Enable job alerts via email!

Sr. Cribl Data Engineer | Remote, USA

Lensa

Nashville (TN)

Remote

USD 80,000 - 100,000

Full time

Yesterday
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

A leading security firm is seeking a Data Engineer to enhance their Managed Security Services team. The role involves overseeing observability platforms, managing Splunk systems, and providing technical support to clients. The ideal candidate will have strong problem-solving skills and experience with security technologies. This position offers remote work capabilities and a commitment to diversity and inclusion.

Benefits

Work/life balance
Professional training resources
Volunteer opportunities
Remote work capabilities

Qualifications

  • 2+ years managing observability platforms.
  • 1+ years as a Splunk Administrator.
  • Experience with big data technologies.

Responsibilities

  • Act as a point of escalation for other engineers.
  • Document account governance processes.
  • Lead the Splunk team by prioritizing client requests.

Skills

Communication
Problem Solving
Technical Support

Education

Security certifications

Tools

Splunk
AWS
Azure
Kafka

Job description

1 day ago Be among the first 25 applicants

Lensa is the leading career site for job seekers at every stage of their career. Our client, Optiv, is seeking professionals. Apply via Lensa today!

The Data Engineer works in Optiv Security’s 24x7x365 Security Operations Center as a member of the Managed Security Services (MSS) team. The engineer will be responsible for creating procedures, implementing the software pipeline, focusing on monitoring and platform maintenance, and securing client environments. Essential experience includes observability pipelines, Splunk SIEM, and other security technologies. The candidate will collaborate with management, principal engineers, senior engineers, solution architects, threat analysts, and other teams to deliver high-profile, critical services to existing MSS clients. They will serve as a primary responder for client systems, owning issues and tracking resolutions.

How you’ll make an impact

  1. Act as a point of escalation for other engineers, providing guidance and mentorship.
  2. Assist with client transition and onboarding, serving as the primary contact for MSS clients.
  3. Document account governance processes, generate reports, and notify leadership of potential SLA issues.
  4. Explain and demonstrate the use of observability and SIEM products to both technical and non-technical personnel.
  5. Provide remote consulting to assist with implementation of various products and technologies.
  6. Implement, configure, and maintain SIEM software and appliances in large enterprise and government environments.
  7. Develop, deploy, and tune SIEM content such as rules, dashboards, reports, and models.
  8. Support Tier 1 escalation support for authorized customers, following established processes.
  9. Lead the Splunk team by prioritizing client requests, projects, and tasks.
  10. Collaborate with management and engineers to define processes and procedures.
  11. Identify and improve existing processes, procedures, and documentation.
  12. Support team development by defining strategies and responsibilities.
  13. Develop internal training methods for MSS and clients.
  14. Perform knowledge transfers and train clients on security and system configuration.

What we’re hiring for

  • 2+ years managing and maintaining observability platforms.
  • 1+ years as a Splunk Administrator.
  • 2+ years as a Cribl Administrator.
  • Expertise in Splunk Enterprise Security.
  • Experience with installing and configuring Splunk CORE and Enterprise Security.
  • Ability to analyze logs from security devices.
  • Confident in resolving complex technical problems.
  • Willingness to learn multiple observability vendor platforms.
  • Experience designing, automating, and optimizing observability platforms.
  • Knowledge of security logging for Linux, Windows, EDRs, Firewalls, and Active Directory.
  • Experience with big data technologies like Kafka, Splunk, TSDB.
  • Experience with cloud platforms (AWS, Azure, GCP).
  • Awareness of industry standards in telemetry and pipelines.
  • Experience creating custom content, dashboards, reports, and alerts.
  • Flexibility to provide on-call support (24/7).
  • Experience with incident and problem tracking systems (Jira, Confluence, ServiceNow).
  • Security certifications (e.g., GIAC, CISSP, CISA).
  • Knowledge of Linux and Windows OS.
  • Understanding of server applications like DBMS, Exchange, DNS, etc.
  • Experience with security products like Devo, Chronicle, EDR, XDR, etc.
  • Familiarity with DevOps practices.
  • Strong communication skills.
  • Ability to understand and follow instructions in various formats.

What You Can Expect From Optiv

  • Commitment to Diversity, Equality, and Inclusion.
  • Work/life balance.
  • Professional training resources.
  • Opportunity to work on complex projects.
  • Volunteer opportunities through "Optiv Chips In".
  • Remote work capabilities where applicable.

EEO Statement

Optiv is an equal opportunity employer. We consider all qualified applicants without regard to race, color, religion, sex, gender identity, sexual orientation, age, marital status, genetic information, national origin, disability, military or veteran status, or other protected categories.

We respect your privacy. By applying, you acknowledge collection and use of your information as detailed in our Privacy Notice.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Sr. Cribl Data Engineer | Remote, USA

Lensa

Brandon

Remote

USD 80,000 - 100,000

Today
Be an early applicant