SIEM Content Developer
AGE Solutions · Columbus, OH · United States · On-site
Posted Sep 29, 2026
Sign up free: we match you to jobs like this, tailor your application and fill the form. 2 free applications every day.
About Us
AGE Solutions is a premier technology and professional services company, providing in-depth consulting, advanced technology solutions, and essential services throughout the U.S. government, defense, and intelligence sectors. Prioritizing innovation and client-focused solutions, we assist major agencies in addressing intricate issues and ensuring a more secure future.
AGE Solutions is seeking an experienced SIEM Content Developer to support the development and enhancement of cybersecurity threat detection capabilities. This position researches emerging threats and threat intelligence to develop new detection use cases, identifies gaps in security protection and analytics capabilities, and develops custom scripts to enhance SIEM functionality.
The SIEM Content Developer works closely with stakeholders, cybersecurity tool SMEs, and Threat Detection Analysts to improve data feeds, establish alerting priorities, and create detection signatures tailored to critical systems, programs, and applications.
Responsibilities Include:
Research and develop new threat detection use cases based on emerging threats, threat intelligence research, and Threat Detection Analyst feedback.
Collaborate with stakeholders and cybersecurity tool Subject Matter Experts (SMEs) to identify gaps in security protection and analytics capabilities.
Develop custom scripts to enhance SIEM functionality and threat detection capabilities.
Review the quality of SIEM data feeds and recommend or implement improvements.
Collaborate with stakeholders to identify critical systems and application components.
Develop alerting priorities based on identified critical systems and application components.
Create signatures tailored to individual programs and applications.
Develop and maintain scripts using PowerShell, Python, SPL, or similar scripting capabilities identified for the role.
Apply knowledge of various log formats when developing and maintaining SIEM content.
Apply knowledge of the MITRE ATT&CK framework when developing threat detection use cases.
Apply knowledge of network architecture when developing security analytics and detection capabilities.
Apply an understanding of Defense-in-Depth when supporting security protection and analytics capabilities.
Independently assess material gaps in customer threat-detection coverage, compare alternative corrective approaches, and recommend priorities based on system criticality, security risk, and operational impact.
Advise customer cybersecurity leadership on changes to detection practices and monitoring priorities, explaining the alternatives, tradeoffs, and expected effects on protection of critical systems and applications.
Required Skills, Qualifications, and Experience:
Experience:
Five (5) years of relevant IT experience.
Three (3) years of experience working with a SIEM in a content development or Incident Response role.
Three (3) years of System and/or Network Administration…