Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Splunk ES Engineer

$110.76k - $152.32k

Openkyber

Company Description OpenKyber is a leading precision oncology company focused on guarding wellness and giving every person more time free from cancer. Founded in 2012, OpenKyber is transforming patient care and accelerating new cancer therapies by providing critical insights into what drives disease through its advanced blood and tissue tests, real-world data and AI analytics. OpenKyber tests help improve outcomes across all stages of care, including screening to find cancer early, monitoring for recurrence in early-stage cancer, and treatment selection for patients with advanced cancer. For more information, visit guardanthealth.com and follow the company on LinkedIn, X (Twitter) and Facebook.

Company Description OpenKyber is a leading precision oncology company focused on helping conquer cancer globally through the use of its proprietary blood tests, vast data sets, and advanced analytics. The OpenKyber Health Oncology Platform leverages capabilities to drive commercial adoption, improve patient clinical outcomes, and lower healthcare costs across all stages of the cancer care continuum.

Job Description The Senior Security Engineer, reporting to the Associate Director of Security Engineering, will be responsible for designing, implementing, operating, and continuously improving OpenKyber Health's core security capabilities. This role is broad and hands-on, spanning Security Tooling, Logging and Monitoring, Threat Detection, Incident Response, Vulnerability Management, Cloud Security, Endpoint Security, Identity, and Security Automation. You will serve as a technical leader within the Security Engineering function, partnering closely with Security Architecture, IT, Cloud Infrastructure teams. This role requires someone comfortable wearing many hats - from managing enterprise security platforms and improving response workflows, to modernizing logging and detection capabilities, supporting investigations, reducing vulnerability risk, and helping mature the company's overall security posture. The ideal candidate has strong technical breadth, operational judgment, and the ability to move between engineering, operations, and incident response work in a fast-paced environment. You will help ensure OpenKyber Health has the right tools, telemetry, processes, and controls in place to detect, prevent, respond to, and recover from security threats. Lastly, the right person will love the technology and be excited to find open source solutions.

  • Design, implement, operate, and continuously improve enterprise security tools across Endpoint, Cloud, Identity, Network, SaaS, Vulnerability Management, Logging, and Response platforms.
  • Oversee and optimize Managed Detection and Response (MDR), as well as Security Orchestration, Automation, and Response (SOAR), capabilities and related integrations.
  • Serve as a technical owner for SIEM operations, including log source onboarding, data normalization, detection support, performance tuning, cost optimization, and regulatory logging requirements.
  • Develop, tune, and maintain high-value Threat Detection content, including SIEM rules, behavioral analytics, endpoint detections, cloud detections, and identity-based alerts.
  • Analyze security events, threat intelligence, and attacker tradecraft to improve detection coverage, validate alert effectiveness, and support incident response investigations.
  • Support and participate in Incident Response activities, including triage, investigation, containment, eradication, recovery, evidence collection, and post-incident reviews.
  • Support security investigations involving endpoint activity, cloud events, identity logs, network telemetry, SaaS activity, and other relevant data sources.
  • Provide expertise on EDR tooling including policy configuration, telemetry ingestion, detections, response actions, host containment, and integrations with other security systems.
  • Support Vulnerability Management activities, including scanner operations, asset coverage, vulnerability validation, risk prioritization, remediation tracking, exception handling, and reporting.
  • Manage threats from AWS and cloud-native environments, including monitoring and respond to CloudTrail, VPC Flow Logs, workload logs, IAM activity, container activity, and cloud security findings.
  • Build dashboards, metrics, and reports to measure Security Tool health, detection coverage, Vulnerability Management posture, Incident Response effectiveness, and overall security program maturity.
  • Develop and maintain documentation, operational runbooks, incident response playbooks, engineering standards, and tool administration procedures.
  • Evaluate AI-assisted security capabilities for detection, response, vulnerability management, and automation, while helping define how AI systems, agents, and usage are logged, monitored, and assessed for risk.
  • Provide technical leadership, mentorship, and guidance to junior engineers, analysts, and cross-functional partners.
  • Stay current on emerging threats, attacker tradecraft, vulnerability trends, Security Tooling, Cloud Security practices, and Security Engineering best practices.

