Splunk Enterprise Security Expert
JobgetherRemotely
pythonbashsplunkdata modelssplcimsplunk esknowledge object lifecycle
Job Description
📋 Description
- Serve as technical authority across Splunk ES, CIM, data models, and knowledge object lifecycle.
- Shape enterprise-wide Splunk governance and security content architecture at scale.
- Establish standards, automate processes, and move content from dev to prod.
- Collaborate with cloud, infrastructure, security ops, compliance, and detection teams.
- Provide governance for knowledge objects, models, and content lifecycles.
🎯 Requirements
- Bachelor’s degree or equivalent in CS/IS/Cybersecurity or related field.
- 8+ years Splunk experience in enterprise environments.
- 3+ years in Splunk knowledge mgmt, CIM normalization, SIEM content engineering.
- Deep expertise in Splunk ES: correlation searches, risk-based alerting, data models.
- Advanced SPL skills, macros, sub-searches, streaming/non-streaming commands.
- Strong documentation, architecture guides, runbooks.
🎁 Benefits
- Contract role; 6+ months expected duration.
- Remote work arrangement; healthcare options included.
- Competitive compensation; paid holidays and sick leave.
Back to all jobs