Overview
Skills
Job Details
Only W2 (No c2c/ No 1099)
Job Title: Splunk (SIEM) Notables Automation Engineer
Location: Phoenix, AZ (Onsite/Hybrid specify as needed)
Duration: 12 months
Job Description:
We are seeking a skilled Splunk Notables Automation Engineer with expertise in Splunk Core and Splunk Processing Language (SPL) to support our SIEM automation initiatives.
Responsibilities:
Design and automate notable event creation and correlation in Splunk SIEM
Develop efficient SPL queries, dashboards, and alerts
Streamline incident response through automation and integration with security tools
Optimize search performance and maintain Splunk best practices
Requirements:
3+ years of experience in Splunk Core and SPL
Strong knowledge of SIEM operations and automation workflows
Experience with notable events, correlation searches, and alert tuning
Good understanding of security use cases and incident management
Preferred:
Splunk certification(s)
Experience with SOAR tools or Python scripting