Security Operations Center Technical SME

Title

Security Operations Center Technical SME

ID

10000269

Department

Information Technology


Brief Description:

Evans & Chambers Technology is actively seeking a highly motivated Security Operations Center (SOC) Technical SME to join our team!

Evans & Chambers partners with the US national defense community to create fully integrated, resilient, and innovative digital solutions that enable them to make smart decisions in real-time. We work with our customers on everything from conquering their data to improving and safeguarding IT infrastructure. Our ultimate goal? To enhance our nation's ability to identify, address, and act – no matter what challenges arise.

Clearance Required: 

TS/SCI with CI poly required

Location:

Fort Meade, MD (Onsite)

Description:

The SOC Technical SME reports directly to the SOC Program Manager and serves as the technical backbone of a 24/7 security operations center, providing deep expertise in log analysis, SIEM administration and tuning, and detection engineering. This role is responsible for interrogating high-volume log sources, identifying gaps in visibility and coverage, and ensuring the toolset and detection logic keep pace with evolving adversary tradecraft.

Essential Duties:

- Deeply analyze and interrogate logs across diverse sources (network, host, application, cloud, identity) to identify anomalies, gaps, and indicators of compromise
- Monitor, tune, and optimize SIEM platforms to improve detection fidelity and reduce false positive/negative rates
- Evaluate log volume, retention, and ingestion pipelines to ensure completeness of data and identify blind spots in coverage
- Develop, refine, and maintain correlation rules, use cases, and detection content aligned to current threat intelligence techniques
- Serve as an escalation point for Tier 1/2 analysts on complex triage, investigation, and incident analysis
- Utilize and maintain proficiency across relevant security tool stacks (SIEM, EDR, NDR, SOAR, threat intel platforms, packet capture/analysis tools)
- Support containment, eradication, and recovery efforts during security incidents as a senior technical responder
- Collaborate with the SOC Program Manager to report on SOC metrics, detection coverage, and operational effectiveness
- Recommend and support implementation of process improvements, automation, and playbooks to increase SOC efficiency
- Stay current on emerging threats, adversary TTPs, and industry best practices, incorporating relevant intelligence into detection strategy
- Assist in mentoring and upskilling junior SOC analysts on log analysis and investigative techniques

Qualifications: 

A degree in Computer Science, Information Systems, Engineering, or a related discipline is preferred. At least seven (7) years of information security experience, with demonstrated depth in SIEM administration/engineering, log analysis, and security tool stacks in a SOC environment. Experience with one or more SIEM platforms (e.g., Splunk, QRadar, Elastic, Sentinel) required. Familiarity with threat intelligence integration strongly preferred. CySA+, GCIA, GCIH, or CISSP required.

Get on board!

Evans & Chambers is a progressive IT solutions provider.  We offer excellent salaries and benefits in a fun and energized work environment. We are committed to rewarding goal-oriented professionals who enjoy meeting challenges head-on.  http://www.evanschambers.com

All employment opportunities are made without regard to age, race, creed, color, religion, sex national origin, ancestry, disability status, veteran status, sexual orientation, gender identity or expression, genetic information, marital status or any other basis protected by law.

 
ApplicantStack powered by Swipeclock