Security Engineer - SIEM (Splunk) Platform & Operations
$125k - $175kSamsung SDS America
Job Description
Job Description
Samsung SDS America (SDSA) serves as the U.S. technology and innovation hub for Samsung’s global enterprise solutions, delivering secure, scalable, and high‑performance IT services that support some of the world’s most complex business environments. As SDSA continues to expand its cloud, mobility, analytics, and cybersecurity capabilities, maintaining a resilient security operations foundation is essential to protecting the company’s digital assets and ensuring uninterrupted service delivery.
Position Summary:
As Security Engineer, you’ll join the Cybersecurity Operations team, where you’ll serve as the frontline detective monitoring and correlating real‑time threat data from firewalls, cloud assets, EDR, and AI‑driven platforms like Darktrace. You’ll design, tune, and optimize Splunk Enterprise Security dashboards, detection rules, and correlation searches to cut false positives while delivering rapid, high‑fidelity alerts. Leveraging your experience SOC environments, you’ll lead deep incident investigations, spearhead proactive threat‑hunting missions, and drive remediation priorities based on risk and business impact. Collaboration is key: you’ll partner with global engineers, cloud specialists, and incident‑response teams to continuously improve our security posture and document best‑practice playbooks.
This is a Full Time Onsite position located in San Jose, CA.
Responsibilities:
- Monitor and analyze security event logs from multiple sources, including firewalls, intrusion detection/prevention systems, endpoint protection platforms, servers, cloud environments, and tools like Darktrace, to identify potential threats.
- Monitor, triage, and investigate alerts and logs within the Splunk SIEM and Splunk Enterprise Security (ES) platform.
- Assist in improving SIEM processes, detection coverage, alert fidelity, and operational workflows including creating dashboards
- Support the onboarding and integration of logs from enterprise systems into the Splunk environment.
- Validate log source completeness, data normalization, rule logic, and alert relevance across critical systems and infrastructure
- Perform initial analysis of security events, escalate incidents when appropriate, and assist with root cause identification.
- Conduct in-depth investigations of security incidents and recommend remediation and containment actions.
- Conduct proactive threat hunting using SIEM, EDR, CASB, and network detection tools, such as Darktrace, to identify suspicious activity that may have bypassed traditional controls.
- Tune and optimize correlation searches, detection rules, dashboards, and use cases to improve operational efficiency and reduce false positives.
- Prioritize remediation efforts based on risk, severity, and business impact.
- Participate in incident response activities and support threat hunting initiatives as needed.
- Collaborate with cross-functional teams to respond effectively to cybersecurity incidents and strengthen overall security posture.
- Create and maintain documentation for log flows, detection use cases, triage procedures, playbooks, cybersecurity processes, and operational standards.
Requirements
- Bachelor’s degree in Computer Science, Information Security, Information Assurance, or a related field; Master’s degree preferred.
- 3+ years of experience in a cybersecurity operations or related security role.
- 2+ years of hands-on experience administering Splunk Enterprise Security (ES).
- Strong hands-on experience with Splunk log ingestion, data normalization, search heads, indexers, SPL query development, and dashboard optimization.
- Knowledge of detection engineering, correlation rule development, and incident response workflows.
- Proven experience in threat analysis & incident response.
- Strong understanding of security log sources, including Windows and Linux servers, firewalls, endpoint tools, cloud infrastructure, and network detection platforms, such as Darktrace.
- Experience triaging and analyzing security alerts in complex, multi-platform enterprise environments.
- Familiarity with cloud platforms such as AWS, Azure, or similar environments.
- Strong analytical, communication, and collaboration skills, with the ability to clearly present findings and recommendations.
- Ability to work effectively across diverse global teams and adapt to evolving business and technical environments.
- Curious, resilient, and data-driven, with a proactive approach to solving security challenges.
Preferred Qualifications:
- Relevant certifications such as Splunk Enterprise Security Certified Admin.
- Experience with supporting tools such as Darktrace, Crowdstrike, or Netskope are highly preferred
- Active knowledge & experience with rule creation & executing correlation searches in Splunk.
