Security Engineer - SIEM (Splunk) Platform & Operations
$125k - $175kSamsung SDS America
Job Description
Job Description
Samsung SDS America (SDSA) serves as the U.S. technology and innovation hub for Samsung’s global enterprise solutions, delivering secure, scalable, and high‑performance IT services that support some of the world’s most complex business environments. As SDSA continues to expand its cloud, mobility, analytics, and cybersecurity capabilities, maintaining a resilient security operations foundation is essential to protecting the company’s digital assets and ensuring uninterrupted service delivery.
Position Summary:
As Security Engineer, you’ll join the Cybersecurity Operations team, where you’ll serve as the frontline detective monitoring and correlating real‑time threat data from firewalls, cloud assets, EDR, and AI‑driven platforms like Darktrace. You’ll design, tune, and optimize Splunk Enterprise Security dashboards, detection rules, and correlation searches to cut false positives while delivering rapid, high‑fidelity alerts. Leveraging your experience SOC environments, you’ll lead deep incident investigations, spearhead proactive threat‑hunting missions, and drive remediation priorities based on risk and business impact. Collaboration is key: you’ll partner with global engineers, cloud specialists, and incident‑response teams to continuously improve our security posture and document best‑practice playbooks.
This is a Full Time Onsite position located in San Jose, CA.
Responsibilities:
- Monitor and analyze security event logs from multiple sources, including firewalls, intrusion detection/prevention systems, endpoint protection platforms, servers, cloud environments, and tools like Darktrace, to identify potential threats.
- Monitor, triage, and investigate alerts and logs within the Splunk SIEM and Splunk Enterprise Security (ES) platform.
- Assist in improving SIEM processes, detection coverage, alert fidelity, and operational workflows including creating dashboards
- Support the onboarding and integration of logs from enterprise systems into the Splunk environment.
- Validate log source completeness, data normalization, rule logic, and alert relevance across critical systems and infrastructure
- Perform initial analysis of security events, escalate incidents when appropriate, and assist with root cause identification.
- Conduct in-depth investigations of security incidents and recommend remediation and containment actions.
- Conduct proactive threat hunting using SIEM, EDR, CASB, and network detection tools, such as Darktrace, to identify suspicious activity that may have bypassed traditional controls.
- Tune and optimize correlation searches, detection rules, dashboards, and use cases to improve operational efficiency and reduce false positives.
- Prioritize remediation efforts based on risk, severity, and business impact.
- Participate in incident response activities and support threat hunting initiatives as needed.
- Collaborate with cross-functional teams to respond effectively to cybersecurity incidents and strengthen overall security posture.
- Create and maintain documentation for log flows, detection use cases, triage procedures, playbooks, cybersecurity processes, and operational standards.
Requirements
- Bachelor’s degree in Computer Science, Information Security, Information Assurance, or a related field; Master’s degree preferred.
- 3+ years of experience in a cybersecurity operations or related security role.
- 2+ years of hands-on experience administering Splunk Enterprise Security (ES).
- Strong hands-on experience with Splunk log ingestion, data normalization, search heads, indexers, SPL query development, and dashboard optimization.
- Knowledge of detection engineering, correlation rule development, and incident response workflows.
- Proven experience in threat analysis & incident response.
- Strong understanding of security log sources, including Windows and Linux servers, firewalls, endpoint tools, cloud infrastructure, and network detection platforms, such as Darktrace.
- Experience triaging and analyzing security alerts in complex, multi-platform enterprise environments.
- Familiarity with cloud platforms such as AWS, Azure, or similar environments.
- Strong analytical, communication, and collaboration skills, with the ability to clearly present findings and recommendations.
- Ability to work effectively across diverse global teams and adapt to evolving business and technical environments.
- Curious, resilient, and data-driven, with a proactive approach to solving security challenges.
Preferred Qualifications:
- Relevant certifications such as Splunk Enterprise Security Certified Admin.
- Experience with supporting tools such as Darktrace, Crowdstrike, or Netskope are highly preferred
- Active knowledge & experience with rule creation & executing correlation searches in Splunk.
