Splunk Engineer, Enterprise Security
Posted 57ds ago
Employment Information
Report this job
Job expired or something wrong with this job?
Job Description
Splunk Engineer specializing in Splunk Enterprise Security to manage and optimize operations for a technology client. Remote role with a focus on security operations and collaboration with Analysts.
Responsibilities:
- Splunk Enterprise Security (ES) Configuration & Management
- Configure, customize, and maintain Splunk Enterprise Security to meet organizational security monitoring needs
- Able to monitor and resolve data breaches and catch up the alerts
- Develop, tune, and monitor security alerts, correlation searches, and dashboards within Splunk ES
- Implement and manage use cases, data models, and risk-based alerting frameworks
- Collaboration & Security Operations Support
- Work closely with Security Analysts to triage, investigate, and respond to security alerts generated by Splunk ES
- Provide timely and accurate data from Splunk to support incident investigation and forensic analysis
- Assist in developing and refining detection rules, reports, and visualizations to improve analyst efficiency
Requirements:
- 8+ years of experience in Splunk Enterprise Security
- Proven experience as a Splunk security engineer with hands-on expertise in Splunk Enterprise Security
- Strong ability to configure, run, and monitor alerts within Splunk ES
- Experience working collaboratively with Security Analysts in a SOC or similar environment
- Familiarity with security data sources, log formats, and SIEM integration
- Splunk certifications (e.g., Splunk Certified Admin, Splunk Enterprise Security Certified Admin) are a plus
- Knowledge of security frameworks, compliance requirements, and threat intelligence integration
- Scripting skills (Python, Bash, etc.) for automation and customization
- Experience in large-scale or multi-site Splunk deployments.
Benefits:
- C2C or W2 (USC or GC only)


















