Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Security Content Engineer - Splunk

BlueVoyant

BlueVoyant is looking for a Security Operations Center Security Content Engineer to help our global customers manage their Splunk cloud security solutions. You will be part of a fast-paced team that helps customers to efficiently and effectively derive security insights through generating detection logic, automation and visualizations. This position is fully remote. Key Responsibilities Ideate and create client-facing detections to surface security and IT operations concerns Collaborate with clients to design and implement visualizations to assist clients with understanding security posture, interesting events, and operations metrics Assist clients with testing and tuning detection logic to minimize false positives, alert duplication, and whitelisting Identify opportunities for client-specific needs to become base content for all MSS, including rules, automations, and dashboards Assist integration teams in identifying opportunities for log content reduction and removal of irrelevant events Deliver functional value resulting from research in the form of queries, signatures, rules, and contextual information (knowledge base articles) Serve as a Technical SOC SME in support to customers (customer facing) and support to sales and marketing Supplemental in-depth research of exploits and vulnerabilities which have a high likelihood of occurring within BlueVoyant customer environments Assist in the advancement of security policies, procedures, and automation Serve as the technical escalation point and mentor for junior detection engineers and Sentinel support staff Regularly communicate with customer IT teams to inform them of issues, help them remediate, and ensure that they continue to operate business as usual Assist with advancing security standard operating procedures and incident response reporting. Qualifications Excellent teamwork skills Previous signature writing / algorithm creation experience Ability to analyze event logs and recognize signs of cyber intrusions/attacks Hands-on experience with Microsoft Azure Sentinel, Defender ATP, O365 ATP, and other Microsoft security suites. Hands-on experience with Microsoft Threat Protection suite of security solutions (Defender ATP, Azure ATP, Office 365 ATP, Microsoft Cloud Application Security), Azure Active Directory, Azure Security Center, Azure Log Analytics, and M365 suite of solutions. Hands-on experience for the following: Develop, automate, and orchestrate tasks (playbooks) with logic apps based on certain events Ability to advise customers on the Microsoft Cloud Security capabilities across the Azure platform. Strong experience with scripting languages (Python, PowerShell, others) Strong experience with digital forensic analysis (host, network, other) and blue team operations Strong knowledge and understanding of network protocols and devices. Ability to work directly with customers to understand requirements for and feedback on security services Advanced written and verbal communication skills and the ability to present complex technical topics in clear and easy-to-understand language Strong teamwork and interpersonal skills, including the ability to work effectively with a globally distributed team Skilled in the creation of signatures for security tools Familiarity with tools such as Wireshark, TCP Dump, Security Onion, and Splunk Strong knowledge of the following: SIEM Packet Analysis SSL Decryption

HIDS/NIDS

Network Monitoring Tools Case Management System Knowledge Base Web Security Gateway Email Security Anti-Virus Network Access Control Encryption Vulnerability Identification Preferred Qualifications Experience in intrusion analysis, digital forensics, penetration testing, detection engineering or related areas 7+ years of experience in information technology or information security, 4 of which were spent dealing directly with SIEM solutions and detection content creation Microsoft 365 Certified: Security Administrator Associate and GCFA, GCFE, or OSCP preferred Familiarity with Azure, .Net programming, jupyter notebooks, and scripting / development using web APIs Education Minimum bachelor’s degree in Information Security, Computer Science, or other IT-related field or equivalent experience About BlueVoyant At BlueVoyant, we recognize that effective cyber security requires active prevention and defense across both your organization and supply chain. Our proprietary data, analytics, and technology, coupled with deep expertise, works as a force multiplier to secure your full ecosystem. Accuracy! Actionability! Timeliness! Scalability! Led by CEO, Jim Rosenthal, BlueVoyant’s highly skilled team includes former government cyber officials with extensive frontline experience in responding to advanced cyber threats on behalf of the National Security Agency, Federal Bureau of Investigation, Unit 8200, and GCHQ, together with private sector experts. BlueVoyant services utilize large real-time datasets with industry leading analytics and technologies. Founded in 2017 by Fortune 500 executives, including Executive Chairman, Tom Glocer, and former Government cyber officials, BlueVoyant is headquartered in New York City and has offices in Maryland, Tel Aviv, San Francisco, London, Budapest, and Latin America. All employees must be authorized to work in the United States. BlueVoyant provides equal employment opportunities to all employees and applicants for employment without regard to race, color, religion, sex, national origin, age, disability or genetics. In addition to federal law requirements, BlueVoyant complies with applicable state and local laws governing non-discrimination in employment in every location in which the company has facilities. Disclaimer: Please note that pursuant to contractual requirements and applicable law, in order for employees to perform work on some of the company’s federal contracts, U.S. citizenship is required. Accordingly, an employee’s ability to perform work on such contracts is contingent upon the company’s verification of the employee’s citizenship status. Furthermore, individuals may be subject to additional background checks and fingerprinting. Seniority level Mid-Senior level Employment type Full-time Job function Information Technology and Engineering Industries Computer and Network Security #J-18808-Ljbffr BlueVoyant

Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Security Content Engineer - Splunk in Annapolis, MD vacancy
  • $91k - $140k

     ...Defense Solutions is seeking an experienced Information Systems Security Engineer (ISSE) to support a federal customer in Washington, DC. The...  ...tools such as Tenable Nessus, ACAS, Qualys, Trellix ePO, and Splunk Enterprise while supporting incident response and continuous... 
    Splunk
    Local area

    Dobbs Defense Solutions, LLC

    Annapolis, MD
    3 days ago
  • CTRL+ seeks a Software Engineer (SWE) — Skill Level 4 to design, develop, and maintain a distributed Metrics and Monitoring solution for HPC systems. The role emphasizes Splunk proficiency and strong frontend/backend capabilities, including ReactJS, Node.js, and RESTful... 
    Splunk

    CTRL + LLC

    Annapolis, MD
    2 days ago
  • $92.3k - $166.85k

     ...networking, authentication, and system security. Coach and review the work of lower‑level...  ...platforms, such as Security Onion or Splunk. Worked with Red Hat Identity Management...  ...environment while working effectively with engineers and customers. Ability to handle and... 
    Splunk
    Immediate start
    Flexible hours

    Leidos

    Annapolis, MD
    4 days ago
  • $112.2k - $196.4k

     ...this role you will provide advanced network protocol analysis and security expertise. You will lead deep-dive analysis of complex network...  ...information to enhance its value. ~ Experience with Elastic/Splunk/ or other Security Information and Event Management (SIEM)... 
    Splunk
    Flexible hours

    Parsons Company

    Annapolis, MD
    2 days ago
  • $75k - $85k

     ...customers reduce risk by tightly integrating MDR with offensive security, threat hunting, security research, and digital forensics and...  ...customer first approach. CyberMaxx is seeking an Associate Security Engineer to join our Security Control Management team with a primary... 
    Suggested
    Temporary work
    Local area
    Remote work
    Flexible hours

    CyberMaxx

    Annapolis, MD
    5 days ago
  • GrammaTech, a leader in software for embedded systems, seeks a Senior Embedded Security Software Engineer to join our team in Linthicum, Maryland or Herndon, VA. You will work on reverse engineering, firmware analysis, and emulation-driven development to advance secure... 

    GrammaTech

    Annapolis, MD
    3 days ago
  • $130k - $190k

     ...to a disability, contact this employer to ask for an accommodation or an alternative application process. Senior Embedded Security Software Engineer Herndon, VA, US 2 days ago Requisition ID: 1016 GrammaTech is actively seeking a Senior Embedded Security Software... 
    Temporary work

    GrammaTech

    Annapolis, MD
    3 days ago
  •  ...About the job Splunk Engineer Splunk Engineer needs 6+ years of experience Splunk Engineer requires: Top secret/SCI clearance with at least a CI polygraph. Splunk engineering experience Splunk Engineer duties: Establish a process to formally... 
    Splunk

    Global Channel Management

    Annapolis, MD
    1 day ago
  •  ...Network Security EngineerAnnapolis, MDMandatory Qualifications:Associate degree in an Information...  ....Palo Alto Certified Network Security Engineer Certification version 9 or 10 issued...  ...and Prevention with Palo Alto networks.Content Filtering Palo Alto networks.Virtual... 

