Splunk Enterprise Security (ES) Consultant - remote


System One
Dice Job Match Score™
🧠 Analyzing your skills...
Job Details
Skills
- Security
Summary
Remote – offsite
Responsibilities
- Develop custom detection content: correlation searches, notable events, alerts, reports, and visualizations to surface threat activity
- Build and maintain Splunk Apps and Technology Add-ons (TAs)
- Onboard new data sources and normalize them to the Common Information Model (CIM)
- Optimize data flow and ingestion using aggregation, filtering, and pipeline tuning
- Configure notable event actions, action menus, and Adaptive Responses
- Tune detections to cut noise and surface what matters, including risk-based alerting where applicable
- Build dashboards that highlight anomalies, trends, and security and operational metrics
- Support and optimize large distributed clustered Splunk environments (search heads, indexers, forwarders, deployment servers)
- Partner with the client''s security and SOC teams, debug complex integration and configuration issues
- Document processes, procedures, and key engineering decisions
- Several years of hands-on Splunk experience, with real ES implementation, content development, and tuning
- Strong SPL and regular expressions
- Scripting in Python, Perl, or Bash
- Solid grasp of CIM and data onboarding and normalization at scale
- Experience supporting clustered Splunk environments in SOC or NOC settings
- SIEM data modeling experience on a platform at scale
- Proficiency in Linux, including editing and maintaining Splunk config files and apps
- Comfortable working consultatively with client teams and explaining the why behind the work
- Splunk certifications (Core Certified Consultant, ES Certified Admin, Architect) are a plus but not required
- Demonstrated ES delivery experience carries more weight than paper
System One is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, age, national origin, disability, family care or medical leave status, genetic information, veteran status, marital status, or any other characteristic protected by applicable federal, state, or local law.
#LI-KA1
#M1
Ref: #856-Baltimore-S1
- Dice Id: 10295162
- Position Id: 375671
- Posted 2 hours ago
Company Info
System One is a leading provider of specialized, highly technical outsourced services, workforce solutions, staffing, and recruiting to critical infrastructure, technology, life sciences, and government sectors As an essential partner to private and public organizations of various needs and sizes, we offer our expertise to help them bring their most complex and mission-critical programs to fruition.
With our highly specialized services, in-demand technical skills, and vast operational expertise, we can deliver accelerated results that benefit our clients and the job seekers who partner with us. We staff contract, contract-to-hire, and direct-hire professionals across our network to work with our clients, some of whom are industry leaders and nationally branded organizations.
Our dedicated team of recruiters work tirelessly to match jobseekers with careers that align with their skills, aspirations, and goals.
We understand that finding the right job can be a transformative experience, and we are committed to supporting jobseekers throughout their career journeys. Our recruitment services are designed to connect individuals with fulfilling jobs that offer growth and development opportunities.
Whether you're an organization seeking customized workforce solutions, outsourced services, or if you're a jobseeker searching for your next opportunity,
System One is the perfect staffing partner for you.

Similar Jobs
It looks like there aren't any Similar Jobs for this job yet.
Search all similar jobs