Job Description
We are seeking a SIEM Administrator to join the team of a large oil and gas client in the Houston area. The SIEM Administrator will support Cybersecurity Operations by managing the daily operations, health, and performance of the IBM QRadar SIEM platform. This role serves as the primary technical liaison between the company and the Managed Security Service Provider (MSSP), ensuring seamless collaboration, high‑quality detections, and efficient incident response.
The SIEM Administrator will be responsible for developing, tuning, and maintaining SIEM detection rules; onboarding and managing log sources; coordinating data ingestion and parsing activities; and overseeing the lifecycle of the QRadar environment, including upgrades, patches, and platform stability. This position plays a critical role in maintaining operational continuity and enhancing the company's threat‑detection and response capabilities.
Pay: $45-55 per hour depending on experience.
This person must report onsite 3 days a week.
We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to HR@insightglobal.com.To learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy: https://insightglobal.com/workforce-privacy-policy/.
Required Skills & Experience
Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related technical field
5–7 years of experience in cybersecurity operations
3+ years of hands‑on SIEM administration experience (QRadar preferred): rule tuning, log source onboarding, DSM mapping, parsing and health monitoring
Working with or alongside an MSSP or SOC in a collaborative operational model
Log ingestion architecture and lifecycle management
Managing upgrades, patches, and maintenance of SIEM infrastructure
Troubleshooting ingestion failures, EPS issues, routing, and correlation logic
Onboarding data sources such as firewalls, EDR, cloud platforms, and identity tools
Understanding of detection engineering, alert logic, and incident response workflows
Nice to Have Skills & Experience
Basic familiarity with Linux systems
Certifications:
CompTIA Security+, CompTIA CySA+, GIAC GCIA,CISSP, GIAC GMON, IBM Certified Associate Administrator - QRadar SIEM, Microsoft SC-200
Benefit packages for this role will start on the 1st day of employment and include medical, dental, and vision insurance, as well as HSA, FSA, and DCFSA account options, and 401k retirement account access with employer matching. Employees in this role are also entitled to paid sick leave and/or other paid time off as provided by applicable law.