Splunk SOAR Automation Developer

4 weeks ago


Atlanta, United States TekStream Solutions Full time

Splunk SOAR/Phantom Automation Developer

Location: Remote

TekStream is seeking a Splunk resource with experience with Splunk SOAR/Phantom to aid and lead in developing playbooks and implementing integrations as part of the playbook development process. The role will entail working within Splunk SOAR and working as a part of a team developing and maintaining playbooks as a part of an MDR (Security) solution, integrating with other products such as Splunk Enterprise Security. Seeking contract candidates

Requirements:

2 or more years of experience developing playbooks and implementing integrations with Splunk SOAR /Phantom in the context of an MDR (Managed Detection & Response) security solution

Python scripting skills for automation

Experience developing playbooks for Splunk SOAR

Experience with Splunk Enterprise Security

-Experience in analyzing, hunting and remediating security threats

-Experience working with other teams to coordinate their response

-Ability to abstract a threat model and optimal incident response processes/workbooks

Preferred skills

Bachelors Degree in Computer Science, or equivalent relevant certifications and technical training

Splunk certifications (Splunk Certified Enterprise Security Administrator preferred)

Experience with other SIEM tools and a general understanding of SOC operations



  • Atlanta, United States TekStream Solutions Full time

    Splunk SOAR/Phantom Automation DeveloperLocation: RemoteTekStream is seeking a Splunk resource with experience with Splunk SOAR/Phantom to aid and lead in developing playbooks and implementing integrations as part of the playbook development process. The role will entail working within Splunk SOAR and working as a part of a team developing and maintaining...


  • Atlanta, United States TekStream Solutions Full time

    Splunk SOAR/Phantom Automation DeveloperLocation: RemoteTekStream is seeking a Splunk resource with experience with Splunk SOAR/Phantom to aid and lead in developing playbooks and implementing integrations as part of the playbook development process. The role will entail working within Splunk SOAR and working as a part of a team developing and maintaining...


  • Atlanta, United States Motion Recruitment Partners, LLC Full time

    We are partnered with a cutting edge marking automations tart up that recently went IPO. Give their current growth, they are currently growing out their Security team and are looking for a Principal SOAR Engineer to build out and automatiote toolsin their cloud first security environment to mitigate vulnerabilities. As a SOAR Engineer, you will develop and...


  • Atlanta, United States Motion Recruitment Full time

    We are partnered with a cutting edge marking automations tart up that recently went IPO. Give their current growth, they are currently growing out their Security team and are looking for a Principal SOAR Engineer to build out and automatiote toolsin their cloud first security environment to mitigate vulnerabilities. As a SOAR Engineer, you will develop and...


  • Atlanta, United States Motion Recruitment Full time

    We are partnered with a cutting edge marking automations tart up that recently went IPO. Give their current growth, they are currently growing out their Security team and are looking for a Principal SOAR Engineer to build out and automatiote toolsin their cloud first security environment to mitigate vulnerabilities. As a SOAR Engineer, you will develop and...


  • Atlanta, United States Base2 Solutions Full time

    The Splunk Content Developer is responsible for developing, customizing, and configuring Splunk apps and dashboards. The candidate will build and integrate content in a Splunk Core and ES environment and provide technical support to NOC and SOC customers in order to detect, hunt, and mitigate cyber threats. Job Description Support the day-to-day operation...


  • Atlanta, United States Diverse Lynx Full time

    Title: Splunk Administrator Remote Position: Atlanta, GA ( Day 1 onsite ) Type: Fulltime PositionJob Description: Splunk Platform administration including Installations , upgrades , security, vulnerability remediation and maintenance activities. Monitor the health of the Splunk Logging Platform performance and capacity to ensure that it can handle the...

  • Splunk Administrator

    3 weeks ago


    Atlanta, United States Diverse Lynx Full time

    Title: Splunk Administrator Remote Position: Atlanta, GA ( Day 1 onsite ) Type: Fulltime PositionJob Description: Splunk Platform administration including Installations , upgrades , security, vulnerability remediation and maintenance activities. Monitor the health of the Splunk Logging Platform performance and capacity to ensure that it can handle the...

