Senior Splunk Engineer (H1B Transfer Supported)

brotherstech • United State
Remote Visa Sponsorship
Apply
AI Summary

Seeking a skilled Splunk Engineer to design, implement, and optimize enterprise Splunk environments. Responsibilities include log onboarding, SIEM operations, dashboard development, and threat detection. Requires 5+ years of Splunk experience, expertise in Splunk ES, SPL, and automation.

Key Highlights
Design, implement, maintain, and optimize enterprise Splunk environments
Expertise in Splunk Enterprise, Splunk ES, log onboarding, SIEM operations, dashboard development, threat detection, and automation
H1B Transfer Supported
Key Responsibilities
Administer and maintain enterprise Splunk environments
Onboard and normalize security and infrastructure logs
Develop detection rules and correlation searches
Create dashboards and executive reports
Optimize search performance and index management
Support SOC teams during investigations
Implement Splunk ES use cases and threat detection content
Automate operational tasks and integrations
Troubleshoot ingestion and performance issues
Technical Skills Required
Splunk Administration Splunk Enterprise Administration Splunk Cloud Administration Indexer Cluster Management Search Head Clustering Deployment Server Management Forwarder Management Data Onboarding Parsing Knowledge Object Management Splunk Enterprise Security (ES) Security Monitoring Threat Detection Threat Hunting Incident Investigation Use Case Development Correlation Searches Risk-Based Alerting (RBA) MITRE ATT&CK Framework SOC Operations SPL Development Advanced SPL Query Writing Dashboard Development Reports Alerts Data Models CIM Performance Optimization Windows Security Logs Linux Syslogs Active Directory Azure AD Entra ID AWS CloudTrail Azure Monitor Okta Palo Alto Firewalls Cisco Devices CrowdStrike Falcon Microsoft Defender Python PowerShell Bash REST APIs Splunk SOAR (Phantom)
Benefits & Perks
H1B Transfer Supported
Remote (USA)
Nice to Have
Splunk SOAR (Phantom)
Cribl Stream
CrowdStrike Falcon
Microsoft Sentinel
QRadar Migration Experience
Elastic Stack
AWS Security Services
Detection Engineering
Threat Intelligence Integration

Job Description


Job Title: Splunk Engineer (H1B Transfer Supported)

Location: Remote (USA)

Employment Type: Full-Time / Contract

Visa Status: H1B Transfer Accepted


Job Summary

We are seeking a highly skilled Splunk Engineer to design, implement, maintain, and optimize enterprise Splunk environments. The ideal candidate will have expertise in Splunk Enterprise, Splunk ES, log onboarding, SIEM operations, dashboard development, threat detection, and automation.


Required Skills

Splunk Administration

  • 5+ years of hands-on Splunk experience
  • Splunk Enterprise Administration
  • Splunk Cloud Administration
  • Indexer Cluster Management
  • Search Head Clustering
  • Deployment Server Management
  • Forwarder Management (UF/HF)
  • Data Onboarding & Parsing
  • Knowledge Object Management

SIEM & Security Operations

  • Splunk Enterprise Security (ES)
  • Security Monitoring
  • Threat Detection
  • Threat Hunting
  • Incident Investigation
  • Use Case Development
  • Correlation Searches
  • Risk-Based Alerting (RBA)
  • MITRE ATT&CK Framework
  • SOC Operations

SPL Development

  • Advanced SPL Query Writing
  • Dashboard Development
  • Reports & Alerts
  • Data Models
  • CIM (Common Information Model)
  • Performance Optimization

Log Sources

  • Windows Security Logs
  • Linux Syslogs
  • Active Directory
  • Azure AD / Entra ID
  • AWS CloudTrail
  • Azure Monitor
  • Okta
  • Palo Alto Firewalls
  • Cisco Devices
  • CrowdStrike Falcon
  • Microsoft Defender

Automation & Scripting

  • Python
  • PowerShell
  • Bash
  • REST APIs
  • Splunk SOAR (Phantom)


Responsibilities

  • Administer and maintain enterprise Splunk environments
  • Onboard and normalize security and infrastructure logs
  • Develop detection rules and correlation searches
  • Create dashboards and executive reports
  • Optimize search performance and index management
  • Support SOC teams during investigations
  • Implement Splunk ES use cases and threat detection content
  • Automate operational tasks and integrations
  • Troubleshoot ingestion and performance issues


Preferred Skills

  • Splunk SOAR (Phantom)
  • Cribl Stream
  • CrowdStrike Falcon
  • Microsoft Sentinel
  • QRadar Migration Experience
  • Elastic Stack
  • AWS Security Services
  • Detection Engineering
  • Threat Intelligence Integration


Similar Jobs

Explore other opportunities that match your interests

Cybersecurity Leader

Cyber Security
•
8h ago
Visa Sponsorship Relocation Remote
Job Type Contract
Experience Level Director

Franklin Fitch

United State
Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Entry level

decision point security, inc.

United State

Senior Infrastructure Security Engineer

Cyber Security
•
10h ago

Premium Job

Sign up is free! Login or Sign up to view full details.

•••••• •••••• ••••••
Job Type ••••••
Experience Level ••••••

Matter Labs

United State

Subscribe our newsletter

New Things Will Always Update Regularly