Benefits
Samsung SDSA offers a comprehensive suite of programs to support our employees:
- Top-notch medical, dental, vision and prescription coverage
- Wellness program
- Parental leave
- 401K match and savings plan
- Flexible spending accounts
- Life insurance
- Paid Holidays
- Paid Time off
- Additional benefits
Samsung SDS America, Inc. is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, race, color, religion, sex, sexual orientation, gender identity or expression, national origin, disability, status as a protected veteran, marital status, genetic information, medical condition, or any other characteristic protected by law.
We are committed to providing reasonable accommodations to participate in the job application or interview process for candidates with disabilities. Please let your recruiter know if you need an accommodation at any point during the interview process.
The base pay range for this role depends on appropriate skills, experience, and technical level. Career Level 2 base salary is USD $125,000-175,000.
Individual base pay depends on various factors, in addition to primary work location, such as complexity and responsibility of role, job duties/requirements, and relevant experience and skills.
Certain roles are eligible for additional rewards, including annual bonus. U.S.-based employees have access to medical, dental, and vision insurance, a 401(k) plan and company match, short-term and long-term disability coverage, basic life insurance, and wellbeing benefits, among others. U.S.-based employees also receive, per calendar year, up to 10 scheduled paid holidays, and Paid Time Off.
$125k - $175k
...solutions, delivering secure, scalable, and... ...resilient security operations foundation is... ...Summary: As Security Engineer, you’ll join the Cybersecurity... ..., and AI‑driven platforms like Darktrace.... ..., and optimize Splunk Enterprise... ...within the Splunk SIEM and Splunk Enterprise...PlatformOperationsSplunkFull timeTemporary work$170k - $255k
...Security Operations EngineerSanta Clara, CaliforniaEverpure has... ...storage pioneer to data platform, closing fiscal 2026... ...a Security Operations Engineer in the Global Information... ...detection queries in Splunk and deploy enterprise-... ...You are proficient in SIEM detection engineering...PlatformOperationsSplunkWork at officeFlexible hoursShift work- ...Global is looking for a Sr. Security Engineering the Greater San Jose area.... ...responsible for improving and operating key security programs... ...security improvements. Strong Splunk experience, including... ...security posture management platforms. Experience securing Mac-heavy...PlatformOperationsSplunk
$144.8k - $261.45k
...OpportunityDetection & Automation Engineering operates Adobe's detection and... ....As a Senior Security Automation Engineer,... ...administer a SOAR platform.WHAT YOU'LL DODesign,... ...SOAR playbooks (Splunk SOAR, Tines, XSOAR, etc... ...systems with detection/SIEM tooling, identity/access...PlatformOperationsSplunkFull timeTemporary workLocal areaWorldwide- ...looking for Senior Network Engineer (Cisco ISE / NAC) for... ...Network Access Control & Security Design, deploy, and... ...Directory, PKI, MDM, SIEM, and other security platforms. Troubleshoot complex... ...and optimization. Operations & Engineering Lead...PlatformOperationsImmediate start
$2,000 per month
...investors and staffed by leading engineers, Etched is redefining the... ...and maintaining a secure yet friction-free computing... ...will design, implement, and operate the monitoring, detection,... ...tooling, including SIEM, SOAR, and EDR/XDR platforms, to ensure comprehensive monitoring...PlatformOperationsWork at officeRelocation packageFlexible hours- Security Engineer Lambda Security protects some of the world's most valuable... ...Engineering, Data Center Operations and Engineering, IT, and embedded... ..., architecture, and platform work and want to build security... ...detection content across our SIEM and EDR to catch threats targeting...PlatformOperationsLocal areaFlexible hoursShift work
- ...and AI-driven threats, securing their AI... ...customers across industries operate with confidence in a rapidly... ...Description The Sales Engineer will report to the... ...firewalls, EDR, XDR, SIEM/SOC workflows, vulnerability... ...exposure management platforms or risk-based...PlatformOperationsWorldwide
