Splunk Security Engineer (Enterprise and SOAR)

MWResource, Inc.

Austin (TX)

Hybrid

USD 124,000 - 165,000

Full time

20 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Medical, dental, and vision coverage
Disability coverage (short/long-term)
Employer paid life insurance
MWResource 401K plan for US-based cons

Job summary

MWResource, Inc. is seeking a contract Splunk Security Engineer to manage Splunk Enterprise and Splunk SOAR environments in a hybrid Austin setting.

The role covers day-to-day administration, engineering, and operational support to ensure data onboarding, health, and performance across systems. You will build and maintain playbooks, integrate with security tools, and support automation and workflows while troubleshooting ingestion and upgrade tasks.

Qualifications

  • 3+ years administering Splunk Enterprise (indexers, search heads, forwarders, data onboarding).
  • Direct experience building Splunk SOAR playbooks.
  • Direct experience integrating Splunk/SOAR with endpoint, vulnerability, or other security tool.
  • Experience with REST API-based integrations.
  • Strong SPL skills, including correlation searches, dashboards, and health monitoring.

Responsibilities

  • Manage and maintain the Splunk Enterprise environment, including data onboarding, index and source type management, search head and indexer health, and performance tuning.
  • Build and maintain Splunk SOAR playbooks; manage app/connector integrations; automate playbooks across the security stack.
  • Troubleshoot data ingestion issues; support upgrades/patching; align use cases with detection/response priorities and service delivery workflows.
  • Document architecture, playbooks, and standard operating procedures for knowledge transfer.

Skills

Splunk Enterprise
SOAR playbooks
REST API integrations
SPL searches & dashboards
Security tool integrations

Education

Bachelor’s Degree in Cyber Security
Bachelor’s Degree in Computer Science

Tools

Python
PowerShell
Splunk SOAR

Job description

Hybrid: Austin Metro Area, TX (2 days onsite required)

Duration: 2 years

Seeking a contract Splunk Security Engineer to take on day-to-day administration, engineering, and operational support for our Splunk Enterprise and Splunk SOAR environments.

Responsibilities

The contractor will manage and maintain the Splunk Enterprise environment, including data onboarding, index and source type management, search head and indexer health, and performance tuning. On the SOAR side, they’ll build and maintain playbooks, manage app/connector integrations, and support automation of playbooks across the broader security stack. The role also includes troubleshooting data ingestion issues, supporting upgrades and patching, and working with the broader security engineering team to align Splunk/SOAR use cases with company’s detection and response priorities, and service delivery workflows. Documentation of architecture, playbooks, and standard operating procedures will be expected to support knowledge transfer.

Required qualifications
  • 3+ years hands-on experience administering Splunk Enterprise (indexers, search heads, forwarders, data onboarding)
  • Direct experience building and maintaining Splunk SOAR playbooks
  • Direct experience integrating Splunk/SOAR with endpoint, vulnerability, or other security tool
  • Experience with REST API-based integrations
  • Experience troubleshooting issues related to API, network, authentication and other integrations
  • Strong SPL skills, including correlation searches, dashboard/report development, and system health monitoring
Preferred qualifications
  • Splunk certifications (Core Certified Power User, Certified Admin, or SOAR-specific certs)
  • Scripting experience (Python, PowerShell) to support custom SOAR app development or automation
  • Familiarity with security operations workflows: infrastructure build pipelines, alert triage, incident response, threat detection engineering
Education
  • Bachelor’s Degree: Cyber Security, Computer Science, MIS, or related discipline (Preferred)
  • or a combination of education and experience that provides equivalent knowledge to a major in such fields is required

The base pay range for this role is $90 - $120/hour.

MWResource offers medical, dental and vision coverage through Florida Blue, short- and long-term disability coverage, employer paid life insurance, and participation in the MWResource 401K plan for US based consultants.

Applications accepted on a rolling basis until filled.

MWResource does not discriminate based on race, gender, color, religion, national origin, age, disability, veteran status, or anything else that makes you part of any group.

Candidates must be authorized to work in the United States.

Candidates will be required to pass a background check and drug screening.

Please note we are not open to outsourcing our recruitment needs.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Splunk Security Engineer (Enterprise and SOAR)
Splunk Security Engineer (Enterprise and SOAR)

MWResource • Austin (TX)

Hybrid
USD 124,000 - 165,000
Health insurance
Dental insurance
Vision insurance
+6
Hybrid Splunk Security Engineer — SOAR & Data Onboarding Pro
Hybrid Splunk Security Engineer — SOAR & Data Onboarding Pro

MWResource • Austin (TX)

Hybrid
USD 124,000 - 165,000
Health insurance
Dental insurance
Vision insurance
+6
Contract Splunk Security Engineer — SOAR & Data Onboarding
Contract Splunk Security Engineer — SOAR & Data Onboarding

MWResource, Inc. • Austin (TX)

Hybrid
USD 124,000 - 165,000
Medical, dental, and vision coverage
Disability coverage (short/long-term)
Employer paid life insurance
+1
Splunk / SOC Engineer
Splunk / SOC Engineer

Zachary Piper Solutions • Northern (KY)

Hybrid
USD 100,000 - 120,000
Medical
Dental
Vision
+4
Splunk / SOC Engineer
Splunk / SOC Engineer

Zachary Piper Solutions • North Carolina

Hybrid
USD 100,000 - 120,000
Comprehensive benefits package
SIEM Engineer (Splunk/ Secret)
SIEM Engineer (Splunk/ Secret)

Insight Global • Fulton (MD)

Hybrid
USD 120,000 - 180,000
Benefits from Day 1
Senior Security Automation Engineer
Senior Security Automation Engineer

Piper Companies • United States

Remote
USD 130,000 - 145,000
Medical plan
Dental plan
Vision plan
+3
Senior Cybersecurity Engineer (Splunk)
Senior Cybersecurity Engineer (Splunk)

Pt78 • Tampa (FL)

On-site
USD 120,000 - 150,000
Senior Software Engineer / SPLUNK
Senior Software Engineer / SPLUNK

WYANDOTTE TRIBE OF OKLAHOMA • Springfield (MO)

On-site
USD 140,000 - 180,000
Splunk SOAR Developer
Splunk SOAR Developer

Collabera • Charlotte (NC)

On-site