Benefits
Samsung SDSA offers a comprehensive suite of programs to support our employees:
- Top-notch medical, dental, vision and prescription coverage
- Wellness program
- Parental leave
- 401K match and savings plan
- Flexible spending accounts
- Life insurance
- Paid Holidays
- Paid Time off
- Additional benefits
Samsung SDS America, Inc. is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, race, color, religion, sex, sexual orientation, gender identity or expression, national origin, disability, status as a protected veteran, marital status, genetic information, medical condition, or any other characteristic protected by law.
We are committed to providing reasonable accommodations to participate in the job application or interview process for candidates with disabilities. Please let your recruiter know if you need an accommodation at any point during the interview process.
The base pay range for this role depends on appropriate skills, experience, and technical level. Career Level 2 base salary is USD $125,000-175,000.
Individual base pay depends on various factors, in addition to primary work location, such as complexity and responsibility of role, job duties/requirements, and relevant experience and skills.
Certain roles are eligible for additional rewards, including annual bonus. U.S.-based employees have access to medical, dental, and vision insurance, a 401(k) plan and company match, short-term and long-term disability coverage, basic life insurance, and wellbeing benefits, among others. U.S.-based employees also receive, per calendar year, up to 10 scheduled paid holidays, and Paid Time Off.
$125k - $175k
...solutions, delivering secure, scalable, and... ...resilient security operations foundation is... ...As Security Engineer, you'll join the Cybersecurity... ..., and AI-driven platforms like Darktrace. You... ..., and optimize Splunk Enterprise Security... ...within the Splunk SIEM and Splunk Enterprise...PlatformOperationsSplunkFull timeTemporary workFlexible hours- ...Role: Network Security Engineer Location: San Jose CA-Onsite... ...including firewalls IDS/IPS SIEM platforms and endpoint security tools... ...technologies including SIEM (Splunk QRadar) Firewall (Palo Alto... ...skill development and operational excellence Collaborate...PlatformOperationsSplunkPermanent employmentContract work
$175k - $230k
...Hercules helps finance and operations leaders solve problems... ...teams to manage alone. Its platform automates the validation and... ...Trust access Manage DNS security (DNSSEC, DMARC, SPF, DKIM)... ...(Prometheus, Grafana, Splunk, Datadog) and SIEM integrations Lead incident...PlatformOperationsSplunk$170k - $255k
...come join us. THE ROLE As a Security Operations Engineer in the Global Information... ...and work closely with Cloud Platform, Network Engineering, and DevOps... ...detection queries in Splunk and deploy enterprise‑wide... ...DevSecOps: You are proficient in SIEM detection engineering (...PlatformOperationsSplunkWork at officeShift work$150k - $220k
...solutions, delivering secure, scalable, and... ...resilient security operations foundation is... ...Security Operations Engineer plays a critical role... ...threat‑management platforms, and governance... ...security projects (e.g., SIEM migration, DLP... ..., VPN, DLP, SIEM (Splunk, QRadar),...PlatformOperationsSplunkTemporary workFlexible hours$111.6k - $235.6k
...About the team: The IT security team is responsible... ...assessments, security operations, and security... ...technologies, such as SIEM, IDS/IPS, firewalls,... ...with CTI and detection engineers to operationalize threat... ...proficiency with SIEM platforms (e.g., Splunk, Chronicle, Elastic)...PlatformOperationsSplunkTemporary workLocal areaShift work$186k - $279k
...Senior Security Architect - AI/CI Santa Clara... ..., and platform environments. Partnering... ...Partnering closely with engineering and security teams... ...protection with operational scalability and... ...telemetry platforms (like Splunk), architecting... ...utilizing SIEM/logging platforms...PlatformOperationsSplunkWork at officeFlexible hours$77.5k - $140.9k