$167.7k - $245.2k
...in AI, cybersecurity, platform and systems engineering. We are driven by a shared... ...systems that combine security-relevant data,... ...powering AI-native security operations, helping to shape how Splunk and Cisco scale... ...Familiarity with TDIR/SIEM architectures, correlation...PlatformOperationsSplunkFull timeTemporary workImmediate startFlexible hours$190.9k - $334.1k
...all started when engineer Fred Luddy wrote code... ...Our ServiceNow AI platform brings together... ...The ServiceNow Security Organization (SSO)... ...sources including SIEM, identity governance... ...systems you have operated in production and... ...~ Deep hands-on Splunk experience. SPL, data...PlatformOperationsSplunkPermanent employmentFull timeLive inWork at officeImmediate startRemote workFlexible hours$200k - $280k
...Network and Information Security Emeryville or Santa... ...™ technology platform. This platform enables... ...functionally with IT, engineering, and business stakeholders... ...with manufacturing operational goals. What You'll... ...Firewalls, IDS/IPS, SIEM (Rapid7/Splunk/Palo Alto), NAC (...PlatformOperationsSplunkContract work$142.8k - $274.8k
...Silicon, Cloud Hardware, and Infrastructure Engineering (SCHIE) is the team behind Microsoft's... ..., OneDrive, and the Microsoft Azure platform globally with our server and data center infrastructure, security and compliance, operations, globalization, and manageability...PlatformOperationsOngoing contractWork at officeLocal area- ...Description: Senior Network Engineer Location: San Jose,... ...design, deployment, operation, and troubleshooting... ..., wireless, network security, DNS, DHCP, and load balancing... ...AWS, and other cloud platforms. •Participate in... ...such as ThousandEyes, Splunk, SolarWinds, or...PlatformOperationsSplunk
$80.12 - $90 per hour
...Senior Network Security Architect NTT DATA's Client... ...while ensuring operational excellence and compliance... ...centralized management platforms including Panorama and... ...security platforms with SIEM and ticketing tools.... ...Network Security / Security Engineering experience. ~10+...PlatformOperationsHourly payTemporary workRemote workFlexible hours- ...Description Java SRE Engineer Onsite San Francisco... ...Java SRE / Platform Engineer to support large... ...Kubernetes (EKS) Design and operate production-grade AWS... ...Collaborate with SRE and Security teams to ensure system... ..., Grafana, Datadog, Splunk) Experience with...PlatformOperationsSplunk
$165k - $242k
..., CoreWeave delivers a platform of technology, tools, and... ...Do: The Enterprise Security team at CoreWeave is responsible... ...As a Senior Security Engineer, Enterprise Security ,... ...Design, implement, and operate workforce identity... ...Operations and SIEM teams to ensure robust...PlatformOperationsPermanent employmentFull timeTemporary workFor contractorsCasual workWork at officeRemote workFlexible hours$209k - $310k
Senior Security Engineer Type: Staff Augmentation (W2 employee of Innovation Consulting) Location... ...controls for third-party SaaS platforms • Partner with IT, infrastructure, and... ...least-privilege principles Security Operations & Threat Management • Independently review...PlatformOperationsContract workImmediate startRelocationMonday to Friday- ...We are seeking a skilled Software Engineer focused on application security to support and enhance the security... ...evolve security features across the platform. The ideal candidate brings strong... ...instincts and the ability to operate in complex, mature codebases. They...PlatformOperations
- ...across the globe to create, secure, and run applications that enhance... ...can thrive.Security Engineer III - Incident ResponseOrganization... ...engineering, SRE, cloud operations, legal, and executive... ...telemetry across AWS/Azure/GCP, SIEM/EDR platforms (e.g., CrowdStrike), identity...PlatformOperationsFull timeWork at officeLocal area
$90k - $120k
...Security AnalystRemote - Mountain View, CAOverviewSalary Range... ...Our enterprise-grade SaaS platforms power mission-critical systems... ...member of our Security Operations Center (SOC), responsible for... ...security alerts and events using SIEM tools (SPLUNK, Wazuh) and other security...PlatformOperationsSplunk$118k - $203.55k
