Splunk Cybersecurity Engineer

S&K GLOBAL SOLUTIONS LLC
Irving, TX, United States
about 1 month ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Job source

Tech stack

Application Programming Interfaces (APIs) Cloud Computing Security Identity and Access Management Intrusion Detection and Prevention Python (Programming Language) Parsing Windows PowerShell Runbook Security Information and Event Management Data Logging Scripting Data Ingestion
+3 more
Software Troubleshooting Indexer Splunk

Job description

  • Lead Splunk monitoring, log onboarding, and security analytics activities for the divestiture program.

  • Configure and validate log ingestion, dashboards, alerts, correlation rules, and reporting.

  • Support Splunk monitoring separation and transition for in-scope systems and entities.

  • Troubleshoot data ingestion, indexing, alerting, and performance issues.

  • Collaborate with infrastructure, network, IAM, application, and security teams.

  • Develop operational documentation, monitor reports, and audit evidence

Deliverables:

  • Splunk Monitoring & Detection Framework - Configured dashboards, alerts, and correlation rules.

  • Log Onboarding & Validation Reports - Verified data ingestion and monitoring coverage.

  • Monitoring Gap & Remediation Tracker - Identified issues and resolution status.

  • Splunk Operational Documentation - Runbooks, configurations, and support procedures.

  • Security Monitoring & Audit Readiness Reports - Control assurance, coverage, and compliance evidence.

  • Divestiture Monitoring Transition Package - Validated monitoring capabilities supporting secure separation

Requirements

  • Hands-on experience with Splunk Enterprise and Splunk Enterprise Security.

  • 5-8 years of experience

  • Expertise in log onboarding, parsing, normalization, dashboards, alerts, and correlation rules.

  • Strong knowledge of SIEM operations, threat detection, and security monitoring.

  • Experience with application, infrastructure, network, IAM, endpoint, and cloud security logs.

  • Proficiency in SPL and scripting (Python, PowerShell, APIs) for automation.

  • Experience supporting logging and monitoring separation activities in large enterprise environments.

  • Strong troubleshooting, analytical, documentation, and communication skills

  • Effective written and verbal communication skills

  • Effective analytic/diagnostic skills

  • Bachelor’s degree/University degree or equivalent experience

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

2:56 min

Open-sourcing a complex parsing library for game data

Johan Hutting Johan Hutting · World Congress 2024

2:50 min

Introduction and the value of runbooks

Hila Fish · World Congress 2023

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

1:32 min

Structuring automated incident workflows between runbooks and raw models

Aram Hakobyan Aram Hakobyan +1 · World Congress 2026 Europe

2:36 min

Managing complex operation sequence weights using recursive parsing

Florian Rappl · LIVE

Videos

See all

Related articles

See all