Splunk Enterprise Security Engineer

2 weeks ago


Jacksonville, United States RIT Solutions, Inc. Full time

Job Title: Splunk Enterprise Security Engineer
Location: Hybrid (Baltimore, MD)
Duration: Year +
Customer: Social Security Administration

Education: Bachelor's Degree (4 years) or Higher

Description of Work:
Seeking a Splunk Enterprise Security Engineer who can develop custom detection content (correlation rules) identify threat activity. This includes developing notable events, visualizations, forms, reports, alerts, as well as Splunk Apps, Technology Add-ons, and normalize data sources to the Common Information Model. The candidate will provide optimization of data flow using aggregation, filters, etc. The Splunk Engineer will provide overall engineering, and administration in supporting a very large distributed clustered Splunk environment consisting of search heads, indexers, deployers, deployment servers, heavy/universal forwarders and Splunk Enterprise Security app, spanning security, performance, and operational roles. The Engineer should be proficient with recognizing and onboarding new data sources into Splunk, analyzing the data for anomalies and trends, and building dashboards highlighting the key trends of the data. The Splunk engineer should be proficient within a Linux environment, editing and maintaining Splunk configuration files and apps.
Duties and Responsibilities:
•lert use case development
•Upgrade Splunk apps required by Splunk ES upgrades
•Splunk Enterprise Security administration and management
•Configure notable event actions, action menus and Adaptive Responses
•Data onboarding and data ingestion normalization recommendations
•Strong knowledge of security risk procedures, security patterns, authentication technologies and security attack pathologies
•Develop, evaluate, and document, specific metrics for management purpose
•Write complex code to install and manage the Splunk enterprise development
•Performing maintenance and optimization of existing clustered Splunk deployments
•Create Dashboards to monitor the traffic volumes, response times, errors, and warnings across various data centers
•Monitor the web portals, log files and databases
•Provide debugging and monitoring capabilities
•Design and Develop Splunk for routine use
•Solve complex Integration challenges and debug complex configuration issues
•Consult with stakeholders to establish, maintain and refresh their strategic direction in cloud adoption
•Become knowledgeable on the CDM technical requirements for the federal government's CDM program. Understand your
role in CDM activities.
•Involved in a wide range of security issues including architectures, firewalls, electronic data traffic, and network access.
•Design, manage, and maintain enterprise SIEM infrastructure to improve data ingestion processes, including architectural
work on data pipelines to ensure optimal flow of data.
•Maintenance, configuration and implementing products, appliances and devices on the enterprise network

Basic Qualifications:
Minimum knowledge, skills, abilities needed.
•Bachelor's degree and 7 years of experience, Master's degree and 5 years of experience, or 11 years of experience in lieu of a degree
•t least 4 years' experience using customer-focused Splunk Enterprise Security SIEM engineering background - SME knowledge of ES v4.7
•t least 4 years' experience in a senior Splunk role working in a Splunk clustered environment supporting SOC or NOC environments
•t least 4 years of experience with:
o In-depth knowledge of designing, upgrading, maintaining and implementing network devices on a large-scale enterprise
o Direct experience with Splunk Engineering and data integration
o Prior SIEM data modelling experience on similar platform at scale (>50 servers)
o Scripting and development skills in Python/Perl with deep comprehension of regular expressions
o Coordination and communication with other remotely deployed team members
o Developing documentation with processes and procedures
o Proposing, implementing automation features in a large enterprise environment
•t least 3 years of experience with Linux and SQL/ODBC interfaces
•t least 2 years of experience in app interface development, using REST API's
•Hold active Splunk Core Certifications of at least Splunk Architect
•Minimum of 3 year of experience in developing and tailoring reporting from network security tools.
•Must be able to obtain and maintain a US Public Trust clearance