  • Splunk Administrator

    1 month ago


    Atlanta, United States Quadtec Solutions, Inc Full time

    Job DescriptionJob Description The Splunk Administrator will provide Splunk administration support, including operation and maintenance of the log aggregation and Security Information and Event Management (SIEM) platform. The Splunk Administrator will perform systems analysis, modify and update systems and related data ingestion parameters based on results...


  • Atlanta, United States High 5 Full time

    • Minimum 4+ years of experience with SPLUNK in one of the following areas: IT-Operations, compliance, DevOps, network security, and system security, supporting security event management tools (SIEMs) • Experience with integrating solutions in a multi-vendor environment, including SaaS environments • Knowledge of enterprise logging, with a focus on...


  • Atlanta, United States High 5 Full time

    • Minimum 4+ years of experience with SPLUNK in one of the following areas: IT-Operations, compliance, DevOps, network security, and system security, supporting security event management tools (SIEMs) • Experience with integrating solutions in a multi-vendor environment, including SaaS environments • Knowledge of enterprise logging, with a focus on...


  • Atlanta, United States Base-2 Solutions, LLC Full time

    The Splunk Content Developer is responsible for developing, customizing, and configuring Splunk apps and dashboards. The candidate will build and integrate content in a Splunk Core and ES environment and provide technical support to NOC and SOC customers in order to detect, hunt, and mitigate cyber threats.  Job Description  Support the day-to-day...


  • Atlanta, United States Motion Recruitment Full time

    A leading health insurance company is looking to grow out their IT team. This company is dedicated to improving the health and well-being of people across the United States. They are currently looking for a Splunk Detection Engineer who will play a critical role in ensuring the security of their systems and data. You will be responsible for developing and...


  • Atlanta, United States Motion Recruitment Full time

    A leading health insurance company is looking to grow out their IT team. This company is dedicated to improving the health and well-being of people across the United States. They are currently looking for a Splunk Detection Engineer who will play a critical role in ensuring the security of their systems and data. You will be responsible for developing and...


  • Atlanta, United States Quadtec Solutions, Inc. Full time

    Job DescriptionJob Description The Splunk Engineer / Administrator will provide Splunk administration support, including operation and maintenance of the log aggregation and Security Information and Event Management (SIEM) platform. The Splunk Administrator will perform systems analysis, modify and update systems and related data ingestion parameters based...


  • Atlanta, United States Motion Recruitment Full time

    A leading health insurance company is looking to grow out their IT team. This company is dedicated to improving the health and well-being of people across the United States. They are currently looking for a Splunk Detection Engineer who will play a critical role in ensuring the security of their systems and data. You will be responsible for developing and...


  • Atlanta, United States Truist Full time

    ESSENTIAL DUTIES AND RESPONSIBILITIES Lead and drive the development, maintenance, and delivery of new Security Orchestration and Automation content including custom RESTful API integrations, SOAR Playbooks, Automations/Scripts, Jobs, dashboards, reports, widgets, and code via Continuous Integration / Continuous Delivery pipelines adhering to an Agile...


  • Atlanta, United States Chick-fil-A Full time

    Responsibilities Triage and respond to security events and incidents from various sources, primarily coordinating with your peers through our SOAR platform. Partner with groups outside of Cybersecurity on triage and response efforts as needed for security events and incidents. Identify and propose new technologies, methodologies, and/or approaches to...


  • Atlanta, United States Truist Full time

    Essential Duties and Responsibilities Following is a summary of the essential functions for this job. Other duties may be performed, both major and minor, which are not mentioned below. Specific activities may change from time to time.  • Focus on the development, maintenance, and delivery of new Security Orchestration and Automation content including...


  • Atlanta, United States 3M Consultancy Full time

    Job Description Job Title: Automation Engineer / Performance Tester Location: Remote. Duration: Full-Time. NEED IRS MBI Clearance. Key Role: Develops and analyzes tests for products and systems; collaborates with other engineering departments when necessary. Applies advanced consulting skills and/or extensive technical expertise; full industry knowledge....