Splunk SIEM Security Engineer/Architect
Core
Architecting, configuring, deploying, and customizing Splunk SIEM environments for security monitoring, incident response, and compliance.
Role type
Splunk SIEM Security Engineer/Architect
Builds
Splunk SIEM environments, Enterprise Security content, and security monitoring capabilities for client SOCs.
Domain
Cybersecurity / Log Management / SIEM
Deliverable
production ML models | product features | dashboards & analysis | infrastructure
Required skills
Splunk SIEM architecture, Splunk configuration, Splunk deployment, Splunk customization, Splunk forwarder management, Splunk Enterprise Security Module, Splunk Phantom Module, Correlation Search implementation, Threat Intelligence Feed integration, Security policy development, SIEM tuning, Log Management implementation
Preferred skills
None stated
Technologies
Splunk, Enterprise Security Module, Phantom Module
Responsibilities
Onboard new data sources to the Splunk environment, Configure Correlation Searches, Dashboards, Risk Modifiers, Threat Intelligence Feeds, and Workflow Actions, Validate and manage Splunk forwarders, Manage and optimize the Splunk environment and modules, Implement new Correlation Rules, Perform security analysis and policy development, Perform ongoing development for additional use cases and SIEM tuning
Seniority
Mid-level (3+ years experience)