Preferred Qualifications:
Candidates with these skills will be given preferential consideration.
•Experience with Splunk Common Information Model (CIM) and Enterprise Analytic
•Strong problem-solving abilities with an analytic and qualitative eye for reasoning under pressure.
•Self-starter with the ability to independently prioritize and complete multiple tasks with little to no supervision
•Knowledge of Cloud Services such as AWS, Azure, Office365
•bility to script in one more of the following computer languages Python, Bash, Visual Basic or Powershell
•Experience in automating Splunk Deployments and orchestration with in a Cloud environment


  • Splunk Engineer

    1 month ago


    Jacksonville, Florida, United States Bank of America Full time

    Job Description:At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. Responsible Growth is how we run our company and how we deliver for our clients, teammates, communities and shareholders every day. One of the keys to driving Responsible Growth is being a great place to work for...


  • Jacksonville, Florida, United States Hispanic Technology Executive Council Full time

    About Us: At Hispanic Technology Executive Council, we are committed to fostering a diverse and inclusive environment where every team member can thrive. Our mission is to empower technology leaders and drive innovation through collaboration and support.Position Overview: We are seeking a Senior Splunk Solutions Engineer who will play a crucial role in...


  • Jacksonville, United States Spectraforce Technologies Full time

    Job Title: Cybersecurity Log Infrastructure Engineer Location: Remote Duration: 6+ Months Job Description The Cybersecurity engineering team develops and manages next generation solutions, systems and assets that support the business and its subsidiaries. Working in a collaborative, creative and fun environment, we offer cybersecurity professionals a wide...


  • Jacksonville, Florida, United States Nucleus Security Full time

    Position OverviewNucleus Security is on the lookout for a driven Senior Enterprise Sales Executive to enhance our dynamic team within the Vulnerability Management sector. This role is pivotal in advancing our sales initiatives and contributing to our mission of fostering a collaborative work environment where our employees thrive and, in turn, drive the...


  • Jacksonville, United States ARC Group Full time

    Job DescriptionJob DescriptionCYBERSECURITY ENGINEER - REMOTE ARC Group has an immediate opportunity for a Cybersecurity Engineer! This position is 100% remote working eastern time zone business hours. This is starting out as a contract position running through March 2025 with strong potential to extend longer or convert to FTE. This is a fantastic...

  • Cyber Security Manager

    3 months ago


    Jacksonville, United States RAMPS International Inc. Full time

    Job DescriptionJob DescriptionRole: Cyber Security ManagerLocation: Jacksonville, FLContract to Hire role Position Summary:Kemper is seeking a Cybersecurity leader to fill the Information Security Manager (ISM) position located in our Jacksonville, FL office. In this position, you would oversee and lead the Cybersecurity Operations function and...


  • Jacksonville, United States Nucleus Security Full time

    Job DescriptionJob DescriptionEnterprise Account Executive - Southwest and Ohio ValleyWe are seeking a highly motivated Enterprise Account Executive to join our fast-growing startup in the Vulnerability Management market. As an Enterprise Account Executive at Nucleus, you will play a crucial role in our sales motion.  Nucleus believes “work is people”,...


  • Jacksonville, United States Nucleus Security Full time

    Job DescriptionJob DescriptionEnterprise Account Executive - Southwest and Ohio ValleyWe are seeking a highly motivated Enterprise Account Executive to join our fast-growing startup in the Vulnerability Management market. As an Enterprise Account Executive at Nucleus, you will play a crucial role in our sales motion.  Nucleus believes “work is people”,...


  • Jacksonville, United States Venus Fashion Inc Full time

    Job DescriptionJob DescriptionCyber Security Engineer Jacksonville, Florida, United States (Hybrid) About VENUSVENUS® is a leader in stylish, on-trend designs in women’s clothing, swimwear and lingerie. Founded in 1982, the Florida-based brand pioneered swim separates and continues to drive newness in fit, fabric and design across all categories. Made...


