BlueVoyant

Sr. Security Engineer - Splunk Enterprise Security

Remote
Azure SQL Bash PowerShell AWS GCP Python
Search for More Jobs Talk to a recruiter now 💪
Description
Sr. Security Engineer - Splunk Enterprise Security

Location: Remote in the United States


US Citizenship required

BlueVoyant is currently seeking an experienced Senior Security Engineer to join our Splunk Deployment Engineering Team. In this role you will utilize your advanced knowledge of Splunk security, SIEM platforms and related technologies. You will act as a lead engineer on large and enterprise sized SIEM projects to enable our Splunk MDR offerings within customer environments and clouds; involving hands-on deployment of a comprehensive range of SIEM based security solutions and technologies. Additionally, you may participate in Microsoft Sentinel deployments, ensuring cross-training and knowledge sharing within multi-SIEM environments.

Responsibilities:
  • Work on Splunk Enterprise and Splunk Cloud project implementations for customers (remotely), starting with design and architecture, deployment and use case tune-up. 
  • Participate in the development of SIEM customizations to meet the customer requirements for enhancing MDR services.
  • Create and develop new detection, automation and reporting use cases per customer requirements. 
  • Assess and report maturity of client SIEM and MDR deployments.
  • Define and assist in the creation of operational and executive security reports and dashboards. 
  • As needed, assist with multi-SIEM environments that include Splunk, Microsoft Sentinel, and Azure technologies.
  • Work on MDR integration activities across the Splunk, Cribl and Microsoft Sentinel product stacks.
  • Be a strategic and lead technical delivery resource within a team for large and enterprise client-facing projects.  
  • Act as a lead on the Deployment Engineering team and provide mentoring for other mid and junior level engineers.
  • Participate in ongoing support activities for client facing environments to help mature and maintain our MDR practices. 
  • Identify and implement improvements around process and technical enablement. 
  • Contribute to knowledge sharing activities, such as internal documentation, lunch and learns, public facing blogs, etc.  
Qualifications:
  • At least 8 years of technical experience with enabling security technologies.
  • Strong experience with Splunk Enterprise and Splunk Cloud management and configuration.
  • Advanced experience in Splunk Enterprise Security premium app configuration and management.
  • Strong experience in Splunk Search Process Language (SPL)
  • Knowledge and familiarity of enterprise IT systems in relation to cyber security and log management.
  • Hands-on engineering experience with SIEM and MDR technologies.
  • Excellent communication skills to work in a dynamic and fast-paced team environment.
Preferred Competencies: 
  • Strong experience in additional query languages and/or script development such as SQL, Bash PowerShell, SKQL, etc.  
  • Experienced and comfortable in customer facing roles
  • Expertise in Cloud technologies such as Azure, AWS, or GCP.
  • Expertise in understanding of Incident investigation and response skill sets.
  • Proficient in Python, bash scripting, and/or RegEx.
  • Proficient with navigating and supporting Linux & Windows hosts; AWS, Azure and GCP hosted infrastructure; AD, Rsyslog/Syslog-ng and other related technologies.
About BlueVoyant

At BlueVoyant, we recognize that effective cyber security requires active prevention and defense across both your organization and supply chain. Our proprietary data, analytics, and technology, coupled with deep expertise, works as a force multiplier to secure your full ecosystem. Accuracy! Actionability! Timeliness! Scalability!

Led by CEO, Jim Rosenthal, BlueVoyant’s highly skilled team includes former government cyber officials with extensive frontline experience in responding to advanced cyber threats on behalf of the National Security Agency, Federal Bureau of Investigation, Unit 8200, and GCHQ, together with private sector experts. BlueVoyant services utilize large real-time datasets with industry leading analytics and technologies.

Founded in 2017 by Fortune 500 executives, including Executive Chairman, Tom Glocer, and former Government cyber officials, BlueVoyant is headquartered in New York City and has offices in Maryland, Tel Aviv, San Francisco, London, Budapest, and Latin America.