    WATI

    Annapolis, MD
    3 days ago
  •  ...Role Description: The Security Engineer will support security initiatives focused on strengthening network and infrastructure security across the organization. This role will help develop security recommendations, assess existing controls, and contribute to security architecture... 
    Contract work
    Work experience placement
    Work at office

    ASM Research, An Accenture Federal Services Company

    Annapolis, MD
    3 days ago
  • $40k

     ...federal partner supporting mission‑critical programs across national security, defense, and public service delivery. Our work focuses on...  ...that matter at a national scale. The Junior Security Engineer supports 24x7 enterprise cybersecurity operations by monitoring... 
    Contract work
    Remote work

    MAXIMUS

    Annapolis, MD
    1 day ago
  •  ...Washington DC metropolitan area, seeks a visionary Vice President, Security & Observability to define and execute the strategy for the VSO3...  ...into customer outcomes. The ideal candidate will bring deep Splunk experience, a strong security and observability background, and... 
    Splunk

    Ironbow

    Annapolis, MD
    5 days ago
  • Iron Bow Technologies is seeking a Vice President, Security & Observability (VSO360) to define and execute growth for the Security & Observability...  ...to drive differentiated customer outcomes. You will bring deep Splunk expertise, strong leadership, and the ability to translate... 
    Splunk

    Iron Bow Technologies

    Annapolis, MD
    4 days ago
  •  ...Experts, LLC is seeking a High-Performance Computing (HPC) Systems Engineer to support complex system design and diagnostics. The ideal...  ...understanding of system architectures and leverage monitoring tools like Splunk to identify and solve hardware issues. Applicants must have... 
    Splunk

    Trexllc

    Annapolis, MD
    3 days ago
  •  ...will work in a fast-paced environment and collaborate to deliver secure, efficient IT infrastructure. The position requires strong...  ...skills, experience with Windows Server/AD, and familiarity with SALT, Ansible, Splunk, Puppet, #J-18808-Ljbffr Belay Technologies, Inc.
    Splunk

    Belay Technologies, Inc.

    Annapolis, MD
    1 day ago
  • $175k - $250k

     ...seeking an experienced High-Performance Computing (HPC) Systems Engineer to support system design and diagnostics. The role involves...  ...candidate has expertise in system architecture, monitoring tools like Splunk, and strong problem-solving skills. The position offers... 
    Splunk

    Trexllc

    Annapolis, MD
    5 days ago
  •  ...requirements. You will maintain Windows Server and Active Directory, manage virtualization, and work with SALT, Ansible, Splunk, Puppet, and Nessus in a secure environment. The position requires 8-14 years of direct experience, US citizenship, and an active TS/SCI clearance... 
    Splunk
    Contract work

    CTI MD

    Annapolis, MD
    1 day ago
  • A veteran-owned technology firm is seeking a Splunk Engineer in Annapolis, Maryland. This role involves maintaining Splunk instances with a strong emphasis on data onboarding, content development, and developing actionable alerts. Candidates should have significant Splunk... 
    Splunk

    True Zero Technologies

    Annapolis, MD
    5 days ago
  •  ...global networks. You will administer, optimize, and secure monitoring platforms while coordinating with engineering and cybersecurity teams to meet accreditation...  ...experience with major monitoring tools (SolarWinds, Splunk, Elastic/ELK, #J-18808-Ljbffr General Dynamics... 
    Splunk