  • Jacksonville, United States Fidelity National Financial Full time

    Overview Looking for a Senior Security Engineer to join our team and make an immediate impact. Candidates will possess an innate desire to understand how things work, then use that information to provide the best protection for our employees and assets. Duties • Sets policies and rulesets around assigned endpoint protection technology •...


  • Jacksonville, United States SafeTouch LLC Full time

    Job DescriptionJob DescriptionSafeTouch Security, a recognized company serving the community for over 30 years, values its employees as the cornerstone of its success. Join our team and become part of a culture dedicated to excellence and innovation.Description: We are seeking an experienced and driven Enterprise Security Sales Executive to join our dynamic...


  • Jacksonville, United States SafeTouch LLC Full time $80,000 - $100,000

    Job DescriptionJob DescriptionSafeTouch Security, a recognized company serving the community for over 30 years, values its employees as the cornerstone of its success. Join our team and become part of a culture dedicated to excellence and innovation.Description: We are seeking an experienced and driven Enterprise Security Sales Executive to join our dynamic...


  • Jacksonville, United States Enterprise Integration Full time

    Job DescriptionJob DescriptionCybersecurity Engineering Lead :Security Incident Handling & Response:Well versed in handling Security incidents and violations of standard security practices including malware, ransomware, phishing, AdvancedPersistent Threats, (DDoS) attacks, etc. Experience analyzing data from security tools such as EDR, SIEM, Firewall/UTM...


  • Jacksonville, United States Nucleus Security Full time

    Job DescriptionJob DescriptionSenior Operations Engineer / SRENucleus is hiring a Senior Operations Engineer to join our team to support the Nucleus application, employees, and customers. The Senior Operations Engineer is instrumental in the organization’s ability to deliver a reliable and performant application. This technical role will work closely with...


  • Jacksonville, United States Nucleus Security Full time

    Job DescriptionJob DescriptionSenior Full Stack PHP Engineer Are you looking for more in life than just building another web app? Does upending cyber security resonate with you? We're a fast-growing cyber security startup that is paving the way forward for the way vulnerability management is run in organizations of all sizes. For our customers,...


  • Jacksonville, United States ITEL Laboratories Full time

    Job DetailsJob Location Jacksonville, FL Remote Type Fully Remote Position Type Full Time DescriptionJOB SUMMARY The Software Security Engineer will be responsible for designing, implementing, and maintaining security measures for our software applications. This role involves identifying potential security vulnerabilities, developing strategies to mitigate...


  • Jacksonville, Florida, United States Fortinet Full time

    Position: Enterprise Systems ConsultantObjective:We are seeking an Enterprise Systems Consultant to collaborate closely with a Named Account Manager within a designated region. The primary goal of the Enterprise Systems Consultant is to provide technical support to the sales team throughout the entire sales process, including pre-sales, sales engagements,...


  • Jacksonville, Florida, United States SafeTouch LLC Full time

    Job OverviewSafeTouch Security, a leader in the security industry for over three decades, prioritizes its workforce as the foundation of its achievements. We are currently in search of a seasoned and motivated Enterprise Security Sales Executive to enhance our vibrant sales team.Position Summary:The selected candidate will concentrate on promoting...

  • Software Engineer

    2 days ago


    Jacksonville, Florida, United States Bank of America Full time

    About the RoleWe are seeking a highly skilled Software Engineer to join our team at Bank of America. As a Cribl Engineer, you will be responsible for working on large, on-premises, distributed, HA deployments which are mission-critical.Key ResponsibilitiesDevelop and deliver complex requirements to accomplish business goals.Ensure that software is developed...


  • Jacksonville, Florida, United States Securitas Electronic Security Full time

    Job SummarySecuritas Electronic Security is seeking a skilled Security Systems Technician to join our team. As a Security Systems Technician, you will be responsible for providing technical support and maintenance for our electronic security solutions.Key ResponsibilitiesRespond to trouble tickets to ensure application uptime and system performance.Work...