Splunk Enterprise Security Expert
JobgetherRemotely
pythonsecurityci/cdgithub actionsbashsplunksplcim
Job Description
📋 Description
- Serve as technical authority across Splunk Enterprise, Enterprise Security, CIM normalization, data
- Shape enterprise-wide Splunk governance and security content architecture at scale.
- Collaborate with cloud, infrastructure, security operations, compliance, and detection engineering
- Establish standards, automate processes, and ensure security content moves reliably from
- Balance hands-on engineering with architecture, documentation, cross-functional collaboration, and
- Support detection engineering, threat hunting, and SOC teams by ensuring Splunk content is
🎯 Requirements
- Bachelor’s degree in Computer Science, Information Systems, Cybersecurity, or related field, or
- 8+ years hands-on Splunk experience in enterprise environments.
- 3+ years in Splunk knowledge management, CIM normalization, SIEM content engineering, or similar
- Deep expertise in Splunk Enterprise Security, including correlation searches, notable events
- Advanced proficiency in SPL with macros, sub-searches, evaluation functions, and
- Strong understanding of Splunk data models, acceleration strategies, Pivot, and ES dependencies.
🎁 Benefits
- Remote work arrangement.
- Competitive contract compensation of approximately $60 per hour; final rate based on
- Contract opportunity with 6+ months duration.
- Healthcare options, including medical, dental, and vision coverage.
- Paid sick leave and major holidays.
- Opportunity to work on complex enterprise cybersecurity and SIEM environments.
Back to all jobs