Senior Splunk Enterprise Security Engineer

Irving, TX, US • Posted 2 hours ago • Updated 2 hours ago
Contract W2
On-site
$55 - $65/hr
Company Branding Image
Fitment

Dice Job Match Score™

🎯 Assessing qualifications...

Job Details

Skills

  • Splunk
  • Security
  • SIEM

Summary

Role: Senior Splunk Enterprise Security Engineer

Location: Irving, TX

Duration: 06 Months

What You ll Do

  • Lead the end-to-end administration of Splunk Enterprise Security across a cloud hosted (AWS/Azure/Google Cloud Platform) deployment, including architecture decisions, capacity planning, performance tuning, and version upgrades.
  • Design, implement, and maintain ES frameworks including notable event configurations, risk-based alerting, asset and identity correlation, and threat intelligence integrations.
  • Develop and optimize correlation searches, dashboards, and investigation workflows to reduce alert fatigue and accelerate analyst response times.
  • Drive data source onboarding and ensure CIM (Common Information Model) compliance for new and existing log sources across the enterprise.
  • Partner with compliance teams to ensure Splunk ES configurations directly support PCI DSS, SOX, and NIST CSF audit and reporting requirements.
  • Establish and maintain health monitoring for the Splunk environment, including search performance, indexing throughput, forwarder connectivity, and license utilization.
  • Create and maintain operational documentation, runbooks, and knowledge base articles for Splunk ES administration and troubleshooting.
  • Serve as the escalation point for complex Splunk issues and participate in incident response efforts during critical security events as needed.
  • Evaluate and recommend new Splunk apps, add-ons, and integrations that strengthen the organization s security posture.
  • Collaborate with Security Architecture peers to align Splunk ES capabilities with the broader security tooling ecosystem and long-term technology roadmap.

What You Bring

Required

  • 5+ years of hands-on experience with Splunk platform administration, with significant depth in Splunk Enterprise Security.
  • Active Splunk certifications required: Splunk Enterprise Certified Admin and/or Splunk ES Certified Admin.
  • Proven experience managing Splunk deployments in cloud environments (AWS, Azure, or Google Cloud Platform).
  • Deep understanding of security monitoring, log management, SIEM operations, and event correlation at enterprise scale.
  • Working knowledge of PCI DSS, SOX, and NIST CSF compliance frameworks and how they translate into SIEM use cases and reporting requirements.
  • Strong SPL (Search Processing Language) proficiency, including complex statistical commands, lookups, macros, and data models.
  • Experience with Splunk infrastructure components: indexers, search heads, heavy/universal forwarders, deployment servers, and cluster management.
  • Excellent communication skills with the ability to translate complex technical concepts for non-technical stakeholders.

Preferred

  • Experience in large-scale retail or similarly complex, high-transaction-volume environments.
  • Familiarity with Splunk SOAR (formerly Phantom) and security automation/orchestration workflows.
  • Background in detection engineering, threat hunting, or SOC operations.
  • Additional certifications such as CISSP, GIAC (GCIA, GCIH), or cloud security credentials (AWS Security Specialty, AZ-500).
  • Experience with Infrastructure as Code (Terraform, Ansible) for Splunk deployment management.
  • Scripting proficiency in Python, Bash, or PowerShell for automation and custom integrations.

Work Environment & Expectations

  • This is an on-site position based in Irving, TX.
  • Occasional after-hours support may be required during active security incidents or critical platform maintenance windows.
  • Standard business hours with flexibility around incident-driven needs.

Why Join Us

  • Work at the intersection of security engineering and enterprise retail operations, protecting millions of customers and transactions daily.
  • Access to continuous learning opportunities, conference attendance, and certification support.
  • Be part of a team that values technical depth, operational excellence, and collaborative problem-solving.

Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 10119424
  • Position Id: 8902760
  • Posted 2 hours ago

Company Info

About CBTS

CBTS provides a complete spectrum of technology solutions ranging from infrastructure, applications, to consulting services. Our mission is to help businesses architect, deploy, and manage custom-built IT solutions that help them improve operational efficiencies, while reducing costs and risk.

To help achieve your business goals, CBTS has built a state-of-the-art platform of technology assets, engineering talent, and strategic partnerships to deliver world-class services. In addition to configuring and deploying cutting-edge technology solutions, we also use the same platform to fuse the right security, disaster recovery, and management portfolio around your environment. With CBTS, you are assured that your mission critical data is up and running at all times, protected, and compliant.

About_Company_One
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Irving, Texas

Today

Easy Apply

Contract

$60 - $65

Irving, Texas

Today

Easy Apply

Full-time

Depends on Experience

Search all similar jobs