OT Security Consultant (Splunk)
$80 - $85 per hourMatch Point Solutions
MatchPoint Solutions is a fast-growing, young, energetic global IT-Engineering services company with clients across the US . We provide technology solutions to various clients like Uber, Robinhood, Netflix, Airbnb, Google, Sephora, and more! More recently, we have expanded to working internationally in Canada, China, Ireland, UK, Brazil, and India . Through our culture of innovation, we inspire, build, and deliver business results, from idea to outcome. We keep our clients on the cutting edge of the latest technologies and provide solutions by using industry-specific best practices and expertise.
We are excited to be continuously expanding our team. If you are interested in this position, please send over your updated resume. We look forward to hearing from you!
Job : OT Security Consultant (Splunk)
Location : Houston, TX - onsite
Duration : 12 Months
Rate : $80 to $85 per hour
-
Embedded Operational Technology (OT) Cybersecurity Consultant to lead Splunk detection engineering for a customer Security Operations Center (SOC).
- This hands-on role requires production SOC experience, an understanding of how OT environments differ from traditional IT, and advanced Splunk expertise.
- The consultant will evaluate current use cases, improve correlation and alert quality, develop new detection content, coach analysts, and create clear documentation that enables the team to sustain the work independently.
- This is a full-time role dedicated to one customer for approximately 12 months, with a potential extension.
- Business hours align to US Central time, with no on-call or 24x7 monitoring duties.
- Remote, hybrid, or on-site presence will be confirmed with the customer. Daily participation in stand-ups and shared team channels is expected.
Responsibilities:
-
Catalogue and assess existing Splunk correlation searches, dashboards, and use cases against an agreed baseline, identifying coverage gaps and noisy rules.
-
Co-author a prioritized roadmap with the Nozomi lead during the initial phase of the engagement.
-
Design, test, and refine Search Processing Language (SPL) correlation searches, notable event logic, and detection content tailored to OT data sources.
-
Recommend and implement approved adjustments to thresholds and suppression logic to reduce false positives, and track the impact of each change.
-
Review OT log sources, parsing, normalization, field extraction, and enrichment so detections are based on reliable data.
-
Partner with the Nozomi lead to normalize, enrich, and correlate Nozomi alerts and asset data in Splunk.
-
Coach SOC analysts using real investigations and teach effective pivots across OT and IT data.
-
Create a runbook and tuning rationale for each new or materially changed use case, and teach analysts to build and tune searches independently.
-
Provide monthly reporting on changes, rationale, alert volume, false positive rate, and coverage improvement.
-
Coordinate with customer teams, implementation partners, change control, and related Splunk workstreams so improvements are delivered smoothly.
Required Qualifications
- Significant cybersecurity experience, including hands-on SOC work involving triage, investigation, and detection engineering in a production environment; approximately five or more years of overall experience is preferred.
- Experience with OT or Industrial Control System (ICS) security monitoring, ideally in utilities, energy, or critical infrastructure.
- Advanced hands-on Splunk skills, including SPL, correlation search development, and tuning in a production SOC environment.
- Practical knowledge of detection
- engineering methods and MITRE ATT&CK, with working familiarity with ATT&CK for ICS.
- Understanding of OT network architecture, industrial protocols, and the Purdue model.
- Strong written and verbal communication skills, with experience coaching analysts and creating clear technical documentation.
Preferred Qualifications
Experience supporting an electric utility or other critical infrastructure environment, including familiarity with applicable regulatory requirements.
Working knowledge of IEC 62443.
Experience integrating Nozomi Networks or another OT monitoring platform with Splunk.
Experience with risk-based alerting, security orchestration, automation and response, or detection-as-code practices.
Prior consulting or embedded advisory experience. Certifications
-
Splunk Core Certified Power User or Admin, Splunk Enterprise Security Certified Admin, GICSP, GCIA, GCDA, GCIH, CISSP, or equivalent certifications are helpful. Certifications support, but do not replace, hands-on SOC and OT experience. Tools and Technologies:
-
Splunk Enterprise and Splunk Enterprise Security
-
Search Processing Language (SPL)
-
Correlation searches and notable event workflows
-
Nozomi Networks or another OT monitoring platform
-
MITRE ATT&CK and ATT&CK for ICS
MatchPoint Solutions provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws.
This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation, and training.