Qualifications 5+ years of experience in Security Engineering, Security Operations, Incident Response, Vulnerability Management, Detection Engineering, or a related security role. Broad hands-on experience administering and improving enterprise security tools. Experience supporting Incident Response in a SOC or enterprise security environment. Strong experience with SIEM platforms, including log ingestion, alerting, detection content, dashboards, and operational support. Experience with EDR platforms, including investigation, containment, policy management, and response workflows. Experience with Vulnerability Management platforms and processes, including vulnerability scanning, prioritization, remediation tracking, and reporting. Hands-on experience securing and monitoring AWS or other cloud environments. Experience working with identity and access logs, preferably including Okta or similar identity platforms. Strong understanding of endpoint, cloud, identity, network, SaaS, and infrastructure security telemetry. Experience developing documentation, runbooks, playbooks, and repeatable operational procedures. Experience modernizing SIEM, Logging, or Security Monitoring architectures. Experience with detection engineering frameworks such as MITRE ATT&CK. Experience building or managing SOAR workflows, response automation, or security orchestration. Experience with cloud security posture management, cloud workload protection, container security, or infrastructure-as-code security tools. Experience in healthcare, biotech, life sciences, or other regulated environments a plus. Familiarity with compliance and regulatory requirements that influence Security Logging, Monitoring, Vulnerability Management, and Incident Response a plus. Understanding of AI and machine-learning use cases in security, including detection, automation, monitoring, and governance considerations. Strong written and verbal communication skills, with the ability to explain security risks and technical issues to both technical and non-technical stakeholders.

AI & Digital Fluency Demonstrate curiosity, sound judgment, and the ability to critically evaluate and responsibly leverage AI-enabled tools in accordance with company policies, ethical standards, and regulatory requirements to improve the efficiency, effectiveness, and quality of work.

Hybrid Work Model: This section is applicable to onsite employees who are eligible for hybrid work location as specified by management and related policies. OpenKyber has defined days for in-person/onsite collaboration and work-from-home days for individual-focused time. All U.S. employees who live within 50 miles of a OpenKyber facility will be required to be onsite on Mondays, Tuesdays, and Thursdays. We have found aligning our scheduled in-office days allows our teams to do the best work and creates the focused thinking time our innovative work requires. At OpenKyber, our work model has created flexibility for better work-life balance while keeping teams connected to advance our science for our patients.

The annualized base salary ranges for the primary location and any additional locations are listed below. This range does not include benefits or, if applicable, bonus, commission, or equity. Each candidate's compensation offer will be based on multiple factors including, but not limited to, geography, experience, education, job-related skills, job duties, and business need.Primary Location: Remote - Open Position (USA)Primary Location Base Pay Range: $110,755 - $152,320Other US Location(s) Base Pay Range: $110,755 - $152,320If the role is performed in Colorado, the pay range for this job is: $117,270 - $161,280 Employee may be required to lift routine office supplies and use office equipment. Majority of the work is performed in a desk/office environment; however, there may be exposure to high noise levels, fumes, and biohazard material in the laboratory environment. Ability to sit for extended periods of time. OpenKyber is committed to providing reasonable accommodations in our hiring processes for candidates with disabilities, long-term conditions, mental health conditions, or sincerely held religious beliefs. If you need support, please reach out to A background screening including criminal history is required for this role. OpenKyber will consider qualified applicants with criminal arrest or conviction histories in a manner consistent with applicable law including but not limited to the LA County Fair Chance Policies and the Fair Chance Act (Gov. Code Section 12952). OpenKyber is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status and will not be discriminated against on the basis of disability. All your information will be kept confidential according to EEO guidelines. To learn more about the information collected when you apply for a position at OpenKyber Health, Inc. and how it is used, please review our Privacy Notice for Job Applicants . Please visit our career page at:

For applications and inquiries, contact:View email address on us.fitly.work

Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Splunk ES Engineer in Atlanta, GA vacancy
  •  ...Splunk Technical Lead Enterprise Security & Platform W e are looking for candidates who:...  ...supporting the administration, architecture, engineering, integration, optimization, and ongoing...  ...Platform and Splunk Enterprise Security (ES) environment. Services will include... 
    Suggested
    Work at office
    Remote work
    3 days per week

    Openkyber

    Atlanta, GA
    2 days ago
  • $112.7k - $193.2k

     ...innovation. You will lead the design, development, and maintenance of Splunk SOAR playbooks and custom applications, translating complex...  ...lieu of a degree) Experience with Splunk Enterprise Security (ES) and Splunk Search Processing Language (SPL) Experience with... 
    Suggested
    Minimum wage
    Full time
    Work experience placement
    Work at office
    Local area
    Remote work

    Openkyber

    Atlanta, GA
    2 days ago
  •  ...MX.3, Pricing API, Unix, Linux, Unix shell scripting, Python, SQL, Sybase, Oracle, Front Office Trading Technology, EQD products, Splunk, Incident management, Problem management, Change management, Service Now. Required Qualifications: 5+ years supporting experience... 
    Suggested

    Openkyber

    Atlanta, GA
    2 days ago
  •  ...APIs, Data, SDKs, and application ecosystems ~ Familiarity with integration testing, and observability tools such as Datadog and Splunk ~ Impactful communication and presentation skills, both to influence and educate business partners The pay range is the... 
    Suggested
    Hourly pay
    Contract work

