Sr Splunk Migration Engineer
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
Marathon TS is seeking a highly skilled Splunk to Elastic Migration Engineer to lead and execute end-to-end SIEM modernization initiatives. This role is responsible for designing and implementing Elastic deployments using the Elastic Cloud on Kubernetes (ECK) model, migrating legacy Splunk knowledge objects, detections, and data pipelines, and ensuring operational readiness through cutover validation and workflow integrations. The ideal candidate has deep hands-on experience with SIEM engineering, detection engineering, Elastic Stack architecture, and security operations workflows-particularly within enterprise or federal environments.
Requirements
- 5+ yearsβ experience in SIEM engineering or security operations
- Hands-on experience with Elastic Stack (Elasticsearch, Kibana, Elastic Security)
- Proven experience migrating from Splunk to Elastic or similar SIEM platforms
- Strong understanding of:SIEM data models and schemas
- Elastic Common Schema (ECS) Field Mappings
- Detection engineering and alert tuning
- Experience with Kubernetes and the ECK deployment model
- Strong scripting or automation skills (Python, Bash, etc.)
- Provide post-cutover from legacy platforms to Elastic, ensuring continuity of operations
- Migrate an existing Splunk SIEM environment (approximately 6 TB/day of data) to Elastic SIEM.
- Active TS clearance
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on marinetraffic.comGood distractions
Talks and stories from around this role β technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Highest Paying Tech Companies for Developers
Dev Digest 131 - AI'm not sure about OSS
Dev Digest 138 - Are you secure about this?
DevOps Engineer Salary [2023]