Splunk / SOC Engineer

Piper Companies

North Carolina

Hybrid

USD 100,000 - 120,000

Full time

5 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Medical benefits
Dental benefits
Vision benefits
401(k) plan
Paid time off

Job summary

Piper Companies is seeking a highly skilled Splunk Engineer / SOC Engineer to support enterprise security monitoring and analytics in a fast-paced environment. This full-time role is hybrid, with 2 days on-site, and requires a Secret clearance to be eligible.

You will develop Splunk detections, onboard data sources, and optimize dashboards while collaborating with SOC analysts and cloud teams to improve threat visibility and response workflows. On-call rotations may apply.

Qualifications

  • 5+ years in SIEM engineering or security operations/incident response environments.
  • Proficient in Splunk and building production-grade dashboards.
  • Experience onboarding and normalizing security data sources into Splunk.
  • Experience with cloud security services (AWS/Azure).
  • Knowledge of CIM, data models, and field extractions.

Responsibilities

  • Developing, maintaining, and optimizing Splunk detections, dashboards, and correlations.
  • Onboarding and normalizing diverse security data sources into Splunk.
  • Troubleshooting ingestion pipelines and indexing performance.
  • Maintaining Splunk environments across distributed deployments.
  • Collaborating with SOC analysts to enhance threat detection and response workflows.
  • Participating in incident response investigations.

Skills

SIEM experience
Splunk SPL
Dashboards & detections
Incident response
On-call readiness

Tools

Splunk Enterprise
Splunk ES
SPL
AWS Security Hub
CIM normalization

Job description

Piper Companies is seeking a highly skilled Splunk Engineer / SOC Engineer to support the development and optimization of enterprise security monitoring and analytics within a fast-paced environment. This role plays a critical part in enhancing detection capabilities, improving security visibility, and driving operational efficiency through Splunk engineering and automation. This is a full-time opportunity working closely with SOC analysts, cloud teams, and engineering stakeholders hybrid 2 days a week onsite. This position requires a Secret clearance in order to be eligible.

Responsibilities for the Splunk Engineer include:
  • Developing, maintaining, and optimizing Splunk Security detections, dashboards, and correlation searches.
  • Onboarding, parsing, normalizing, and enriching diverse security data sources into Splunk.
  • Troubleshooting ingestion pipelines, forwarder connectivity, indexing issues, and search performance challenges.
  • Assisting with configuration, maintenance, and troubleshooting across distributed Splunk environments.
  • Leveraging data models and accelerated searches to improve detection performance and reporting efficiency.
  • Collaborating with SOC analysts and engineering teams to enhance threat detection, visibility, and response workflows.
  • Participating in incident response activities, including deep-dive investigations into security alerts.
Qualifications for the Splunk Engineer include:
  • Minimum of 5+ years of experience in SIEM engineering, security operations, or incident response environments.
  • Strong proficiency with Splunk, including writing complex SPL queries and building production-grade dashboards.
  • Hands-on experience with data normalization, ingestion, and troubleshooting within Splunk Enterprise or Splunk ES.
  • Experience integrating and onboarding security data sources into a centralized SIEM platform.
  • Familiarity with integrating tools such as AWS Security Hub or similar cloud-native security services.
  • Strong understanding of Splunk knowledge objects, field extractions, lookups, and CIM normalization.
  • Ability to perform effectively in high-pressure incident response situations and a willingness to participate in on-call rotations.
Compensation for the Splunk Engineer includes:
  • Salary range: $100,000 - $120,000
  • Comprehensive benefits package including Medical, Dental, Vision, 401k, PTO, holidays, and sick leave as required by law.

Keywords: Splunk Enterprise, Splunk Enterprise Security (ES), Splunk SOAR, SIEM Engineering, Security Information and Event Management, SIEM, SPL, Search Processing Language, Correlation Searches, detection engineering, security analytics, Data ingestion, data onboarding, data normalization, CIM, log parsing, field extractions, pipeline troubleshooting, Security operations center, SOC, incident response, threat detection, alert investigation, AWS, AWS security, AWS security hub, Azure security, Entra ID, Azure AD, distributed splunk environment, forwarders

#LI-BH1

#HYBRID

This job is open for applications on 9/10/2026 and will remain open for at least 30 days from the posting date.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SOC / Security Automation & Integration Engineer
SOC / Security Automation & Integration Engineer

Piper Companies • Raleigh (NC)

On-site
USD 110,000 - 135,000
Medical, Dental, Vision
Sick leave
401K
+1
Splunk Engineer
Splunk Engineer

Piper Companies • Durham (NC)

On-site
USD 150,000 - 170,000
Comprehensive benefits package
401(k)
PTO
+1
SIEM Engineer
SIEM Engineer

Piper Companies • Raleigh (NC)

Hybrid
USD 115,000 - 135,000
SIEM Engineer
SIEM Engineer

Zachary Piper Solutions • Newington (VA), Northern (KY)

On-site
USD 120,000 - 180,000
Hybrid Splunk SOC Engineer — Secret Clearance
Hybrid Splunk SOC Engineer — Secret Clearance

Piper Companies • North Carolina

Hybrid
USD 100,000 - 120,000
Medical benefits
Dental benefits
Vision benefits
+2
SIEM Engineer
SIEM Engineer

Piper Companies • Newington (VA)

On-site
USD 120,000 - 180,000
Full benefits package
Tuition reimbursement
Senior Splunk Engineer
Senior Splunk Engineer

Piper Companies • Newington (VA)

On-site
USD 175,000 - 195,000
PTO
Medical
Dental
+2
SIEM/Splunk Engineer - TS/SCI Cleared
SIEM/Splunk Engineer - TS/SCI Cleared

Piper Companies • Newington (VA)

On-site
USD 165,000 - 190,000
Comprehensive Benefits
Flexible schedule
Growth opportunities
SIEM/Splunk Engineer - TS/SCI Cleared
SIEM/Splunk Engineer - TS/SCI Cleared

Zachary Piper Solutions • Newington (VA)

On-site
USD 165,000 - 210,000
Comprehensive benefits
Flexible schedule
Unlimited growth opportunities
SOC Engineer
SOC Engineer

Piper Companies • Raleigh (NC)

On-site
USD 120,000 - 145,000
Medical, dental, and vision insurance
401K
Paid time off