Splunk SIEM Engineer: Detections & Dashboards (Hybrid)

Insight Global

Fulton (MD)

Hybrid

USD 120,000 - 180,000

Full time

8 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Benefits from Day 1

Job summary

Insight Global is seeking a proactive SIEM Engineer focused on Splunk engineering, detection development, and cloud security operations. The role supports security monitoring and incident response across Splunk ES, Splunk SOAR, and cloud platforms in AWS and Azure environments.

The ideal candidate will develop detections, dashboards, automation workflows, and data onboarding initiatives, while troubleshooting and maintaining distributed Splunk environments.

Qualifications

  • 5+ years of professional experience in SIEM engineering, security operations, or incident response.
  • Ability to write complex SPL queries and build dashboards in Splunk.
  • Experience onboarding/integrating security data sources into Splunk and integrating tools like AWS Security Hub.
  • Willingness to participate in on-call rotation.
  • Proven ability to present technical findings to diverse stakeholders.

Responsibilities

  • Develop and optimize Splunk ES detections, dashboards, and correlation searches.
  • Support Splunk SOAR playbook development and automation workflows.
  • Onboard, parse, normalize, and enrich security data sources into Splunk.
  • Troubleshoot ingestion pipelines, forwarder connectivity, and search performance.
  • Collaborate with SOC analysts and engineering to improve visibility and detection coverage.
  • Participate in on-call rotations and 24/7 incident response activities.

Skills

SIEM engineering
Splunk SPL queries
Data onboarding into Splunk
Incident response
Communication

Tools

Splunk Enterprise
Splunk Enterprise Security (ES)
Splunk SOAR

Job description

Insight Global is seeking a proactive SIEM Engineer focused on Splunk engineering, detection development, and cloud security operations. The role supports security monitoring and incident response across Splunk ES, Splunk SOAR, and cloud platforms in AWS and Azure environments.

The ideal candidate will develop detections, dashboards, automation workflows, and data onboarding initiatives, while troubleshooting and maintaining distributed Splunk environments.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Splunk SIEM Engineer: Security Monitoring & Automation
Splunk SIEM Engineer: Security Monitoring & Automation

Jobtailor • New York (NY)

On-site
USD 120,000 - 160,000
Senior SIEM Engineer — Splunk & Threat Detection Expert
Senior SIEM Engineer — Splunk & Threat Detection Expert

Leidos • Corridor North (MD)

On-site
USD 131,000 - 237,000
SOC Dashboard Engineer - Splunk for Incident Response
SOC Dashboard Engineer - Splunk for Incident Response

Expert Technology Services • Morrisville (NC)

On-site
USD 110,000 - 150,000
Data Engineer With Splunk
Data Engineer With Splunk

Veriipro • Quincy (MA)

On-site
USD 100,000 - 130,000
Splunk Detection Engineer
Splunk Detection Engineer

DivIHN Integration Inc • United States

Remote
USD 100,000 - 130,000
Splunk SIEM Engineer — Hybrid, Incident Response Pro
Splunk SIEM Engineer — Hybrid, Incident Response Pro

Piper Companies • Fulton (MD), Raleigh (NC)

Hybrid
USD 115,000 - 125,000
Medical benefits
Dental benefits
Vision benefits
+2
Splunk ES Engineer
Splunk ES Engineer

Openkyber • Alaska

On-site
USD 85,000 - 120,000
Remote Splunk Detection Engineer - Advanced SIEM
Remote Splunk Detection Engineer - Advanced SIEM

DivIHN Integration Inc • United States

Remote
USD 100,000 - 130,000
Remote Senior Splunk Engineer for Enterprise SIEM & Cloud
Remote Senior Splunk Engineer for Enterprise SIEM & Cloud

Leidos • Arlington (VA)

On-site
USD 131,000 - 237,000
SIEM Engineer (Splunk/ Secret)
SIEM Engineer (Splunk/ Secret)

Insight Global • Fulton (MD)

Hybrid
USD 120,000 - 180,000
Benefits from Day 1