We use cookies. Find out more about it here. By continuing to browse this site you are agreeing to our use of cookies.
#alert
Back to search results
New

Sr. Security Engineer - SIEM & NDR

KLA
paid time off, tuition reimbursement, 401(k)
United States, Michigan, Ann Arbor
1200 Woodridge Avenue (Show on map)
Feb 06, 2026

Company Overview

KLA is a global leader in diversified electronics for the semiconductor manufacturing ecosystem. Virtually every electronic device in the world is produced using our technologies. No laptop, smartphone, wearable device, voice-controlled gadget, flexible screen, VR device or smart car would have made it into your hands without us. KLA invents systems and solutions for the manufacturing of wafers and reticles, integrated circuits, packaging, printed circuit boards and flat panel displays. The innovative ideas and devices that are advancing humanity all begin with inspiration, research and development. KLA focuses more than average on innovation and we invest 15% of sales back into R&D. Our expert teams of physicists, engineers, data scientists and problem-solvers work together with the world's leading technology providers to accelerate the delivery of tomorrow's electronic devices. Life here is exciting and our teams thrive on tackling really hard problems. There is never a dull moment with us.

Job Description/Preferred Qualifications

The Cybersecurity group at KLA is involved in every aspect of the global business. The KLA Cybersecurity group defends against cyber-attacks and provides cybersecurity tools, incident response services and assessment capabilities to safeguard the environments that support the essential operations of KLA. We are passionate about identifying adversarial activities and anticipating a wide variety of threats to strengthen our defenses and the overall protection of KLA Intellectual Property.

We are seeking an experienced and highly motivated Senior Security Engineer to join our Cyber Operations team. This role will focus on the engineering, implementation, and operational support of our Security Information and Event Management (SIEM) and Network, Detection & Response (NDR) platforms. The successful candidate will play a critical role in advancing our organization's threat detection and response capabilities through expert management of security technologies and collaborative engagement with various cybersecurity stakeholders.

Responsibilities:
  • Design, implement, and maintain the Google SecOps SIEM platform, including log ingestion, parsing, rule creation, and dashboard development.

  • Leverage modern datapipeline management and logreduction technologies to improve data ingestion efficiency and optimize storage management.

  • Build and maintain system health checks, highavailability configurations, and reliable logpipeline workflows.

  • Collaborate with customers to understand their security operations needs and develop tailored SIEM strategies and roadmaps.

  • Enable customers to finetune detection logic, correlation rules, and alerting mechanisms to maximize effectiveness and minimize noise.

  • Integrate SIEM platforms with broader security ecosystems including SOAR, EDR, threat intelligence, and cloudnative security tools.

  • Continuously optimize detection rules, use cases, UEBA analytics, and SOAR playbooks to enhance threat visibility and reduce false positives.

  • Develop and maintain documentation for SIEM/NDR architecture, configurations, and operational procedures.

  • Monitor, troubleshoot, and resolve issues related to SIEM and NDR platform availability, performance, and data quality.

  • Stay current with emerging threats, vulnerabilities, and advancements in security technologies to recommend improvements.

  • Support compliance and audit activities by ensuring proper log retention, data integrity, and access controls

Minimum Qualifications

  • Bachelor's degree in Computer Science, Information Security, or a related field, or equivalent professional experience

  • Five (5) years of handson cybersecurity engineering experience focusing on SIEM platforms in large enterprise environments

  • Three (3) years of proven experience in Google SecOps SIEM administration, engineering, and integration

  • Three (3) years of experience working with Vectra or a similar NDR platform

  • Expertlevel understanding of security telemetry, including logs from firewalls, endpoints, cloud services, identity providers, and applications

  • This is a Hybrid role and will be based out of our Midwest HQ in Ann Arbor, MI

Base Pay Range: $0.00 - $0.00 Annually Primary Location: USA-MI-Ann Arbor-KLA KLA's total rewards package for employees may also include participation in performance incentive programs and eligibility for additional benefits including but not limited to: medical, dental, vision, life, and other voluntary benefits, 401(K) including company matching, employee stock purchase program (ESPP), student debt assistance, tuition reimbursement program, development and career growth opportunities and programs, financial planning benefits, wellness benefits including an employee assistance program (EAP), paid time off and paid company holidays, and family care and bonding leave.

Interns are eligible for some of the benefits listed. Our pay ranges are determined by role, level, and location. The range displayed reflects the pay for this position in the primary location identified in this posting. Actual pay depends on several factors, including state minimum pay wage rates, location, job-related skills, experience, and relevant education level or training. We are committed to complying with all applicable federal and state minimum wage requirements where applicable. If applicable, your recruiter can share more about the specific pay range for your preferred location during the hiring process.

KLA is proud to be an Equal Opportunity Employer. We will ensure that qualified individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us at talent.acquisition@kla.com or at +1-408-352-2808 to request accommodation.

Be aware of potentially fraudulent job postings or suspicious recruiting activity by persons that are currently posing as KLA employees. KLA never asks for any financial compensation to be considered for an interview, to become an employee, or for equipment. Further, KLA does not work with any recruiters or third parties who charge such fees either directly or on behalf of KLA. Please ensure that you have searched KLA's Careers website for legitimate job postings. KLA follows a recruiting process that involves multiple interviews in person or on video conferencing with our hiring managers. If you are concerned that a communication, an interview, an offer of employment, or that an employee is not legitimate, please send an email to talent.acquisition@kla.com to confirm the person you are communicating with is an employee. We take your privacy very seriously and confidentially handle your information.

Applied = 0

(web-54bd5f4dd9-cz9jf)