Sr Splunk Migration Engineer

MarineTraffic
United States
3 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$26,000.0
Working hours
Regular working hours

Tech stack

Amazon Elastic Compute Cloud Bash Shell Cyber Security Elasticsearch Intrusion Detection and Prevention Python (Programming Language) Security Information and Event Management Kubernetes Kibana Splunk Data Pipelines

Job description

Marathon TS is seeking a highly skilled Splunk to Elastic Migration Engineer to lead and execute end-to-end SIEM modernization initiatives. This role is responsible for designing and implementing Elastic deployments using the Elastic Cloud on Kubernetes (ECK) model, migrating legacy Splunk knowledge objects, detections, and data pipelines, and ensuring operational readiness through cutover validation and workflow integrations. The ideal candidate has deep hands-on experience with SIEM engineering, detection engineering, Elastic Stack architecture, and security operations workflows-particularly within enterprise or federal environments.

Requirements

  • 5+ years’ experience in SIEM engineering or security operations
  • Hands-on experience with Elastic Stack (Elasticsearch, Kibana, Elastic Security)
  • Proven experience migrating from Splunk to Elastic or similar SIEM platforms
  • Strong understanding of:SIEM data models and schemas
  • Elastic Common Schema (ECS) Field Mappings
  • Detection engineering and alert tuning
  • Experience with Kubernetes and the ECK deployment model
  • Strong scripting or automation skills (Python, Bash, etc.)
  • Provide post-cutover from legacy platforms to Elastic, ensuring continuity of operations
  • Migrate an existing Splunk SIEM environment (approximately 6 TB/day of data) to Elastic SIEM.
  • Active TS clearance

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on marinetraffic.com

Good distractions

Talks and stories from around this role β€” technically off-topic, practically not.

3:21 min

Deploying a primary Elasticsearch and Kibana cluster configuration

Philipp Krenn Β· World Congress 2022

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 Β· LIVE

3:52 min

Avoiding remote code execution from unsanitized inputs

Alexander Pirker Β· World Congress 2022

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira Β· Coffee With Developers

2:30 min

Managing transforms and objectives via developer tools APIs

Diana Todea Β· LIVE

1:31 min

Exploring the core components of the ELK stack

Derek Binkley Β· LIVE

Videos

See all

Related articles

See all