- ...resume. We look forward to hearing from you! Role: OT Security Consultant (Nozomi) Contract Length: 12 months Location: Houston... ...content. Co-author a prioritized roadmap with the Splunk lead during the initial phase of the engagement. Recommend...SplunkFull timeContract workLocal areaRemote work
- ...Full Time Job Function The Senior IT Security Analyst is responsible for safeguarding enterprise... .... This role has a strong focus on Splunk administration, security monitoring,... ...initiatives across IT and operational technology (OT) environments. This position partners...SplunkFull timeTemporary workFor contractorsWork experience placementLocal area
$27 - $31 per hour
DescriptionKforce has a client that is seeking a Security Analyst I in Houston, TX.Summary:The Tier 1 Cyber Security Analyst serves as... ...Monitor and investigate security alerts from SIEM tools, including Splunk* Perform initial triage to determine severity, impact, and...SplunkShift work- Hybrid Remote • Houston, TXDescriptionThe Senior OT Security Analyst is a hands-on cybersecurity professional responsible for strengthening the security and resilience of Fervo's operational technology environments. The role partners with Operations, OT and controls engineering...SuggestedWork at officeRemote work
- ...Position Overview We are seeking a Security Analyst I to join a 24/7 Security Operations Center (SOC) as a Tier 1 Cybersecurity Analyst... ...investigate security alerts using SIEM platforms, including Splunk. Perform initial alert triage to determine severity, impact,...SplunkFull timeShift work
- ...options (within TX ONLY) iLabor Job Details Security Analyst (X4) Locals Only/ Out of Area/ Remote? Onsite... ...Required Technical Skills: - Experience with Splunk, Splunk SOAR, Proofpoint - Experience triaging alerts and escalation...SplunkLocal areaRemote workNight shift
- ...7 SOC schedule (includes nights, weekends, holidays, and on-call for incidents) Certification Required: Active CompTIA Security+ Key Tools: Splunk SIEM, Splunk SOAR, Proofpoint & Azure Security Eligibility: Must be authorized to work in the US. W2 employment only (no...SplunkVisa sponsorshipWork visaShift workNight shift
- ...defined networking. This environment is being designed and deployed now - which means security can be built in rather than retrofitted. That is the opportunity in this role. As our OT Security Analyst, you will help design secure operational technology systems as...Contract workRemote work
- ...The BISO (Business Information Security Officer) Engineer serves as an embedded cybersecurity... .... This role partners closely with IT, OT, and business stakeholders to identify risk... ...Coordinate with enterprise SIEM (Splunk), network security (Palo Alto/Panorama),...SplunkShift work
$105.4k - $207.8k
...with resilience, grow with confidence, and proactively manage to secure success. Recruiting for this role ends on 12/31/2026. Work you'... ...equivalent work experience.4+ years of experience in technical consulting, enterprise infrastructure, identity security, or Active...Work experience placementLocal areaVisa sponsorship- Company DescriptionXinnovit is a global leader in technology consulting, outsourcing, and workforce management solutions.Our mission is... ...promote employee development. Job DescriptionSecurity Consultant, Security Strategy, Risk & Compliance Services,Security MgmtAdditional...
- Company DescriptionXinnovit is a global leader in technology consulting, outsourcing, and workforce management solutions.Our mission is... ...compliant status.• Work with Clients development team to ensure all security policies and procedures are being followed.Work with...Work experience placement
- We AreAccenture Security helps organizations prepare, protect, detect, respond, and recover along with all points of the security lifecycle... ...range of services, solutions and assets across Strategy & Consulting, Technology, Operations, Industry X and Song, together with...Full timeWork experience placementLive inWork at officeLocal area
- ...Cigital, Inc. headquartered in Dulles, Virginia (just outside of Washington, D.C.), is the world’s largest consulting firm specializing in software security and is the global leader in helping organizations design, build, and maintain secure software. Our unique expertise...Local areaWorldwide
- ...ideas into reality.Accenture Security helps organizations prepare, protect... ...intersection of Accenture's consulting expertise and CrowdStrike's... ...the following: SIEM platforms (Splunk, QRadar, Elastic, Sentinel,... ...environments (AWS, Azure, GCP), OT/ICS environments, or hybrid data...SplunkFull timeWork experience placementLive inWork at officeLocal area
- ...Zero Trust • Detection & Response • Cloud Security • DevSecOps Role: Cybersecurity... ...continuity coordination. · Experience with OT, IoT, industrial control systems, or field... ...SOAR platforms such as Microsoft Sentinel, Splunk, CrowdStrike, Logic Apps, or similar...SplunkFull timeLocal areaRemote workRelocation
