Splunk SIEM Engineer
Tasks
- Audit data sources for relevance and efficiency
- Build dashboards and visualizations
- Configure maintain and optimize Splunk Enterprise Security
- Configure maintain and optimize Splunk SOAR
- Create and tune alerts to reduce false positives
- Develop and maintain correlation searches detections and use cases
- Eliminate unnecessary data ingestion
- Enhance detection coverage for emerging threats
- Ensure SIEM operations across hosting environments
- Lead Splunk SIEM platform transformation
- Maintain security content lifecycle
- Manage Splunk certificates
- Manage and optimize log ingestion pipeline
- Manage capacity planning
- Monitor platform health and performance
- Onboard and integrate new data sources
- Parse normalize and map logs to Splunk CIM
- Perform system upgrades and patching
- Refine correlation rules and detections
Perks/Benefits
- 401k
- Health insurance
- Hybrid onsite work
- Paid federal holidays
- Paid vacation
- Pet insurance
- Training and certification support
- Tuition assistance
Skills/Tech-stack
API | Alert Tuning | Automation and response | Common Information Model | Correlation searches | Data Ingestion | Data Ingestion Pipeline | Data forwarding | Enterprise Security | Incident Response | Information Model | Ingestion Pipeline | Log Ingestion | Log Parsing | Log normalization | MITRE ATT&CK | Patching | Performance Monitoring | SIEM architecture | Security Orchestration | Security Orchestration Automation | Security Orchestration Automation and Response | Splunk Common Information Model | Splunk Enterprise | Splunk Enterprise Security | Splunk SOAR | Syslog | Threat detection | Zero Trust
Education
N/A
Related jobs
-
Security Engineer, Wearables (RL) USD 177K-251KAI Automation | AWS | Agent Orchestration | C# | C++Senior-level Full TimeBurlingame, CA9h ago
-
Associate Security Analyst, Agentic Security Operations USD 102K-145KAI Security | AI Security Assistant | API Integration | Deobfuscation | Detection and ResponseMid-level Full TimeTexas, USA; United States9h ago
-
Director, Security Architecture & Engineering USD 132K-224KAPI Security | Access Control | Application Security | CIS Controls | Cloud Native401k match | Career advancement opportunities | Employee resource groups | Flexible PTO | Flexible work environmentSenior-level Full TimeMorrisville, NC, US, 2756013h ago
-
Director, Security Operations USD 180K-250KAlert Tuning | Automation | CIS Controls | Case management | Cause analysis401k match | Conference attendance support | Employee resource groups | Flexible PTO | Flexible work environmentExecutive-level Full TimeMorrisville, NC, US, 2756013h ago
-
Senior-level Full TimeMillersville, MD, US23h ago
-
Sr Lead Security Engineer - Workforce USD 177K-215KAWS | Access Management | Ansible | Azure | BitbucketBackup childcare | Financial coaching | Health care coverage | Mental health support | On-site health and wellness centersSenior-level Full TimeWilmington, DE, United States1d ago
-
Senior-level Full TimeNew York, NEW YORK, United States1d ago
-
AWS | Access Management | Ansible | Azure | CIS ControlsEntry-level Full TimeDallas, TX, United States1d ago
-
AMAG Symmetry | Crisis coordination | Crisis management | Decision Making | EverbridgeDaily earned wage access | Dental coverage | Disability insurance | Discount program | Employee assistance programMid-level Full TimePoughkeepsie, NY, United States1d ago
-
Security Engineer, Bridge USD 229K-343KAccess Control | Audit compliance | CI/CD | Incident Response | Secrets management401k plan | Company bonus | Equity | Medical, dental, vision benefits | Sales commissionsSenior-level Full TimeSF, New York, Seattle, Dublin1d ago
-
Senior Application Security Engineer (Remote) USD 192K-240KAWS | Application Security Testing | Bug Bounty | Code review | Design reviewLearning sessions | Mentorship | Remote workSenior-level Full TimeUnited States R1d ago
-
Distinguished Engineer, End-to-End Security Architect USD 198K-279KAPI Security | Access Control | Access Management | Certificate Lifecycle Management | Certificate lifecycle401k retirement plan | Commuter benefits | Disability insurance | Employee assistance programme | Flexible spending accountsSenior-level Full TimeAustin, Texas, United States; US - …1d ago
-
Sr IAM Security Professional USD 100K-150KAWS Directory | AWS Directory Service | Access Management | Active Directory | Application troubleshootingEducation reimbursement | Flexible work arrangements | Maternity & paternity leave | Medical, dental, and vision coverage | Paid time offSenior-level Full TimeUnited States1d ago
-
Senior Security Engineer (Cyber Resiliency) USD 130K-150KAutomation | Cloud Security | Compliance | Endpoint Security | ForensicsCoworking stipend | Health insurance coverage | Paid parental leave | Phone and internet stipend | Remote-first cultureSenior-level Full TimeUnited States - Remote R1d ago
-
Cloud Security | Cloud Security Posture | Cloud Security Posture Management | Computer forensics | Host ForensicsSenior-level Full TimeReston, VA, USA; Austin, TX, USA1d ago
-
Senior-level Full TimeWashington, DC, United States1d ago
-
Senior-level Full TimeWashington, DC, United States1d ago
-
Senior Network Engineer USD 127K-166K800-171 | Azure | CMMC | CUI | Configuration ManagementHybrid work schedule | Travel 10 to 20 percentSenior-level Full TimeDulles, VA, United States1d ago
-
Director Information Security & Governance USD 174K-232KAI Security | Access Management | Application Security | Attack surface | Attack surface managementExecutive-level Full TimeColumbus, OH, United States1d ago
-
Security Analyst (Open to Remote) USD 65K-85KCloud Platforms | DHCP | DNS | Encryption | Incident Response401k matching | Commuter benefits | Dental insurance | Educational assistance | Health savings accountMid-level Full TimeNew York, NY, US, NY 10019 R1d ago
-
Manager, Security Operations (Remote) USD 193K-216KCloud Security | Data Analysis | Detection engineering | Endpoint Security | Identity logs401k plan | Dental insurance | Disability insurance | Employee assistance program | FSA/HSAMid-level Full TimeRemote - United States R1d ago
-
800-53 | ACAS | Agile | Assessment and Authorization | CNSSI 1253Entry-level Full TimeSpringfield, VA, United States1d ago
-
Senior Cyber Security Engineer USD 119K-190K8021X | Access Control | Anti-virus | C2C | Cisco Identity ServicesSenior-level Full TimeChantilly, VA, United States1d ago
-
Endpoint Security Engineer USD 120K-168KActive Directory | Architecture Framework | Carbon Black | Cyber Security | DOD Architecture FrameworkSenior-level Full TimeSpringfield, VA, United States1d ago
-
800-171 | 800-53 | ACAS | CNSSI 1253 | Configuration ControlEntry-level Full TimeSaint Louis, MO, United States1d ago