Data Log Engineer
Back to Jobs
SAICGet Smart Job AI Coach in the appFree on iOS and Android

Data Log Engineer
Location
Colorado Springs, CO, United States
Experience
Senior
Posted
Jul 30, 2026
Apply by
August 29, 2026
Applicants
0
Early applicantEasy applyFull-timeWork from Office
Job Description
Join SAIC's team and play a pivotal role in defending North America. We are seeking an experienced Log Data Engineer onsite in Colorado Springs, CO to manage the scaling, performance, ingestion pipelines, and analytical detection rules of N&NC’s multi-enclave Security Information and Event Management (SIEM) and monitoring architectures for the critical North American Aerospace Defense Command and United States Northern Command (N&NC) Information Technology (IT) Enterprise Services (NITES) contract.
In this role, you will streamline security operations by decoupling complex cyber-data engineering, such as parser creation, index policy management, data routing, and telemetry forwarding, from front-line SIEM security analysts. Your highly specialized work ensures that the team operates with optimal, high-fidelity log feeds, lightning-fast search capabilities, and stable, compliant log forwarding to the DoD Big Data Platform (BDP), providing N&NC leadership with reliable, real-time cyber situational awareness.
Responsibilities
- Design, deploy, and maintain custom data parsers and ingestion pipelines within the Security Onion architecture to normalize and ingest-route security telemetry across five separate security networks (NIPRNet, SIPRNet, SIPR-REL, NEN, and CENTRIXS-Mex), preventing data corruption or ingestion gaps.
- Engineer and implement indexing policies, lifecycle management rules, and cluster configurations to handle massive volumes of incoming events, maximizing local storage retention and guaranteeing optimal database performance during high-urgency security incident queries.
- Configure and optimize high-throughput forwarding pipelines to securely transmit cyber telemetry to the DoD Big Data Platform (BDP) and other DoD-approved Enterprise services without disrupting local network operations.
- Engineer, test, and refine automated alarm rules and Intrusion Detection System (IDS) signatures to counter emerging threats and active adversary tactics.
- Continuously calibrate the SIEM to ensure it captures advanced threats while filtering out noisy, irrelevant alerts.
### Qualifications
Required Qualifications:
- Active TS/SCI security clearance
- Certification required per DoDD 8140.03, Intermediate Level (ISC2 SSCP or GIAC GSEC) or Advanced Level (ISACA CISM, ISC2 CISSP, or GIAC GSLC)
- BS or equivalent work experience in Data Engineering, Information Assurance, Cybersecurity, or Systems Administration field
- 9+ years of overall IT, cybersecurity, or data engineering experience
- Demonstrated experience in cyber-data engineering, including log parser creation, index policy management, data routing, and telemetry forwarding
Desired Qualifications:
- Extensive experience configuring and maintaining Security Onion architectures.
- Familiarity with engineering data pipelines for the DoD Big Data Platform (BDP) or similar enterprise data lakes.
- Knowledge of adversary tactics, techniques, and procedures (TTPs) and experience translating them into IDS rules and SIEM alerts.
- Previous experience operating in a highly complex, metrics-driven DoD cybersecurity environment.
### About the Company
[SAIC®](http://www.saic.com/) is a premier mission integrator focused on advancing the power of technology and innovation to serve and protect our world. Our robust portfolio of offerings across the defense, space, intelligence, and civilian markets includes secure high-end solutions in mission IT, enterprise IT, engineering services, and professional services. We integrate emerging technology, rapidly and securely, into mission critical operations that modernize and enable critical national imperatives.
We are approximately 23,000 strong; driven by mission, united by purpose, and inspired by opportunities. SAIC is an Equal Opportunity Employer. Headquartered in Reston, Virginia, SAIC has annual revenues of approximately $7.3 billion. For more information, visit [saic.com](http://www.saic.com/). For ongoing news, please visit our [newsroom](http://www.saic.com/who-we-are/newsroom/).
Key Responsibilities
- Design, deploy, and maintain custom data parsers and ingestion pipelines within Security Onion architecture.
- Engineer indexing policies, lifecycle management rules, and cluster configurations for massive event volumes.
- Configure and optimize high-throughput forwarding pipelines to transmit cyber telemetry to DoD Big Data Platform.
- Engineer, test, and refine automated alarm rules and Intrusion Detection System signatures.
- Calibrate SIEM to capture advanced threats while filtering out noisy alerts.
Requirements
- BS or equivalent work experience in Data Engineering
- Information Assurance
- Cybersecurity
- or Systems Administration
Skills Required
Security OnionSIEMLog parser creationIndex policy managementData routingTelemetry forwardingIDS signaturesDoD Big Data Platform (BDP)Enterprise data lakesAdversary tactics, techniques, and procedures (TTPs)IDS rulesSIEM alerts
App exclusive · Free
Smart Job AI Coach
Your personal interview coach on every job — readiness tips, profile improvements, and role-specific prep. Available only in the Pulse Job app.
Interview readiness
See how prepared you are and what to improve for each role.
Personalized tips
Actionable suggestions based on your profile and the job.
After you apply
Keep coaching momentum from job detail through application success.




