Cybersecurity Ops Technologist - Splunk SIEM Engineer
Core
Manage and monitor SIEM platform health, data ingestion pipelines, and detection coverage gaps to support SOC and Threat Detection teams in identifying and responding to cyber threats.
Role type
Senior IC cybersecurity operations engineer (SIEM/SOC)
Builds
Scalable, high-fidelity detection solutions and automated security controls
Domain
Cybersecurity, Security Operations Center (SOC), Log Management
Deliverable
production ML models | product features | dashboards & analysis
Required skills
SIEM administration, Splunk, Python scripting, Linux/Windows command-line, cloud automation, log aggregation, network security protocols, threat analysis, alert creation, CI/CD practices
Preferred skills
AWS Cloud Services, reverse-engineering complex challenges, creative problem solving
Technologies
Splunk, Python, AWS, Linux, Windows
Responsibilities
Monitor SIEM platform health and optimize system components for security operations; Analyze malicious activity to determine exploitation methods and system effects; Build tools and processes following CI/CD best practices to drive efficiency; Conduct research and correlation across diverse data sets to create alerts and controls; Collaborate with SOC analysts and threat detection engineers to translate operational needs into scalable detection solutions; Provide full responsibility for the ongoing production availability and effectiveness of Cybersecurity controls.
Seniority
Senior, hands-on IC