Security Engineer

Zachary Piper
Durham, NC, United States
9 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$120,000.0 - $140,000.0
Working hours
Regular working hours

Tech stack

Application Programming Interfaces (APIs) Cyber Security Custom Software Data Auditing Data Integrity Intrusion Detection and Prevention Python (Programming Language) Log Analysis Security Information and Event Management Systems Integration Scripting Cyber Threat Analysis
+9 more
SC Clearance Information Technology Cybercrime ArcSight Event Correlation Restful APIs Splunk Data Pipelines Api Management Security Orchestration, Automation & Response

Job description

Piper Companies is seeking a Security Engineer to join a leading cybersecurity operations team supporting mission-critical security initiatives. This role will be connecting security tools, data sources, threat intelligence, and workflows to create a more automated, efficient, and reliable security operations environment. This is a long-term contract position requires an active Secret Clearance within a hybrid environment located in RTP, NC., · Engineer and maintain integrations between OpenCTI, Splunk, TheHive, and other security operations platforms.

· Develop and support security automation and SOAR-style workflows that improve SOC investigation, triage, escalation, and incident response processes.

· Build, maintain, and enhance Splunk security applications, dashboards, saved searches, alerts, reports, and supporting data models.

· Design and lead SOC data integrity initiatives to ensure the accuracy, completeness, and reliability of security telemetry.

· Develop alerting and reporting mechanisms to identify missing data, field mismatches, telemetry gaps, and data quality issues that may impact detection logic, threat hunting, incident response, or compliance requirements.

· Integrate security tools and data sources into Splunk to improve visibility, correlation, and operational effectiveness., Keywords: Secret Clearance, SOC Analyst, Security Engineer, Splunk Engineer, Splunk Enterprise, SPL, Splunk Dashboards, Splunk Alerts, Security Tool Integration, OpenCTI, TheHive, Threat Intelligence, Threat Intelligence Integration, Security Automation, SOAR, Incident Response, Detection Engineering, Threat Hunting, Security Operations Center (SOC), Python, API Integrations, REST APIs, Workflow Automation, Security Analytics, Data Integrity Monitoring, Security Telemetry, Data Quality Assurance, SIEM, Security Monitoring, Log Analysis, Platform Engineering, Cybersecurity, Security Operations, Investigation Automation, Case Management, Security Orchestration, Event Correlation, Custom Splunk Applications, Security Data Pipelines, Telemetry Validation, Enterprise Security.

Requirements

· Active Secret Clearance required.

· Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related discipline preferred.

· 5+ years of experience in Security Operations, Security Engineering, Splunk Engineering, or Cybersecurity Platform Integration roles.

· Experience as a SOC Analyst who transitioned into a Security Engineering or Splunk Engineering role strongly preferred.

· Strong hands-on experience with Splunk Enterprise, including SPL development, dashboards, alerts, saved searches, indexes, KVStores, and custom application development.

· Experience developing automation and orchestration solutions using Python, APIs, and scripting to reduce manual effort and improve operational efficiency.

· Knowledge of threat intelligence lifecycle management, enrichment processes, and intelligence-sharing methodologies.

Benefits & conditions

· Salary Range: $120,000 - $140,000/year

· Comprehensive Benefits: Medical, Dental, Vision, 401(k), and applicable sick leave

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa · LIVE

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

1:53 min

Evaluating traditional scripting languages for modern development tasks

Jens Knipper Jens Knipper · Europe 2026 Virtual

Videos

See all

Related articles

See all