> Markdown version of [/jobs/ext/594050-cribl-security-engineer](https://www.wearedevelopers.com/jobs/ext/594050-cribl-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cribl Security Engineer - **Company:** HTC Global Services, Inc. - **Location:** Columbia, SC, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Bash Shell, Cyber Security, Computer Networks, Linux, Intrusion Detection and Prevention, Python (Programming Language), Security Information and Event Management, Software Vulnerability Management, Scripting - **Published:** June 16, 2026 - **Apply:** https://www.juju.com/job/00000000g8kkht ## About the Role + Strong experience with Cribl data modeling and log pipeline design/implementation + Strong understanding of enterprise security architecture and engineering principles + Experience supporting enterprise security tools such as SIEM, XDR, vulnerability management, DLP, and endpoint security solutions + Experience with scripting languages such as Python and Bash for automation and integration + Knowledge of cybersecurity best practices, threat detection, and defensive security strategies + Experience with Linux and Windows systems, including system hardening and security configuration + Understanding of networking concepts, security protocols, and secure system design + Bachelor's degree in IT or Information Security OR 8 years of relevant experience in lieu of degree + Minimum 5 years supporting large IT environments and/or system deployments + Must pass full credit check and criminal background check + Must complete and maintain annual CJIS certification + Subject to additional screening including 7-year background check, credit history check, MVR, 10-panel drug screen, E-Verify, and SLED check + Ability to participate in on-call rotation ## Description Overview / Summary This position serves as a Data Modeling Security Engineer focused on Cribl ingestion and log pipeline design within an enterprise security environment. The role supports security architects and engineering staff in designing, implementing, and maintaining Cribl-based data modeling solutions in a large-scale security organization. The contractor will also provide hands-on technical support across multiple security disciplines and contribute to improving enterprise security architecture and operations., + Assist in planning, design, deployment, and operational support of enterprise security platforms, with primary focus on Cribl data modeling and log pipeline ingestion + Support Security Information and Event Management (SIEM) design, configuration, and operations + Assist with design and configuration of Linux-based security sensors and endpoint monitoring tools + Support additional enterprise security platforms including XDR, vulnerability management, DLP, and security awareness tools + Collaborate with security architects to design and implement enterprise security solutions aligned with business goals, regulatory requirements, and risk tolerance + Design and implement countermeasures for known threats and support mitigation strategies for emerging threats + Ensure consistent application of security controls across enterprise systems and validate control effectiveness + Support incident detection and response through log monitoring, analysis, and reporting + Develop technical documentation, implementation guides, and standard operating procedures + Participate in on-call rotation + Perform other duties as assigned ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Old tools, new tricks](https://www.wearedevelopers.com/videos/1916-old-tools-new-tricks) - [JavaScript? No. Java Scripts! - Scripting with Java](https://www.wearedevelopers.com/videos/2094-javascript-no-java-scripts-scripting-with-java) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [MCP doesn’t suck — your agent does](https://www.wearedevelopers.com/videos/100202-mcp-doesn-t-suck-your-agent-does) - [Intermediate Bitcoin Script](https://www.wearedevelopers.com/videos/25-intermediate-bitcoin-script) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents) - [Dev Digest 188: CfP time, the risks of NPM and IKEA algorithms](https://www.wearedevelopers.com/magazine/635-dev-digest-188-cfp-time-the-risks-of-npm-and-ikea-algorithms) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks)