Data Log Engineer

SAICColorado Springs, CO
Onsite

About The Position

Join SAIC's team and play a pivotal role in defending North America. We are seeking an experienced Log Data Engineer onsite in Colorado Springs, CO to manage the scaling, performance, ingestion pipelines, and analytical detection rules of N&NC’s multi-enclave Security Information and Event Management (SIEM) and monitoring architectures for the critical North American Aerospace Defense Command and United States Northern Command (N&NC) Information Technology (IT) Enterprise Services (NITES) contract. In this role, you will streamline security operations by decoupling complex cyber-data engineering, such as parser creation, index policy management, data routing, and telemetry forwarding, from front-line SIEM security analysts. Your highly specialized work ensures that the team operates with optimal, high-fidelity log feeds, lightning-fast search capabilities, and stable, compliant log forwarding to the DoD Big Data Platform (BDP), providing N&NC leadership with reliable, real-time cyber situational awareness.

Requirements

  • Experience managing the scaling, performance, ingestion pipelines, and analytical detection rules of SIEM and monitoring architectures.
  • Experience with cyber-data engineering, including parser creation, index policy management, data routing, and telemetry forwarding.
  • Experience designing, deploying, and maintaining custom data parsers and ingestion pipelines.
  • Experience engineering and implementing indexing policies, lifecycle management rules, and cluster configurations.
  • Experience configuring and optimizing high-throughput forwarding pipelines.
  • Experience engineering, testing, and refining automated alarm rules and Intrusion Detection System (IDS) signatures.
  • Experience calibrating SIEM to capture advanced threats while filtering out noisy alerts.

Nice To Haves

  • Experience with Security Onion architecture.
  • Experience with NIPRNet, SIPRNet, SIPR-REL, NEN, and CENTRIXS-Mex networks.
  • Experience with the DoD Big Data Platform (BDP).

Responsibilities

  • Design, deploy, and maintain custom data parsers and ingestion pipelines within the Security Onion architecture to normalize and ingest-route security telemetry across five separate security networks (NIPRNet, SIPRNet, SIPR-REL, NEN, and CENTRIXS-Mex), preventing data corruption or ingestion gaps.
  • Engineer and implement indexing policies, lifecycle management rules, and cluster configurations to handle massive volumes of incoming events, maximizing local storage retention and guaranteeing optimal database performance during high-urgency security incident queries.
  • Configure and optimize high-throughput forwarding pipelines to securely transmit cyber telemetry to the DoD Big Data Platform (BDP) and other DoD-approved Enterprise services without disrupting local network operations.
  • Engineer, test, and refine automated alarm rules and Intrusion Detection System (IDS) signatures to counter emerging threats and active adversary tactics.
  • Continuously calibrate the SIEM to ensure it captures advanced threats while filtering out noisy, irrelevant alerts.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service