All employees must be authorized to work in the United States. BlueVoyant provides equal employment opportunities to all employees and applicants for employment without regard to race, color, religion, sex, national origin, age, disability or genetics. In addition to federal law requirements, BlueVoyant complies with applicable state and local laws governing non-discrimination in employment in every location in which the company has facilities.

Disclaimer: Please note that pursuant to contractual requirements and applicable law, in order for employees to perform work on some of the company’s federal contracts, U.S. citizenship is required. Accordingly, an employee’s ability to perform work on such contracts is contingent upon the company’s verification of the employee’s citizenship status. Furthermore, individuals may be subject to additional background checks and fingerprinting.

BlueVoyant Candidate Privacy Notice

To understand how we secure and manage your personal data upon submitting a job application, please see our Candidate Privacy Notice, which can be found here - Candidate Privacy Notice

BlueVoyant
BlueVoyant
Cyber Security Network Security Security Software

0 applies

32 views

There are more than 50,000 engineering jobs:

Subscribe to membership and unlock all jobs

Engineering Jobs

60,000+ jobs from 4,500+ well-funded companies

Updated Daily

New jobs are added every day as companies post them

Refined Search

Use filters like skill, location, etc to narrow results

Become a member

🥳🥳🥳 389 happy customers and counting...

Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.

To try it out

For active job seekers

For those who are passive looking

Cancel anytime

Frequently Asked Questions

  • We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
  • Salaries for the engineering jobs on our site range from $100K-$200K. On average, senior engineer positions on our EchoJobs are about $160K.
  • The EchoJobs positions have been sourced and vetted from the top companies to work for in the US as a software engineer, including LinkedIn and other reputable job sites. We also have syndicated jobs from companies that have just raised funding, as well as those that have great unique products and culture. From all of these sources, our founder, Morgan, has also resourced the company's authenticity in terms of their website, public appearance, and more.
  • Yes, our users asked us for just this, so now our search filters allow you to search for your top jobs via location, as well as by onsite, remote, or both. Approximately 30% of our jobs are remote, so you’ve got the best options for you!
  • We have not yet implemented this option, but are considering doing so in the future. For the moment, you would need to cancel your subscription, and resubscribe when you wanted to come back.
  • We add new jobs to EchoJobs every day! We scan our sources for the newest jobs, verify them, and post them to EchoJobs within minutes. We add about 2,000-3,000 new jobs for you each day!
  • From starting your job search to getting hired, the entire job search process can take us software engineers anywhere between 3-6 months. However, at EchoJobs, we’re striving to shorten this duration by finding the best, newest jobs for you, so you can do less job searching, and more applying.
  • We’d recommend checking EchoJobs daily, as we add new jobs to the site each day. Additionally, if you got a chance to read our previous email on “what makes EchoJobs different from any other job search tools,” we also recommended that you set a job alert based on your job filters, so if you get emails on those new jobs, you could be checking more than once per day.
  • If you decide to continue with us after the 1-month trial, we definitely recommend this, as we all know it usually takes 3-6 months to find a quality job as a software engineer these days. So to best support you, we just adjusted our membership options at EchoJobs to monthly, 3 months, or 12 months (this option is more for passive job seekers looking a little bit for the future if they want to come back to work or make a job switch potentially. This lets you see what’s out there in case an even better fit job becomes available.)
  • EchoJobs is truly the only job site of its kind. We want to be THE spot for you to find the best job for you, and haven’t encountered any other company doing this. Other job sites are in niches besides software engineering or focus on a small portion of engineering jobs (like a specific coding language). In the words of Morgan, our founder, “I think what makes EchoJobs different is the amount of jobs, frequency that we add new jobs (we add 2,000-3,000 new jobs daily!), and the powerful search engines to find exactly the job you want more easily and efficiently. We can provide you with the most jobs that are vetted by us, we’ll continually find more new jobs for you, and we make it easier for you to apply and get hired.

What Fellow Engineers Say