Splunk Security Engineer

Richmond, VA, US • Posted 6 hours ago • Updated 6 hours ago
Contract Corp To Corp
Contract W2
Contract Independent
12 Months
On-site
Depends on Experience
Fitment

Dice Job Match Score™

🔢 Crunching numbers...

Job Details

Skills

  • SIEM
  • SPLUNK
  • Splunk Processing Language
  • EDR
  • Firewalls
  • MITRE
  • ATT&CK
  • NIST
  • HIPAA
  • SOC2
  • Cybersecurity

Summary

ey Responsibilities

  • Design, implement, configure, and maintain Splunk Enterprise and Splunk Enterprise Security (ES) environments.
  • Onboard and integrate security logs and events from servers, applications, network devices, firewalls, endpoints, cloud platforms, and security tools.
  • Develop and maintain Splunk data models, indexes, sourcetypes, field extractions, CIM mappings, and ingestion pipelines.
  • Create and tune correlation searches, detection rules, notable events, risk-based alerts, and security use cases.
  • Develop security dashboards, reports, alerts, and operational monitoring solutions.
  • Develop and maintain Splunk ES security content supporting SOC monitoring and threat detection.
  • Analyze security events and identify suspicious activity, anomalies, and potential threats.
  • Work with SOC analysts to investigate and troubleshoot security incidents.
  • Tune alerts to reduce false positives while maintaining effective threat detection.
  • Integrate Splunk with security technologies such as EDR, firewalls, IDS/IPS, IAM, vulnerability management, cloud security, and threat intelligence platforms.
  • Develop automated workflows and integrations using Splunk SOAR where applicable.
  • Monitor Splunk infrastructure, troubleshoot indexing/search performance, and optimize system performance.
  • Configure and manage Universal Forwarders, Heavy Forwarders, indexers, and search heads.
  • Troubleshoot data ingestion, parsing, field extraction, search, and correlation issues.
  • Support Splunk upgrades, configuration changes, deployments, and production releases.
  • Develop and maintain technical documentation, architecture diagrams, runbooks, and operational procedures.
  • Collaborate with security architects, SOC teams, incident responders, and infrastructure teams to improve security monitoring capabilities.
  • Participate in incident response, threat hunting, and security investigations as required.
  • Ensure Splunk implementations follow organizational security, compliance, and logging standards.
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 90547432
  • Position Id: 9094523
  • Posted 6 hours ago
Contact the job poster
AK

Anita Kale

Recruiter @ Skywalk Global
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Richmond, Virginia

•

Today

Easy Apply

Third Party, Contract

70 - 80

Richmond, Virginia

•

2d ago

Easy Apply

Contract

55

Richmond, Virginia

•

2d ago

Easy Apply

Contract

80 - 90

Richmond, Virginia

•

2d ago

Easy Apply

Third Party, Contract

Depends on Experience

Search all similar jobs