    Openkyber

    Atlanta, GA
    2 days ago
  •  ...up to 2 Years) Key Activities: Unified Monitoring Framework: Build an integrated solution leveraging existing tools (Splunk, Dynatrace, security platforms) and local logs from Windows/Linux servers, infrastructure components (storage arrays, SAN switches,... 
    Suggested
    Contract work
    Local area
    Remote work

    Openkyber

    Atlanta, GA
    2 days ago
  •  ...Role: Senior SRE Observability & Reliability Engineer Location: Remote We are seeking a Senior SRE Observability & Reliability...  ...BI. Build telemetry pipelines and integrate data from Splunk, Dynatrace, AppDynamics, ServiceNow, and cloud platforms.... 
    Remote work

    Openkyber

    Atlanta, GA
    2 days ago
  • $55 per hour

     ...Remote Duration: 04 months on W2 contract Must haves: 4-5 years Splunk experience, 4-5 years IAM experience, monitoring-preferred (...  ...Required Qualifications: ~5+ years in security operations, SIEM engineering, security engineering, or related cybersecurity. ~4 5... 
    Hourly pay
    Contract work
    Remote work

    Openkyber

    Atlanta, GA
    2 days ago
  •  ...Hiring: Site Reliability Engineer (SRE) | Location: Remote We are hiring an experienced Site Reliability Engineer (SRE) with 15+...  ...SRE best practices. Required Skills Observability: Splunk, Dynatrace, Grafana, AppDynamics, OpenTelemetry, ServiceNow... 
    Remote work

    Openkyber

    Atlanta, GA
    2 days ago
  • $190k - $230k

     ...expected to have excellent communication skills. Sr. Elastic Engineer Scott AFB, Illinois, United States Secret Clearance $190,000 -...  .... Integrate Elastic with enterprise tools such as SIEMs, Splunk, CrowdStrike, and other telemetry sources. Monitor system... 
    Work at office
    Local area

    Openkyber

    Atlanta, GA
    2 days ago
  •  ...professional like you is headed and only reach out when we genuinely believe there's a fit worth exploring Title- Senior Splunk Security Engineer Location- Remote Duration- 6 months with possible extension Job Description: Must haves: 4-5 years... 
    Remote work

    Openkyber

    Atlanta, GA
    2 days ago
  • $99.1k - $163.4k

     ...Range $99,100.00 – $163,400.00 Target Openings 1 What Is the Opportunity? As a Cybersecurity Ops Technologist I – Splunk SIEM Engineer, You will continuously manage and monitor SIEM platform health, data ingestion pipelines, and detection coverage gaps, applying... 
    Work experience placement
    Local area

    Travelers

    Atlanta, GA
    3 days ago
  •  ...Splunk Architect Responsibility: Support the Splunk enterprise monitoring initiative. Assist in the Splunk monitoring of Data Center...  ...the Data Center and also in the Cloud. Collaborate with the engineering, development, integration, and test teams in the development... 
    Work experience placement

    ClifyX

    Atlanta, GA
    1 day ago
  •  ...Role: Security Platform Engineer Location: Remote In USA Mandatory: Splunk, Cribl Preferred: Automation Job Summary We are seeking an experienced...  ...and supporting Splunk Enterprise Security (ES). Hands-on experience with Cribl Stream administration... 
    Remote work

    Openkyber

    Atlanta, GA
    2 days ago
  • $104k - $138.7k

     ...Docebians around the world and help us reinvent the way people learn, because learning never stops. The Adventure AheadAs a Senior Cloud Engineer I, you are the backbone of the infrastructure that powers Docebo’s global learning platform! You will architect, scale, and secure... 
    For contractors
    Work at office
    Worldwide
    3 days per week

    Docebo

    Atlanta, GA
    4 days ago
  • $118.7k - $197.9k

     ...defined components of enterprise Google Cloud solutions. The successful candidate would possess these skills: ·Work with customer engineers to evaluate technical requirements and design options. ·Develop code, prototypes, configurations, and technical documentation. ·Support... 
    Local area

    Deloitte

    Atlanta, GA
    2 days ago
  • Supports large and critical software applications within the organization.Provide operations support, correct failures, do workflow modifications.Make system improvementsParticipates on (and may lead) projects where analysis of systems or data requires an in-depth evaluation...