    General Dynamics Information Technology

    Annapolis, MD
    1 day ago
  • Booz Allen Hamilton in Maryland is seeking a Security & Compliance Administrator to help military clients identify cyber risks, understand...  ...with security audits, policy enforcement, and tools like Splunk and Nessus, plus DoD/IC compliance knowledge. #J-18808-Ljbffr... 
    Splunk

    Booz Allen Hamilton

    Annapolis, MD
    3 days ago
  • LufCo is looking for a Systems Engineer in Annapolis Junction, MD, to support watch floor...  ...development, and contribute to critical national security initiatives. Qualifications include a...  ...in communication and technology such as Splunk and Grafana. The position offers... 
    Splunk
    Rotating shift

    LufCo

    Annapolis, MD
    4 days ago
  • The State Board of Elections is seeking a Senior Security Engineer to administer, configure and maintain security tools across host, network and application layers. You will lead incident response, investigate alerts, and advise on architecture aligned with NIST and CIS... 

    State of Maryland

    Annapolis, MD
    2 days ago
  • $90k - $230k

    A cybersecurity solutions provider in Maryland is looking for experts in various roles, including Security Controls Assessor and Cybersecurity Network Analyst. Candidates must have a B.S. in Cybersecurity or related field, relevant certifications, and clearances. Salary... 

    Nexxis Solutions

    Annapolis, MD
    2 days ago
  • $172k - $206k

    Itlearn360 is seeking a Software Engineer with over 7 years of experience, specializing in Splunk and the Elastic Stack, to develop and maintain system management infrastructure for High Performance Computing systems. The role is based in Annapolis Junction, Maryland.... 
    Splunk

    MSU Solutions GmbH

    Annapolis, MD
    1 day ago
  •  ...SOLUTIONS LLC is seeking a skilled Senior HBSS/ENS Administrator in Annapolis Junction, MD. The role requires expertise in Endpoint Security and compliance with DoD cybersecurity standards. Candidates should have prior experience with TRELLIX and Microsoft Defender,... 

    CARSON SOLUTIONS LLC

    Annapolis, MD
    5 days ago
  •  ...Solutions is seeking a DevOps Software Engineer to join an agile team responsible for a...  ...streams with message brokers, and leverage Splunk for ingestion, storage, and...  ...mission-critical HPC infrastructure. ACTIVE SECURITY CLEARANCE AT THE TS/SCI POLYGRAPH LEVEL... 
    Splunk

    Nyla Technology Solutions

    Annapolis, MD
    5 days ago
  •  ...Cisco and Juniper switches Strong Windows and Linux troubleshooting skills with hardware and software issues HP Device Manager (understanding of RMM tools would be sufficient) Experience with Splunk, Zabbix, Syslog‑ng #J-18808-Ljbffr Avid Technology Professionals, LLC
    Splunk
    Remote work

    Avid Technology Professionals, LLC

    Annapolis, MD
    4 days ago
  • $125k - $145k

     ...3 years of experience and a current Top-Secret/SCI clearance. Responsibilities include managing user accounts and maintaining the security posture of Linux environments. In addition to technical expertise, we value creativity and communication. The expected salary for... 
    Splunk

    Erias Ventures, LLC

    Annapolis, MD
    5 days ago
  •  ...Software Integration Engineer (All Levels) Site Reliability Engineering (SRE) Team...  ...solutions utilizing Nagios, Thruk, Prometheus, Splunk, and Grafana. Troubleshoot system...  ...Qualifications Active TS/SCI with Polygraph security clearance. U.S. Citizenship.... 
    Splunk
    Temporary work

    Open Systems Technologies

    Annapolis, MD
    3 days ago
  •  ...Senior Cybersecurity Engineer The Senior Cybersecurity Engineer serves as a subject matter expert in ensuring system security compliance and risk management throughout the program...  ...Proficiency: Expert knowledge of XACTA, Splunk, and DIA's Risk Management Framework (... 
    Splunk
    Full time
    Interim role
    Flexible hours

    MDA Edge

    Annapolis, MD
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Security Content Engineer - Splunk. Be the first to apply!