...Technology Enterprise Strategy & Security Job Sub Function:... ...Principal Product Security Engineer to be based in Santa Clara,... ...devices, robotic systems, embedded platforms, cloud services, and... ...monitoring, update mechanisms, and operating system hardening implementations...PlatformOperationsLocal areaImmediate startRelocation$189k - $274k
Staff Security Engineer Aurora's mission is to deliver the benefits of self... ...its autonomous trucking operations, and the security foundations... ...infrastructure, including log pipelines, SIEM integrations, and alerting... ...of Aurora's security platforms, reduces manual operational...PlatformOperationsWork at officeLocal area3 days per weekEarly shift$98.18k - $115.5k
...committed to building the platforms and ecosystems that... ...Observability Engineer 3 is responsible for enabling... ...supportable application operations across a broad... ...with Datadog, Dynatrace, Splunk, Grafana, Prometheus,... ...protect your financial security and give you peace of...PlatformOperationsSplunkFull timeWork experience placementLocal area3 days per week$221.2k - $387.1k
...Description It all started when engineer Fred Luddy wrote code that... .... Our ServiceNow AI platform brings together any AI, any data... ...Description The ServiceNow Security Organization (SSO) The ServiceNow... ...largest enterprises. You'll operate with minimal direction and...PlatformOperationsWork at officeImmediate startRemote workFlexible hours- ...Lighthouses for breakthroughs in efficient operations. With our global reach, we ensure the... .... Job Description Sandisk's Product Security Engineering & Assurance (PSEA) organization is... ...partner closely with firmware, hardware, Platform Security, validation, and product...PlatformOperationsTemporary workRemote workFlexible hoursShift work
$214.1k - $309.8k
...Hybrid Role at Splunk Job posting may be removed earlier... ...customers respond to security events faster, more consistently... ..., exposures, or urgent operational issues emerge, our platform helps customers move from... ...The team blends product engineering, security domain...PlatformOperationsSplunkFull timeTemporary workWork at officeLocal areaRemote workFlexible hoursShift work$50 - $70 per hour
Infrastructure Engineer (Linux, Datacenter & Automation) Location:... ...administration, infrastructure operations, server hardware experience,... ...operating system, networking, and platform-level issues. Provision and... ..., Grafana, Datadog, or Splunk. Ideal Backgrounds Infrastructure...PlatformOperationsSplunkContract workTemporary work$180.3k - $244k
...directly with the GM and senior engineering leaders to shape how... ...with deep technical fluency, operates as an architect of systemic solutions... ...customer acquisition from Splunk, Elasticsearch, and Solr migrations... ...Direct experience in search platforms, observability/APM, or cloud...PlatformOperationsSplunkLocal areaImmediate startFlexible hoursDay shift$120k
...like minded and talented engineers and product... ...marketing solution including platform and services that helps... ...solutions including cloud, security, Generative AI,... ...infrastructure, data center operations, healthcare,... ...as AWS CloudWatch or Splunk. Experience with security...PlatformOperationsSplunkFull timeContract workPart timeH1bFlexible hours$124.11k - $175.21k
...Defense organization is seeking an Information Security Engineer to support comprehensive offensive and defensive security operations across multiple enterprise environments.... ..., management, and operations of core platforms within the Cyber Defense organization (e.g....PlatformOperationsLocal areaImmediate startRemote workWork from homeShift work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Security Engineer - SIEM (Splunk) Platform & Operations. Be the first to apply!
- physical security engineer San Jose, CA
- senior security operations engineer San Jose, CA
- security software engineer San Jose, CA
- network security engineer San Jose, CA
- sr information security engineer San Jose, CA
- IT security engineer San Jose, CA
- aws cloud security engineer San Jose, CA
- security engineer San Jose, CA
- application security engineer San Jose, CA
- senior cloud security engineer San Jose, CA


