Splunk ES Engineer
Openkyber
Qualifying individual must have a current "L" or "Q" clearance OR Top Secret 100% REMOTE
Qualifying individual must have the following skillsets :
- Deep expertise in Splunk SPL, including advanced search commands, statistical functions, data models, and performance optimization
- Hands-on experience with Splunk Enterprise Security, including correlation searches, risk-based alerting (RBA), notable events, and the ES framework
- Working knowledge of the Splunk AI Toolkit (AITK) for building and applying ML-based detections
- Experience with the Splunk App for Data Science and Deep Learning (DSDL), including custom model development and deployment
- Strong understanding of the MITRE ATT&CK framework and detection engineering methodology
- Familiarity with common attack techniques, log sources, and security data (EDR, network, cloud, identity, etc.)
Nice to have the following skillsets :
- Experience with detection-as-code practices and tools (Git, CI/CD pipelines)
- Proficiency in Python for data processing and model development
- Knowledge of SOAR platforms and detection automation
- Relevant certifications (Splunk Certified Power User/Admin, Splunk Enterprise Security Certified Admin, GIAC, etc.)
- Prior experience in a SOC, threat hunting, or incident response role
In this role, the selected candidate will design, build, and tune detections that identify malicious activity across our environment, working at the intersection of security analysis, data engineering, and machine learning. We are looking for a candidate that lives and breathes Splunk and gets excited about turning raw telemetry into high-fidelity alerts.
What the candidate is expected to perform:
- Design, develop, and maintain detection content using Splunk Search Processing Language (SPL) to identify threats across diverse data sources
- Build and tune correlation searches, notable events, and risk-based alerting within Splunk Enterprise Security (ES)
- Leverage the Splunk App for Data Science and Deep Learning (DSDL) to develop machine learning models for anomaly detection and advanced threat identification
- Apply the Splunk App for Anomaly Detection and the Splunk AI Toolkit (AITK) to develop statistical and ML-driven detections that go beyond signature-based approaches
- Map detection coverage to the MITRE ATT&CK framework and identify gaps in visibility
- Collaborate with threat intelligence, incident response, and SOC teams to translate emerging threats into actionable detections
- Reduce false positives and alert fatigue through continuous tuning and detection lifecycle management
- Develop and maintain detection-as-code workflows, including version control, testing, and CI/CD for detection content
- Create documentation, runbooks, and detection specifications to support downstream analysts
For applications and inquiries, contact:View email address on us.fitly.work
- ...Splunk SME_ Remote Contract Required Qualifications: Bachelor s degree in computer science... ..., CIM normalization, or SIEM content engineering in a large-scale deployment (20+ TB/day)... ...Enterprise Security correlation search authoring, ES data models, risk-based alerting...SuggestedContract workRemote work
- ...Job Details : Job Title: Splunk SOAR SME (Phantom SOAR) Location: 100% Remote Duration: 1 Year Contract Description : Looking for a Splunk SOAR SME with strong experience in security orchestration, automation, and response (SOAR) using Splunk SOAR/...SuggestedContract workRemote work
$70 - $75 per hour
...Journey-Centric Lead Site Reliability Engineer (SRE) Phoenix, AZ (Hybrid) Long-Term contract JPC - 20640: We are seeking a highly experienced... ...~ Hands-on experience with Datadog, Dynatrace, New Relic, Splunk Observability, Elastic Stack, OpenTelemetry, Prometheus &...SuggestedLong term contract- ...DGSun Engineer Location: Orlando, FL (Remote) Job Type: Contract Job Description: Required 1. 10+ years recent development experience... ...Experience using external logging platforms for troubleshooting - Splunk / Dynatrace For applications and inquiries, contact:...SuggestedContract workRemote work
- ...: Tampa, FL Description: Job Title: Site Reliability Engineer (Kubernetes & Observability) Location: Tampa, FL Working... ...observability and monitoring solutions using Dynatrace, Splunk, Prometheus, Grafana, and OpenTelemetry Create dashboards,...Suggested
$120k
...We need proven, hands-on experience with Splunk ITSI, including service and KPI modeling,... ...Enterprise Certified Admin, ITSI Certified Admin, ES Certified Admin, or Architect.... ...International, hiring a senior Splunk ITSI Engineer to help expand an enhanced enterprise monitoring...Remote work$114.6k - $190.2k
...Senior Splunk Cyber Security Engineer Unlock the secrets of intelligence with MANTECH! Join a dynamic team at the forefront of national security,... ...tools Maintaining and tuning Splunk Enterprise Security (ES) content and performance Managing knowledge objects, data...Hourly payContract workTemporary workWork experience placementWork at officeLocal areaRemote work- ...Description of work Client is looking for a highly qualified Splunk Engineer to become part of our skilled and diverse team. This opportunity is based in Atlanta, Georgia. Splunk Search Processing Language (SPL) : Strong proficiency in writing complex and optimized...Work experience placementRemote work
$94.4k - $198.2k
...Job Title: Splunk Software Engineer Job Category: Engineering Time Type: Full time Minimum Clearance Required to Start: TS/SCI with Polygraph Employee Type: Regular Percentage of Travel Required: None Type of Travel: None * * * The Opportunity...Full timeContract workWork experience placementFlexible hours$125k - $250k
...Position Summary: The Kenjya-Trusant Group is looking for a Splunk Software Engineer to support our Maryland Customer in the development and delivery of cross domain solutions. This position offers the opportunity to lead mission-critical programs that enable secure...Full timeContract workWork experience placementLocal areaFlexible hours$150k - $275k
...Full-time Description DarkStar Intelligence is seeking a Splunk Software Engineer to support our Maryland Customer in the development and delivery of cross domain solutions. This position offers the opportunity to lead mission-critical programs that enable secure...Full timeLocal area- ...The Splunk Engineer is responsible for the design, implementation, optimization, and sustainment of enterprise logging, monitoring, and security analytics solutions. This role ensures Splunk environments meet availability, performance, compliance, and audit requirements...