...Job Title: CyberSecurity SIEM Engineer (Senior SDC) About the... ...enhancing, and developing their security operations to counter these threats... ...with a focus on Advanced SIEM Platforms. Monitor project progress... ...products (Falcon Fusion, Splunk SOAR, Google Chronicle SecOps...PlatformOperationsSplunkWork experience placementSummer holidayFlexible hours- ...Sr. Network Security Engineer Make Next Happen Now. For more than 30... ...Ansible, or other automation platforms. The Ideal candidate is... ...tools (Ansible, Terraform), SIEM (Splunk), and firewall policy... ...experience with building, operating, and supporting Palo Alto Firewalls...PlatformSplunkWork experience placement
$115.86 per hour
...integration, with expertise in security intelligence, application... ...Intelligence Delivery Engineering organization plays a pivotal... ...environment to integrate with Splunk platforms, foster cross-functional... ...documentation, test, deployment, and operations. - You have the...PlatformOperationsSplunkHourly payFull time$2,000 per month
...investors and staffed by leading engineers, Etched is redefining the... ...and maintaining a secure yet friction-free computing... ...will design, implement, and operate the monitoring, detection,... ...tooling, including SIEM, SOAR, and EDR/XDR platforms, to ensure comprehensive monitoring...PlatformOperationsWork at officeRelocation packageFlexible hours$216k - $264k
...Job Description Senior Security Engineer Fortinet (NASDAQ: FTNT) is... ...range of complex architectures, platforms and mediums. The individual... ...: Administer and operate the infrastructure Vulnerability... ...in incident response, SIEM event review, and network testing...PlatformOperationsFull timeWork experience placementWorldwideFlexible hours- ...breakthroughs in efficient operations. With our global reach, we ensure... ...a highly experienced Senior Security Engineer to own, design, and... ...effectiveness, and evolution of SOC platforms. This engineer will act... ...SOC platforms with SIEM, SOAR, or case management platforms...PlatformOperationsTemporary workRemote workFlexible hoursShift work
$140k - $185k
...uniting offensive and defensive security operations to continually improve the company... ...security detection and response platforms, including: SIEM (e.g., Splunk, PANW, or Azure Sentinel) EDR... ...Collaborate with IT and Engineering teams to ensure security telemetry...PlatformOperationsSplunkFor subcontractorLocal area- ...building a future where security has no categories, no... .... The Kai Agentic Platform replaces fragmented, human... ...: Our Heads of AI, Engineering, and Product bring extensive... ...Team: Our researchers operate at the leading edge of... ...tooling ecosystems (SIEM, EDR, CSPM,...PlatformOperations
$185k
...Software Security Engineer Spectro Cloud lets organizations around the... ...architectural flexibility needed to operate at scale without vendor lock... ...Kubernetes-based production platform. This is a builder role... ...logging, alerting, and SIEM integrations Build automation...PlatformOperationsWork at officeFlexible hoursShift work3 days per week$109k - $160k
...Security Operations Engineer II Livingston, NJ CoreWeave is The Essential Cloud for AI™. Built for... ...pioneers by pioneers, CoreWeave delivers a platform of technology, tools, and teams that... ...environments. Utilize and query SIEM, EDR, and other security tooling to...PlatformOperationsPermanent employmentTemporary workCasual workWork at officeFlexible hoursNight shiftWeekend work$118.81k - $201.97k
...vulnerability assessments, and security monitoring across multiple... ...and strategic cyber defense operations, ensuring alignment with DoD... .... Experience with SIEM platforms, network monitoring tools, and... ...CISSP CASP Elastic/Splunk certifications Desired...PlatformOperationsSplunkFull timeContract workWork experience placementWork at office$163k - $184k
...day is safer and more secure than the one before. We... ...into a unified, AI-driven platform. Direct enterprise‑... ...modernizing Security Operations Centers (SOCs) to achieve... ...and integrating SIEM/security analytics solutions... ...technologies, such as Splunk and IBM QRadar. Additional...PlatformOperationsSplunkRemote workVisa sponsorshipWork visa$111.6k - $180k
