Cybersecurity Engineer 4 - SIEM / SPLUNK Engineer

Anonymous Employer
Columbus, OH, United States
17 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
7 years minimum
Working hours
Regular working hours

Tech stack

Cyber Security Linux Intrusion Detection Systems Security Information and Event Management Data Storage Management Data Ingestion Cybercrime Splunk

Job description

Administer and maintain Splunk Enterprise Security (ES) and enterprise log management systems.

  • Design and implement custom dashboards, alerts, correlation rules, and threat detection use cases.
  • Analyze threat data collected from security logs, IDS systems, intelligence feeds, and other sources.
  • Develop monitoring dashboards to support incident response and threat detection operations.
  • Perform installation, configuration, and lifecycle maintenance of the Splunk ELM architecture.
  • Optimize data ingestion, indexing performance, and storage management within the Splunk environment.
  • Support system upgrades, maintenance, and troubleshooting of Splunk infrastructure.
  • Develop reports, rules, and automated monitoring workflows to enhance threat detection. Collaborate with incident response teams and security analysts to support enterprise cybersecurity operations.

Requirements

7+ years of relevant IT / cybersecurity experience

  • Active DoD Secret Clearance
  • Must meet DoD 8570 / 8140 IAT Level III certification requirements - candidate must possess one of the following certifications: CASP+ CE, CCNP Security, CISA, CISSP, GCED, GCIH, CCSP
  • Must meet DoD 8570 / 8140 CND-IS certification requirements - candidate must possess one of the following certifications: CEH, GICSP, GCIH, GCIA, CFR
  • Must be eligible for IT Level I access
  • Computing Environment Certification: Linux+ certification
  • Computing Environment Certification: Splunk Administrator certification
  • Experience developing custom Splunk dashboards and reports
  • Experience supporting Splunk Core and Splunk Enterprise Security (ES)

Preferred Skills

  • Experience supporting enterprise SIEM architectures
  • Experience with threat hunting and security analytics
  • Familiarity with large-scale log ingestion and correlation systems

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa · LIVE

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · WWC 2025

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:11 min

Securing heterogeneous legacy payment infrastructure against AI

Michele Zuccala Michele Zuccala +4 · WWC Europe 2026

3:55 min

Demonstrating .NET installation on Debian and Azure Linux

Silvano Coriani Silvano Coriani · Europe 2026 Virtual

Videos

See all

Related articles

See all