> Markdown version of [/jobs/ext/3647392-security-data-engineer](https://www.wearedevelopers.com/jobs/ext/3647392-security-data-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Data Engineer - **Company:** SS Business Services LLC - **Location:** Bellevue, WA, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** JavaScript (Programming Language), User Authentication, Cyber Security, Data Governance, Data Transformation, Data Security, Groovy, Hypertext Transfer Protocols (HTTP), Python (Programming Language), Log Analysis, Syslog, Azure Service Bus, Data Logging, Scripting, Transport Layer Security, Data Ingestion, Snowflake, Apache Kafka, Splunk, Data Pipelines - **Published:** October 9, 2026 - **Apply:** https://www.thejobnetwork.com/job/633eb8bf-e211-42e5-8340-86278fb2ba60/security-data-engineer-cribl-siem-pipelines ## About the Role * Strong cybersecurity background with security telemetry/log data experience \n * Hands-on experience with Cribl, Vector, Datadog, Splunk, or similar data pipeline platforms \n * Strong experience designing scalable data ingestion and transformation pipelines \n * Experience with Python, JavaScript, Groovy, or similar scripting languages \n * Experience with Syslog, Kafka, HTTP, Event Hubs, and Blob Storage \n * Knowledge of OCSF/schema normalization, field mapping, and data transformation \n * Experience with downstream platforms such as Splunk, Snowflake, ADX, Log Analytics, or Anvilogic \n * Strong understanding of SSL/TLS, authentication, logging, data governance, lineage, and validation \n * Experience handling structured and unstructured cybersecurity data at scale \n ## Description Seeking a Senior Data Engineer to design, build, and support scalable cybersecurity data ingestion and transformation pipelines across 100+ security telemetry sources. The role will focus on Cribl/Vector-based ingestion, schema normalization, scripting, secure data movement, and integration with platforms such as Splunk, Snowflake, ADX, and Log Analytics.