    NTT DATA

    Atlanta, GA
    2 days ago
  • $111.1k - $130.7k

     ...processes for data accuracy, testing, and system deployment. Required Skills and QualificationsExperience: 5+ years in marketing data engineering, with 3+ years specifically in Salesforce Datorama (MCI).Technical Expertise: Strong SQL skills, knowledge of API-based... 
    Full time
    Work experience placement
    Local area

    US Bank

    Atlanta, GA
    2 days ago
  •  ...Parental Leave benefits Employee stock purchase planJob DescriptionAbout the Role:We are seeking a dynamic and experienced Cloud Engineer to join our team and drive the development and stability of our cloud platforms. Responsibilities of the Role:Develop Infrastructure... 
    Full time
    Work at office
    Flexible hours
    Shift work

    Invesco

    Atlanta, GA
    2 days ago
  • $87.72k - $131.58k

     ...of an inclusive, adaptable, and forward-thinking organization, apply now.We are currently seeking a Cloud Vulnerability Management Engineer (Onsite Hybrid) to join our team in Atlanta, Georgia (US-GA), United States (US).Technology Focus: Hybrid Cloud / Azure / AWS /... 
    Full time
    Temporary work
    Work experience placement
    Work at office
    Remote work
    Flexible hours

    NTT DATA

    Atlanta, GA
    1 day ago
  •  ...Atlanta, GADuration: 6mons What are the top 3 skills required for this role? AWS / Azure cloud services Job Responsibilities for Cloud Engineer: Installs and maintains cloud-based applications, systems, and associated infrastructures.Translates business requirements into... 

    Spectraforce Technologies

    Atlanta, GA
    3 days ago
  •  ...to join the Rollins Information Technology team!The Senior Cloud Telephony Platform Engineeris responsible for the architecture, engineering, administration, integration, and optimization of enterprise telephony and customer engagement platforms. This role serves as the... 
    Work experience placement
    Work at office
    Work from home
    Worldwide

    Rollins

    Atlanta, GA
    4 days ago
  • $100k - $135k

     ...accountability, and collaboration, we equip our teams to work at the highest levels possible.Job Summary: Acrisure is seeking a Sr. Cloud Engineer based in our Infrastructure Operations group that is responsible for supporting enterprise cloud infrastructure services with a... 
    Full time
    Immediate start
    Flexible hours

    Acrisure

    Atlanta, GA
    4 days ago
  •  ...data and AI priorities. Operating within a highly matrixed global organization, the Director will collaborate closely with platform engineering, Digital Product teams, Data & AI, and regional technology teams to drive consistent adoption of cloud‑native architectures and... 
    Full time
    Work at office
    Relocation

    The Coca-Cola Company

    Atlanta, GA
    4 hours ago
  • $149k - $185k

    This is a Kubernetes-heavy platform engineering role supporting large-scale, multi-cloud GPU infrastructure. Success requires deep operational judgment, disciplined debugging, strong automation skills, and the ability to protect platform stability while capacity grows rapidly... 
    Temporary work
    Local area

    Slalom

    Atlanta, GA
    3 days ago
  •  ...outcomes. NCR Voyix is headquartered in Atlanta, Georgia, and serves customers in more than 35 countries worldwide.Title: Sr. Software Engineer - Cloud Services API Location: Midtown Atlanta - Onsite YOU ARE… Passionate about technology and see the world a little... 
    Full time
    Worldwide
    Flexible hours

    NCR

    Atlanta, GA
    11 hours ago
  • $127k - $184k

     ...practical experience.6 years of experience with cloud native architecture in a customer-facing or support role.Experience with cloud engineering, on-premise engineering, virtualization, or containerization platforms.Experience engaging with, or presenting to, technical... 

    Google

    Atlanta, GA
    1 day ago
  • $86.8k - $198k

     ...ways to improve our client’s environment using current cloud capabilities. Your technical expertise will be vital as you work with engineers, product teams, and data modernization stakeholders to inform strategy and design, ensuring standards are met throughout... 
    Full time
    Contract work
    Part time
    Local area
    Remote work

    Booz Allen Hamilton

    Atlanta, GA
    2 days ago
  • Purpose:Behind every seamless customer experience, scalable application, and high-performing engineering team is infrastructure built to perform under pressure.As our Senior DevOps Developer, you'll play a critical role in designing, automating, and optimizing the cloud... 
    Full time

    Floor & Decor

    Atlanta, GA
    11 hours ago
  •  ...delivering cutting-edge mortgage processing solutions on a resilient, cloud-native platform. This role is pivotal to our platform engineering and site reliability initiatives, owning the Amazon EKS (Kubernetes) foundation on which our product teams build and run. The... 
    Work experience placement

    Black Knight Financial Services

    Atlanta, GA
    1 day ago
  •  ...with a deep understanding of Kubernetes and containerization in an on-premises environment. This individual will collaborate across engineering, development, and operations teams to ensure that our platform and tools help developers thrive.ResponsibilitiesAssist... 
    Work experience placement

    Black Knight Financial Services

    Atlanta, GA
    11 hours ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Splunk ES Engineer. Be the first to apply!