Enterprise Splunk SIEM Engineer

Newport Beach CA-700, United States

Pacific Life

For nearly 160 years, Pacific Life has helped millions of individuals and families with their financial needs through a wide range of life insurance products, annuities, and employee benefits, and offers a variety of investment products and...

View all jobs at Pacific Life

Apply now Apply later

Job Description:

Pacific Life is investing in bright and agile talent to contribute to our mission of innovating our business and creating a superior customer experience. We’re actively seeking a talented Sr. Splunk Engineer II to join our Cloud & Compute Platforms team in Newport Beach, CA. This role can be on-site or hybrid.

 
As Enterprise Logging & SIEM Engineer, you’ll play a key role in Pacific Life’s growth and long-term success by playing  a key role in protecting business IT platforms, ensuring system health, performance, and security through observability and SIEM event visibility.

 
This role is responsible for the design, architecture, and health of the enterprise logging and SIEM platform, including identifying and repairing performance issues and data quality issues. This role will work very closely with security operations.

How you will make an impact: 

  • Design, build, and maintain a monitoring and logging roadmap that aligns with the technical direction of the organization and company.
  • Install, configure, and maintain Splunk and other SIEM environments.
  • Develop and optimize Splunk dashboards, reports, alerts, and visualizations to support business and security operations.
  • Manage Splunk indexing, data ingestion, parsing, and field extractions from multiple sources.
  • Implement best practices for data onboarding, correlation searches, and log management.
  • Work with IT and Security teams to improve SIEM (Security Information and Event Management) capabilities.
  • Monitor Splunk system health, troubleshoot performance issues, and ensure high availability.
  • Manage Splunk apps, add-ons, forwarders, and configurations across distributed environments.
  • Automate Splunk administration tasks using Python, Shell, or PowerShell scripting.
  • Enforce role-based access controls (RBAC) and data security measures.
  • Provide technical support, training, and documentation for Splunk users across the organization.
  • Onboard data with best practices and normalize to Common Information Model standards.
  • Provide regular updates to relevant teams based off metrics & report findings from Splunk related tasks.
  • Identify process improvement opportunities, and opportunities for automation or other enhancements.
  • Assess and provide recommendations to improve root cause identification and response time in enterprise systems and applications.

The experience you will bring: 

  • BS degree in Computer Science or related field or equivalent experience
  • 8+ years of working with SIEM platforms, logging platforms, in an enterprise IT monitoring & logging environment.
  • Experience supporting Splunk Cloud. SolarWinds, LogicMonitor, other SIEM platforms, and other logging platforms is a plus.
  • Familiarity with application monitoring/synthetic transaction tools
  • Familiarity with industry standard scripting languages such as Python, Bash, and PowerShell.
  • Familiarity with infrastructure as code automation tools
  • Experience working with cloud-native services in AWS such as EC2 and S3
  • Demonstrated ability to communicate both laterally and up to influence decisions and actions.
  • Demonstrated critical thinking, problem-solving skills, and ability to work under pressure
  • Advanced Microsoft Office and architectural diagramming skills to create project documents and presentations

Base Pay Range:

The base pay range noted represents the company’s good faith minimum and maximum range for this role at the time of posting. The actual compensation offered to a candidate will be dependent upon several factors, including but not limited to experience, qualifications and geographic location. Also, most employees are eligible for additional incentive pay.

Your Benefits Start Day 1  
 

Your wellbeing is important to Pacific Life, and we’re committed to providing you with flexible benefits that you can tailor to meet your needs. Whether you are focusing on your physical, financial, emotional, or social wellbeing, we’ve got you covered.

  • Prioritization of your health and well-being including Medical, Dental, Vision, and Wellbeing Reimbursement Account that can be used on yourself or your eligible dependents

  • Generous paid time off options including: Paid Time Off, Holiday Schedules, and Financial Planning Time Off

  • Paid Parental Leave as well as an Adoption Assistance Program

  • Competitive 401k savings plan with company match and an additional contribution regardless of participation

EEO Statement:

Pacific Life Insurance Company is an Equal Opportunity /Affirmative Action Employer, M/F/D/V. If you are a qualified individual with a disability or a disabled veteran, you have the right to request an accommodation if you are unable or limited in your ability to use or access our career center as a result of your disability. To request an accommodation, contact a Human Resources Representative at Pacific Life Insurance Company.

Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  0  0  0

Tags: Agile Automation AWS Bash Cloud Computer Science EC2 Monitoring PowerShell Python S3 Scripting SIEM Splunk

Perks/benefits: 401(k) matching Competitive pay Flex hours Flex vacation Health care Insurance Medical leave Parental leave Startup environment

Region: North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.