...mission of TikTok's Global Security Organization is to... ...safe, secure, and operating at scale for over 1 billion... ...that the TikTok platform is safe and secure,... ...operations, and drives engineering enhancements,... ...CI/CD deployment to SIEM (Splunk ES, Chronicle) and EDR...PlatformOperationsSplunkTemporary workLocal area$200k - $280k
...Network and Information Security Emeryville or... ...Compiler™ technology platform. This platform... ...functionally with IT, engineering, and business stakeholders... ...with manufacturing operational goals. What You'... ...Firewalls, IDS/IPS, SIEM (Rapid7/Splunk/Palo Alto), NAC (...PlatformOperationsSplunkContract work- ...Compliance & Privacy Engineer Location : Cupertino... ...including but not limited to Splunk monitoring, GitHub... .... " Tooling & Platform Monitoring: Actively monitor... ...Privacy & Compliance) operations, flagging issues and... ...Science, Information Security, Data Engineering, or...PlatformOperationsSplunkPermanent employmentContract workWorldwide
- ...efficient, resilient, and secure. As an AI-forward... ...native Zero Trust Exchange platform. This innovation... ...for a Federal Security Operations - SkillBridge Intern to... ...similar) Familiarity with SIEM/XDR platforms such as Crowdstrike... ...Falcon Next-gen SIEM, Splunk, or Google SecOps...PlatformOperationsSplunkInternshipWork at officeLocal areaRemote work
- ..., and we've redefined modern security with the world's most advanced AI‑native platform. Our customers span all industries... ..., implementation, and operational support of the CrowdStrike platform... ..., PCI, HIPAA Database: SIEM, MSSQL, Splunk, LogScale Identity:...PlatformOperationsSplunkFull timeWork at officeLocal areaRemote work
- ...building a future where security has no categories, no... .... The Kai Agentic Platform replaces fragmented, human... ...: Our Heads of AI, Engineering, and Product bring extensive... ...Team: Our researchers operate at the leading edge of... ...) or equivalent SIEM platforms. Relevant...PlatformOperations
$100k - $155k
Next‑Gen SIEM Senior Resident Consultant... ...redefined modern security with the world's most... ...AI‑native platform. Our customers span... ...optimization, and ongoing operational excellence. The... ...legacy SIEM platforms (Splunk, QRadar, etc.)... ...and coordinate with engineering teams as needed...PlatformOperationsSplunkRemote jobWork experience placementWork at officeLocal area$60 - $70 per hour
...Technical Program Manager (TPM) - Security Operations for a globally recognized... ...SecOps OKRs across detection engineering, incident response, asset... ...managing programs across cloud platforms (AWS, GCP, Azure) and modern security stacks (Splunk, CrowdStrike, Tenable, etc.)....PlatformOperationsSplunkWork at office- ...breakthroughs in efficient operations. With our global reach, we ensure... ...are seeking a Senior Cloud Security Engineer to lead the hands-on... ...connectivity) Cloud security platforms (CSPM, CWPP, CIEM) Encryption... ...alerting integrated with SIEM/SOC workflows Support secure...PlatformOperationsTemporary workRemote workFlexible hoursShift work
$165k - $242k
...Senior Security Engineer, PKI & Secrets Livingston, NJ / New York, NY / Sunnyvale, CA / Bellevue... ...by pioneers, CoreWeave delivers a platform of technology, tools, and teams that enables... ...its global fleet. You'll design and operate PKI hierarchies, secrets management platforms...PlatformOperationsTemporary workCasual workWork at officeFlexible hours$105.3k - $175.21k
...Are: Intel's Information Security organization enables Intel to... ...a Identity Security - PKI Engineer. The candidate chosen for this... ...products to support USG operations. Primary duties and responsibilities... ...PKI solutions with various platforms and applications. Develop...PlatformOperationsInternshipLocal areaImmediate startShift work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Security Engineer - SIEM (Splunk) Platform & Operations. Be the first to apply!
- endpoint security engineer San Jose, CA
- senior cloud security engineer San Jose, CA
- security infrastructure engineer San Jose, CA
- sr security engineer San Jose, CA
- senior security operations engineer San Jose, CA
- cloud security engineer San Jose, CA
- security software engineer San Jose, CA
- sr information security engineer San Jose, CA
- network security engineer San Jose, CA
- senior application security engineer San Jose, CA

