Data Log Engineer

Back to Jobs
SAIC logo

Data Log Engineer

SAIC

Location

Colorado Springs, CO, United States

Experience

Senior

Posted

Jul 30, 2026

Apply by

August 29, 2026

Applicants

0

Early applicantEasy applyFull-timeWork from Office

Job Description

Join SAIC's team and play a pivotal role in defending North America. We are seeking an experienced Log Data Engineer onsite in Colorado Springs, CO to manage the scaling, performance, ingestion pipelines, and analytical detection rules of N&NC’s multi-enclave Security Information and Event Management (SIEM) and monitoring architectures for the critical North American Aerospace Defense Command and United States Northern Command (N&NC) Information Technology (IT) Enterprise Services (NITES) contract. In this role, you will streamline security operations by decoupling complex cyber-data engineering, such as parser creation, index policy management, data routing, and telemetry forwarding, from front-line SIEM security analysts. Your highly specialized work ensures that the team operates with optimal, high-fidelity log feeds, lightning-fast search capabilities, and stable, compliant log forwarding to the DoD Big Data Platform (BDP), providing N&NC leadership with reliable, real-time cyber situational awareness. Responsibilities - Design, deploy, and maintain custom data parsers and ingestion pipelines within the Security Onion architecture to normalize and ingest-route security telemetry across five separate security networks (NIPRNet, SIPRNet, SIPR-REL, NEN, and CENTRIXS-Mex), preventing data corruption or ingestion gaps. - Engineer and implement indexing policies, lifecycle management rules, and cluster configurations to handle massive volumes of incoming events, maximizing local storage retention and guaranteeing optimal database performance during high-urgency security incident queries. - Configure and optimize high-throughput forwarding pipelines to securely transmit cyber telemetry to the DoD Big Data Platform (BDP) and other DoD-approved Enterprise services without disrupting local network operations. - Engineer, test, and refine automated alarm rules and Intrusion Detection System (IDS) signatures to counter emerging threats and active adversary tactics. - Continuously calibrate the SIEM to ensure it captures advanced threats while filtering out noisy, irrelevant alerts. ### Qualifications Required Qualifications: - Active TS/SCI security clearance - Certification required per DoDD 8140.03, Intermediate Level (ISC2 SSCP or GIAC GSEC) or Advanced Level (ISACA CISM, ISC2 CISSP, or GIAC GSLC) - BS or equivalent work experience in Data Engineering, Information Assurance, Cybersecurity, or Systems Administration field - 9+ years of overall IT, cybersecurity, or data engineering experience - Demonstrated experience in cyber-data engineering, including log parser creation, index policy management, data routing, and telemetry forwarding Desired Qualifications: - Extensive experience configuring and maintaining Security Onion architectures. - Familiarity with engineering data pipelines for the DoD Big Data Platform (BDP) or similar enterprise data lakes. - Knowledge of adversary tactics, techniques, and procedures (TTPs) and experience translating them into IDS rules and SIEM alerts. - Previous experience operating in a highly complex, metrics-driven DoD cybersecurity environment. ### About the Company [SAIC®](http://www.saic.com/) is a premier mission integrator focused on advancing the power of technology and innovation to serve and protect our world. Our robust portfolio of offerings across the defense, space, intelligence, and civilian markets includes secure high-end solutions in mission IT, enterprise IT, engineering services, and professional services. We integrate emerging technology, rapidly and securely, into mission critical operations that modernize and enable critical national imperatives. We are approximately 23,000 strong; driven by mission, united by purpose, and inspired by opportunities. SAIC is an Equal Opportunity Employer. Headquartered in Reston, Virginia, SAIC has annual revenues of approximately $7.3 billion. For more information, visit [saic.com](http://www.saic.com/). For ongoing news, please visit our [newsroom](http://www.saic.com/who-we-are/newsroom/).

Key Responsibilities

  • Design, deploy, and maintain custom data parsers and ingestion pipelines within Security Onion architecture.
  • Engineer indexing policies, lifecycle management rules, and cluster configurations for massive event volumes.
  • Configure and optimize high-throughput forwarding pipelines to transmit cyber telemetry to DoD Big Data Platform.
  • Engineer, test, and refine automated alarm rules and Intrusion Detection System signatures.
  • Calibrate SIEM to capture advanced threats while filtering out noisy alerts.

Requirements

  • BS or equivalent work experience in Data Engineering
  • Information Assurance
  • Cybersecurity
  • or Systems Administration

Skills Required

Security OnionSIEMLog parser creationIndex policy managementData routingTelemetry forwardingIDS signaturesDoD Big Data Platform (BDP)Enterprise data lakesAdversary tactics, techniques, and procedures (TTPs)IDS rulesSIEM alerts

App exclusive · Free

Smart Job AI Coach

Your personal interview coach on every job — readiness tips, profile improvements, and role-specific prep. Available only in the Pulse Job app.

Interview readiness

See how prepared you are and what to improve for each role.

Personalized tips

Actionable suggestions based on your profile and the job.

After you apply

Keep coaching momentum from job detail through application success.

Get Smart Job AI Coach in the appFree on iOS and Android