IT Security SIEM Engineer – Splunk Experience Required

Jobtailor

New York (NY)

On-site

USD 120,000 - 160,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Jobtailor in New York, NY is seeking a security-focused Engineer to administer Splunk Enterprise/Cloud, build dashboards and alerts for security monitoring, and onboard diverse log sources. You will support incident response and threat detection while automating workflows with PowerShell, Python, and Bash.

The role emphasizes collaboration with security and operations teams to enhance enterprise cybersecurity capabilities and maintain compliance documentation.

Qualifications

  • Hands-on experience administering Splunk Enterprise and/or Splunk Cloud.

Responsibilities

  • Administer Splunk Enterprise/Cloud environments and develop dashboards/alerts for security monitoring.

Skills

Splunk Enterprise Admin
Splunk Cloud Admin
SIEM Rules & Dashboards
Log Onboarding
Automation Scripting
EDR & Endpoint Security
Incident Response
Threat Detection
Analytical Troubleshooting

Tools

PowerShell
Python
Bash
IDS/IPS
EDR Tools

Job description

  • Engineer, administer, and support Splunk Enterprise and/or Splunk Cloud environments.
  • Develop Splunk dashboards, reports, alerts, searches, and detection logic for security monitoring and operations.
  • Onboard, normalize, and analyze logs from applications, databases, networks, cloud platforms, and endpoints.
  • Investigate security events and support incident response, threat detection, and security monitoring activities.
  • Develop automation scripts using PowerShell, Python, and/or Bash to improve operational efficiency.
  • Support endpoint security, vulnerability remediation, patch validation, and security configuration management.
  • Monitor infrastructure, network, and security logs while supporting compliance reporting, audits, and security documentation.
  • Collaborate with security, infrastructure, and operations teams to improve enterprise cybersecurity capabilities.
Requirements
  • Strong hands-on experience administering Splunk Enterprise and/or Splunk Cloud
  • Experience onboarding log sources and developing SIEM detection rules, dashboards, alerts, and reporting
  • Experience with enterprise logging across application, database, network, cloud, and endpoint environments
  • Experience with scripting and automation using PowerShell, Python, and/or Bash
  • Experience with endpoint detection and response (EDR) and endpoint security technologies
  • Knowledge of incident response, threat detection, log correlation, and security operations
  • Experience with IDS/IPS, host-based security tools, and enterprise security monitoring
  • Strong analytical and troubleshooting skills
  • Experience supporting NYC government is highly preferred,
  • Candidates must be within a commutable distance to New York City (10038)
Core Competencies

Demonstrates expertise in administering Splunk Enterprise and Splunk Cloud environments, developing dashboards and alerts for security monitoring, and automating processes using PowerShell, Python, or Bash. Strong analytical skills and experience in incident response and endpoint security are essential for enhancing cybersecurity capabilities.

Highest-signal resume keywords
  • Splunk Enterprise Administration
  • Log Onboarding and SIEM Detection Rules
  • Scripting and Automation (PowerShell, Python, Bash)
  • Endpoint Detection and Response (EDR)
  • Incident Response and Threat Detection
ATS Optimization Keywords
Hard Skills
  • Splunk Cloud Administration
  • Dashboard Development
  • Log Analysis
  • Security Monitoring
  • Automation Scripting
  • Vulnerability Remediation
  • Patch Validation
  • Security Configuration Management
  • Incident Response
  • Threat Detection
Soft Skills
  • Analytical Skills
  • Troubleshooting Skills
Industry Keywords
  • Cybersecurity
  • Compliance Reporting
  • Security Documentation
  • NYC Government Experience
Tools & Technologies
  • PowerShell
  • Python
  • Bash
  • IDS/IPS
  • Host-Based Security Tools
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Engineer 3
Cybersecurity Engineer 3

Mbi Llc • Richmond (VA)

On-site
USD 110,000 - 160,000
Cybersecurity Engineer
Cybersecurity Engineer

Akaasa Technologies • Richmond (VA)

On-site
USD 120,000 - 150,000
Cybersecurity Engineer
Cybersecurity Engineer

Creative Solutions Services, LLC • Richmond (VA)

On-site
USD 120,000 - 170,000
Cyber Security Analyst
Cyber Security Analyst

Makoa • Arlington (VA), Northern (KY)

Hybrid
USD 110,000 - 160,000
Cybersecurity Engineer 3
Cybersecurity Engineer 3

Delan Associates Inc. • Richmond (VA)

On-site
USD 110,000 - 160,000
Engineer III – SIEM Integrations
Engineer III – SIEM Integrations

Jobtailor • New York (NY)

On-site
USD 120,000 - 180,000
Splunk SIEM Engineer: Security Monitoring & Automation
Splunk SIEM Engineer: Security Monitoring & Automation

Jobtailor • New York (NY)

On-site
USD 120,000 - 160,000
Senior Splunk Engineer – TS/SCI, CI Poly
Senior Splunk Engineer – TS/SCI, CI Poly

Jobtailor • Washington

On-site
USD 145,000 - 190,000
Cybersecurity Engineer 3
Cybersecurity Engineer 3

TALENT Software Services • Richmond (VA)

On-site
USD 120,000 - 170,000
Cyber Security Engineer
Cyber Security Engineer

Career Listings • Columbus (OH)

On-site
USD 130,000 - 170,000