SIEM Engineer - Splunk, Cribl, Exabeam, Sentinel

Hybrid in Chicago, IL, US • Posted 9 hours ago • Updated 9 hours ago
Full Time
Hybrid
$140,000 - $160,000/yr
Fitment

Dice Job Match Score™

🎯 Assessing qualifications...

Job Details

Skills

  • Splunk
  • SIEM
  • Python
  • Exabeam. Sentinel

Summary

***We are unable to sponsor as this is a permanent full-time role***

***Hybrid, 3 days onsite, 2 days remote***

Responsibilities:

  • Assist in the implementation, administration, and ongoing optimization of the Firm s SIEM platform (e.g., Google Security Operations (SecOps), Splunk, Exabeam, Microsoft Sentinel).
  • Support the design and maintenance of Cribl pipelines, including data routing, filtering, enrichment, and performance optimization.
  • Build and maintain integrations for standard and custom log sources using APIs, agents, syslog, and cloud-native logging services.
  • Partner with Cybersecurity Operations to develop and refine SIEM use cases, correlation rules, and alerting logic.
  • Create and enhance dashboards, searches, and reports to support SOC (Security Operations Center) operations and threat hunting.
  • Contribute to documentation of SIEM architecture, data flows, onboarding processes, and operational procedures.
  • Help establish and monitor data quality standards to ensure reliable and accurate telemetry.
  • Provide support during security incidents, assisting with investigation and analysis efforts.
  • Stay current on SIEM technologies, security analytics, and observability trends to enhance capabilities.

Qualifications

  • Bachelor s degree or equivalent professional experience required.
  • Minimum of 3 5 years in IT or engineering, with at least 2 3 years focused on SIEM, logging, or security analytics.
  • Hands-on experience working with SIEM platforms such as Google SecOps (Chronicle), Splunk, Exabeam, or Microsoft Sentinel.
  • Experience working with Cribl, including pipeline configuration and log onboarding, preferred.
  • Familiarity with integrating log sources using APIs, syslog, or agents.
  • Experience building dashboards, alerts, and queries to support security monitoring and operations.
  • Understanding of common log sources, including endpoint, network, identity, cloud, SaaS (Software as a Service), and application logs.
  • Exposure to scripting or query languages (e.g., SPL, KQL, Python, Regex) and cloud platforms (Amazon Web Services (AWS), Microsoft Azure, Google Cloud Platform (Google Cloud Platform)) is a plus.

Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: napil006
  • Position Id: 9058330
  • Posted 9 hours ago
Contact the job poster
DG

Dillon Grooss

Recruiter @ Request Technology, LLC
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Hybrid in Chicago, Illinois

4d ago

Easy Apply

Full-time

$150,000 - $160,000

Hybrid in Chicago, Illinois

Today

Easy Apply

Full-time

$149,000 - $166,000

Chicago, Illinois

Today

Full-time

USD 145,000.00 - 195,000.00 per year

Remote

Today

Full-time

USD 155,000.00 - 175,000.00 per year

Search all similar jobs