- ...Splunk Engineer - (Onsite Position) Sacramento, CA Duration: 12+ Months Job Responsibilities ~ Onboarding of server and application logs (CIM compliant) • Developing custom dashboards • Creating rules and advanced logic within Splunk •...Remote work2 days per week
- ..., LLC. (BGS) has created this Evergreen Talent Pool post for gathering qualified candidates for a position relating to Splunk Detection Engineer which would support our clients. BGS is an engineering, technology, and security firm helping to advance missions of national...Full timeTemporary workRemote workMonday to FridayShift work
- ...Splunk Engineer Location : LOUISVILLE (Remote) Duration : 6 months Client: TCS Must Have Technical/Functional Skills ? Experience in Field Extractions and Transformations using the RegEx in Splunk. ? Experience in Installing, configuring...Remote work
$40 per hour
...Splunk Engineer Location: Eden Prairie, MN 55344/ REMOTE Mode: Contract (6+ Months) Rate: $ 40/hr. $No Visa Sponsorship$/GC only Job Description: ~10+ years of overall technology experience ~2–3 years of hands-on Splunk experience, preferably with...Contract workRemote workVisa sponsorship- ...Job Description A remote customer is seeking a Splunk Engineer who will be responsible for the following: Responsible for day-day operation of large Splunk environment Troubleshooting new and current data collection issues Troubleshooting system issues that...Remote work
- ...Job : Splunk Engineer Location : 12 Months Location : REMOTE Responsibilities Manage day-to-day administration and operations of the Splunk platform Support platform lifecycle management, upgrades, patching, and vulnerability remediation...Remote work
- Optiv + ClearShark is looking for a highly skilled Sr. Splunk Engineer to join our cybersecurity team. The ideal candidate will be responsible for implementing, managing, and optimizing the Splunk platform to automate and orchestrate security operations. This role requires...Full timeWork experience placementLocal areaRemote workWork from home
$79.4k - $162.7k
Job Title: Splunk Software Engineer-TS/SCI with PolyJob Category: EngineeringTime Type: Full timeMinimum Clearance Required to Start: TS/SCI with PolygraphEmployee Type: RegularPercentage of Travel Required: Up to 10%Type of Travel: None* * *The Opportunity:The Splunk...Contract workWork experience placementRemote workFlexible hours- ...ES Oracle Cloud Architect At Sequoia Connect, we are a Talent-First Technology Ecosystem that redefines how elite professionals... ...39 delivery centers worldwide, gaining exposure to complex engineering challenges that redefine industrial standards. If you are a driven...Remote workWorldwide
$140k - $190k
...Sr. Splunk Engineer Everforth ECS is seeking a Sr. Splunk Engineer to join our team remotely. This position is contingent upon contract award. Are you passionate about designing, scaling, and operating Splunk environments and eager to make an immediate technical...Contract workImmediate startRemote work- ...Product Development Team developing innovative Premium and Free Splunk Apps Use Splunk as the primary security platform for your... ...BS degree in a technical field preferred (computer science, engineering) 2-5 years of windows and linux system administration 1-3 years...Remote work
$105k - $145k
...States Suitability/Public Trust Fully remote Information Technology Overview GovCIO is currently hiring for Senior Splunk Engineer - Infrastructure Operations of Infrastructure Operations to support our Administrative Office of the US Courts NLS project. The...Full timeCurrently hiringWork at officeRemote workFlexible hours$131.3k - $237.35k
...Description Leidos has an immediate need for a Splunk Engineer SME for a new customer on a highly-visible and strategic Cybersecurity Task Order. The Splunk Engineer SME will install and maintain Splunk infrastructure, gatherrequirements from customers, onboard...Local areaImmediate startRemote work- ...Kinzo Staffing is seeking a Splunk Enterprise Security Engineer who can develop custom detection content (correlation rules) identify threat activity... ...case development Upgrade Splunk apps required by Splunk ES upgrades. Splunk Enterprise Security administration...Remote workNight shift
- ...About the Role We are looking for a Senior Splunk Engineer to own and evolve Veeam’s Splunk environment across both on-premises and Splunk Cloud. This role will manage platform health, data ingestion, search performance, storage efficiency, dashboards, alerts, compliance...Full timeWork at office
- Role Description We are seeking a Senior Splunk Engineer to lead the architecture, implementation, and maintenance of our Splunk environments. In this role, you will be responsible for designing and developing scalable, high-performance Splunk solutions, innovating on the...Full time
- ...Position: Splunk Monitoring & Observability Engineer Locations: Pennsylvania (Remote) Duration: Fulltime Must Have Technical/Functional Skills Role Overview We are seeking an experienced Splunk Monitoring & Observability Engineer with strong...Full timeRemote work
- ...Splunk Developer Idaho Falls, ID, United States About the Job Position: Splunk Developer Work Authorization: NO EAD/OPT... ...Splunk SaaS. Qualifications: Splunk dashboard & alert engineering exp. Splunk SaaS experience. Skilled with SPL functions,...Remote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Splunk ES Engineer. Be the first to apply!



