/ML capabilities within security operations or detection engineering. · Strong understanding of the Microsoft security stack (e.g., Sentinel, Defender suite) · Proficiency with a [... source excerpt omitted ...] -tenant or MSP like environments a plus • Highly motivated self-starter who thrives on positively influencing the environment. It is impossible to list every requirement for, or responsibility of, any position. Similarly, we cannot identify all the skills a position may require since job responsibilities and the Company’s needs may change over time. Therefore, the above job description is not comprehensive or exhaustive. The Company reserves the right to adjust, add to or eliminate any aspect of the above description. The Company also retains the right to require all employees to undertake additional or different job responsibilities when necessary to meet business needs. Must be l
Employer postings · Data from · Sources