Hybrid Splunk SOC Engineer — Detection & Analytics

Piper Companies

United States

Hybrid

USD 100,000 - 120,000

Full time

4 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Medical benefits
Dental benefits
Vision benefits
401k

Job summary

Piper Companies is seeking a highly skilled Splunk Engineer / SOC Engineer to support enterprise security monitoring and analytics in a fast-paced environment. This full-time role collaborates with SOC analysts, cloud teams, and engineering stakeholders, with a hybrid schedule 2 days on-site.

The position requires a Secret clearance. Responsibilities include building and optimizing Splunk detections, dashboards, onboarding data sources, and incident response participation to enhance threat

Qualifications

  • Minimum of 5+ years of experience in SIEM engineering, security operations, or incident response environments.
  • Strong proficiency with Splunk, including writing complex SPL queries and building production-grade dashboards.
  • Hands-on experience with data normalization, ingestion, and troubleshooting within Splunk Enterprise or Splunk ES.
  • Experience integrating and onboarding security data sources into a centralized SIEM platform.
  • Familiarity with integrating tools such as AWS Security Hub or similar cloud-native security services.
  • Strong understanding of Splunk knowledge objects, field extractions, lookups, and CIM normalization.
  • Ability to perform effectively in high-pressure incident response situations and a willingness to participate in on-call rotations.

Responsibilities

  • Developing, maintaining, and optimizing Splunk Security detections, dashboards, and correlation searches.
  • Onboarding, parsing, normalizing, and enriching diverse security data sources into Splunk.
  • Troubleshooting ingestion pipelines, forwarder connectivity, indexing issues, and search performance challenges.
  • Assisting with configuration, maintenance, and troubleshooting across distributed Splunk environments.
  • Leveraging data models and accelerated searches to improve detection performance and reporting efficiency.
  • Collaborating with SOC analysts and engineering teams to enhance threat detection, visibility, and response workflows.
  • Participating in incident response activities, including deep-dive investigations into security alerts.

Skills

Splunk SPL
Data onboarding
SOC operations
AWS Security Hub
CIM normalization

Tools

Splunk Enterprise
Splunk ES
AWS Security Hub

Job description

Piper Companies is seeking a highly skilled Splunk Engineer / SOC Engineer to support enterprise security monitoring and analytics in a fast-paced environment. This full-time role collaborates with SOC analysts, cloud teams, and engineering stakeholders, with a hybrid schedule 2 days on-site.

The position requires a Secret clearance. Responsibilities include building and optimizing Splunk detections, dashboards, onboarding data sources, and incident response participation to enhance threat

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Splunk & SOC Engineer - Hybrid, Secret Clearance
Senior Splunk & SOC Engineer - Hybrid, Secret Clearance

Piper Companies • United States

Hybrid
USD 100,000 - 120,000
Hybrid Splunk Security Engineer — SIEM & Detection
Hybrid Splunk Security Engineer — SIEM & Detection

Zachary Piper Solutions • Northern (KY)

Hybrid
USD 100,000 - 120,000
Splunk / SOC Engineer - 174235
Splunk / SOC Engineer - 174235

Piper Companies • United States

Hybrid
USD 100,000 - 120,000
Splunk / SOC Engineer - 174235 - 174717
Splunk / SOC Engineer - 174235 - 174717

Piper Companies • United States

Hybrid
USD 100,000 - 120,000
Medical benefits
Dental benefits
Vision benefits
+1
Splunk / SOC Engineer - 174235 - 174717
Splunk / SOC Engineer - 174235 - 174717

Zachary Piper Solutions • Northern (KY)

Hybrid
USD 100,000 - 120,000
SOC / Security Automation & Integration Engineer - 171462
SOC / Security Automation & Integration Engineer - 171462

Zachary Piper Solutions • Raleigh (NC), Northern (KY)

Hybrid
USD 110,000 - 135,000
Medical Insurance
Dental Insurance
Vision Insurance
+1
SOC / Security Automation & Integration Engineer - 171462
SOC / Security Automation & Integration Engineer - 171462

Piper Companies • Raleigh (NC)

On-site
USD 110,000 - 135,000
Medical, Dental, Vision
Sick leave as required by law
401K
+1
Hybrid Cloud Security Engineer - AWS/Azure & Splunk
Hybrid Cloud Security Engineer - AWS/Azure & Splunk

Piper Companies • Fulton (MD)

Hybrid
USD 105,000 - 125,000
Medical
Dental
Vision
+3
Hybrid Cloud Security Engineer: AWS/Azure & Splunk
Hybrid Cloud Security Engineer: AWS/Azure & Splunk

Piper Companies • Raleigh (NC)

Hybrid
USD 105,000 - 120,000
Medical, dental, vision
401(k)
PTO and Sick Leave
On-Site SOC Automation & Integration Engineer
On-Site SOC Automation & Integration Engineer

Zachary Piper Solutions • Raleigh (NC), Northern (KY)

Hybrid
USD 110,000 - 135,000
Medical Insurance
Dental Insurance
Vision Insurance
+1