Splunk and Splunk SOAR Security Engineer
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+2 more
Job description
- Client’s Security team is seeking a contract security engineer to take on day-to-day administration, engineering, and operational support for our Splunk Enterprise and Splunk SOAR environments., * The contractor will manage and maintain the Splunk Enterprise environment, including data onboarding, index and source type management, search head and indexer health, and performance tuning.
- On the SOAR side, they’ll build and maintain playbooks, manage app/connector integrations, and support automation of playbooks across the broader security stack.
- The role also includes troubleshooting data ingestion issues, supporting upgrades and patching, and working with the broader security engineering team to align Splunk/SOAR use cases with Client’s detection and response priorities, and service delivery workflows.
- Documentation of architecture, playbooks, and standard operating procedures will be expected to support knowledge transfer.
Requirements
- 3+ years hands-on experience administering Splunk Enterprise (indexers, search heads, forwarders, data onboarding)
- Direct experience building and maintaining Splunk SOAR playbooks
- Direct experience integrating Splunk/SOAR with endpoint, vulnerability, or other security tool
- Experience with REST API-based integrations
- Experience troubleshooting issues related to API, network, authentication and other integrations
- Strong SPL skills, including correlation searches, dashboard/report development, and system health monitoring
Preferred qualifications:
- Splunk certifications (Core Certified Power User, Certified Admin, or SOAR-specific certs)
- Scripting experience (Python, PowerShell) to support custom SOAR app development or automation
- Familiarity with security operations workflows: infrastructure build pipelines, alert triage, incident response, threat detection engineering., * Bachelor’s Degree: Cyber Security, Computer Science, MIS, or related discipline (Preferred) or a combination of education and experience that provides equivalent knowledge to a major in such fields is required.
About the company
22nd Century Technologies, Inc., is one of the fastest growing IT Service Integrator and Workforce Solution companies in the United States. Founded in 1997, 22nd Century Technologies is a Certified National Minority Business Enterprise with 6,000+ people including 600+ Cyber SMEs nationwide supporting our customers in all 50 states, Canada, and Mexico. With HQs in Somerset, NJ and Mclean, VA, 22nd Century has 14 offices throughout the United States. As part of our unrelenting focus on quality and compliance, 22nd Century Technologies delivery is based on Certified Matured Processes including CMMI L3 Dev & SVC, ISO 20000, ISO 27001, and ISO 9001 quality processes. With a strong focus on the public sector, 22nd Century currently holds government contracts with 14 out of 15 Federal Executive agencies including DoD, 37 other Federal agencies, 50 States, 115+ Local agencies, and 37 School Districts. In the last three years, we have expanded our services to Fortune 500 and other commercial
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Why Upskilling And Reskilling is Important For Developers
Highest Paying Tech Companies for Developers
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
9 Ways to Make Money Hacking