- ...workforce. Job Description The Application Security Architect is responsible for building and... ...1 years’ experience administering Splunk Enterprise. Minimum 1 years’... ...Familiarity with Operational Technology (OT) and Industrial Control System (ICS) environments...SplunkWork at officeLocal area
- ...Murphy Oil Corporation is looking for an IT Security Specialist to support our growing Global... ...service desk, infrastructure, cloud, OT, and application teams to deploy critical... .../ Administrator, Datadog certifications, Splunk certifications, Azure Security certifications...SplunkWork at officeLocal areaRemote work2 days per week
- ..., Gemfire cache (will change to Elasticache in AWS), APIGEE, EAC - Banking Environment as Code DevOps - Spinnaker Readonly APIs- Most of the data is user/account specific Perf Testing - JMeter, BlazeMeter, Chaos TEsting, NFR - Datadog, cloudwatch, splunkSplunkWork from home
- ...-the-shelf applications; familiarity with Grafana, Datadog, or Splunk.Coding experience with .NET, Java, Python, or equivalent, plus... ...processes.About Us:Arthur Lawrence is a management and technology consulting firm providing enterprise-wide business transformation and...Splunk
- ...Title- Cyber Security Architect/Security Operations Architect Location- Houston, TX or Plano, TX (Houston preferred) HM Notes :... ...large Tech Company Should be very strong with SIEM, Azure, Splunk, Forensics This team is doing a modernization - Any modernization...Splunk
- ...Experience with Kubernetes, either On-Prem traditional K8's or AWS EKS. Experience in writing terraform scripts. Experience with monitoring tools such as Splunk, AppD, Datadog. Good Linux experience. Familiar with any RBDMS, Oracle preferred....SplunkWork experience placementH1bLocal area
$105.4k - $207.8k
Position Summary AI Security Senior ConsultantOur Deloitte Cyber team understands the unique challenges and opportunities businesses... ..., and proactively manage to secure success.As a Senior Consultant, Strategy, Growth & Transformation in Deloitte Cyber's Cyber for...Local areaWorldwideVisa sponsorship- .... Ensure application readiness, reliability, performance, security, supportability, and lifecycle management. Configure Windows... ...Knowledge of Azure Monitor, Log Analytics, Application Insights, Splunk, REST APIs, middleware, messaging, .NET, Python, or Bash. Experience...SplunkContract work
- ...application performance root cause analysis Experience using Splunk to help with troubleshooting Experience troubleshooting EIGRP, BGP, Firewalls, IPSEC/SSL VPNs, Spanning tree and network security Experienced with software defined networking High...SplunkWeekend work
- Job Description Job Description Enlist as a Soldier into the United States Army and As an Artillery Mechanic, you’ll supervise and gain the skills needed to perform maintenance and recovery operations on all self-propelled field artillery cannon weapon systems, ...Civilian ContractorPermanent employmentRelocation package
- ...Loss Prevention OfficerDivision: JW Marriott HoustonDescription: The Loss Prevention Officer will be instrumental in creating a safe, secure, and welcoming environment for guests and staff. By proactively patrolling the property, responding to incidents, and assisting in...Part timeLocal area
$90k - $120k
...Base Pay Range $90,000.00/yr - $120,000.00/yr Loss Prevention & Security Manager Locations: Houston, Texas OR Atlanta, Georgia Compensation: $90,000 – $120,000 base + annual bonus Nter Talent is supporting a search for a Loss Prevention & Security Manager on behalf of...Full time- ...Security Industry Specialists is looking for a Loss Prevention Specialist in Houston, TX. This full-time role focuses on promoting a safe shopping environment by deterring theft and managing apprehensions. The ideal candidate has two years of loss prevention experience...Hourly payFull time
- ...specializing in the fields of Software Development, Software Consultancy and Information Technology Enabled Services.Job Description• Responsible... ...and other related languages• Monitoring tool experience like Splunk, Nagios• Understanding on Application servers -- IIS, Tomcat,...SplunkPermanent employmentFull timeH1b
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to OT Security Consultant (Splunk). Be the first to apply!
- global security specialist Houston, TX
- security analyst intern Houston, TX
- security specialist Houston, TX
- security analyst Houston, TX
- security consultant Houston, TX
- information security compliance analyst Houston, TX
- security operations analyst Houston, TX
- security systems specialist Houston, TX
- junior security analyst Houston, TX
- network security consultant Houston, TX





