Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Security Content Engineer - Splunk

BlueVoyant

BlueVoyant is looking for a Security Operations Center Security Content Engineer to help our global customers manage their Splunk cloud security solutions. You will be part of a fast-paced team that helps customers to efficiently and effectively derive security insights through generating detection logic, automation and visualizations. This position is fully remote. Key Responsibilities Ideate and create client-facing detections to surface security and IT operations concerns Collaborate with clients to design and implement visualizations to assist clients with understanding security posture, interesting events, and operations metrics Assist clients with testing and tuning detection logic to minimize false positives, alert duplication, and whitelisting Identify opportunities for client-specific needs to become base content for all MSS, including rules, automations, and dashboards Assist integration teams in identifying opportunities for log content reduction and removal of irrelevant events Deliver functional value resulting from research in the form of queries, signatures, rules, and contextual information (knowledge base articles) Serve as a Technical SOC SME in support to customers (customer facing) and support to sales and marketing Supplemental in-depth research of exploits and vulnerabilities which have a high likelihood of occurring within BlueVoyant customer environments Assist in the advancement of security policies, procedures, and automation Serve as the technical escalation point and mentor for junior detection engineers and Sentinel support staff Regularly communicate with customer IT teams to inform them of issues, help them remediate, and ensure that they continue to operate business as usual Assist with advancing security standard operating procedures and incident response reporting. Qualifications Excellent teamwork skills Previous signature writing / algorithm creation experience Ability to analyze event logs and recognize signs of cyber intrusions/attacks Hands-on experience with Microsoft Azure Sentinel, Defender ATP, O365 ATP, and other Microsoft security suites. Hands-on experience with Microsoft Threat Protection suite of security solutions (Defender ATP, Azure ATP, Office 365 ATP, Microsoft Cloud Application Security), Azure Active Directory, Azure Security Center, Azure Log Analytics, and M365 suite of solutions. Hands-on experience for the following: Develop, automate, and orchestrate tasks (playbooks) with logic apps based on certain events Ability to advise customers on the Microsoft Cloud Security capabilities across the Azure platform. Strong experience with scripting languages (Python, PowerShell, others) Strong experience with digital forensic analysis (host, network, other) and blue team operations Strong knowledge and understanding of network protocols and devices. Ability to work directly with customers to understand requirements for and feedback on security services Advanced written and verbal communication skills and the ability to present complex technical topics in clear and easy-to-understand language Strong teamwork and interpersonal skills, including the ability to work effectively with a globally distributed team Skilled in the creation of signatures for security tools Familiarity with tools such as Wireshark, TCP Dump, Security Onion, and Splunk Strong knowledge of the following: SIEM Packet Analysis SSL Decryption

HIDS/NIDS

Network Monitoring Tools Case Management System Knowledge Base Web Security Gateway Email Security Anti-Virus Network Access Control Encryption Vulnerability Identification Preferred Qualifications Experience in intrusion analysis, digital forensics, penetration testing, detection engineering or related areas 7+ years of experience in information technology or information security, 4 of which were spent dealing directly with SIEM solutions and detection content creation Microsoft 365 Certified: Security Administrator Associate and GCFA, GCFE, or OSCP preferred Familiarity with Azure, .Net programming, jupyter notebooks, and scripting / development using web APIs Education Minimum bachelor’s degree in Information Security, Computer Science, or other IT-related field or equivalent experience About BlueVoyant At BlueVoyant, we recognize that effective cyber security requires active prevention and defense across both your organization and supply chain. Our proprietary data, analytics, and technology, coupled with deep expertise, works as a force multiplier to secure your full ecosystem. Accuracy! Actionability! Timeliness! Scalability! Led by CEO, Jim Rosenthal, BlueVoyant’s highly skilled team includes former government cyber officials with extensive frontline experience in responding to advanced cyber threats on behalf of the National Security Agency, Federal Bureau of Investigation, Unit 8200, and GCHQ, together with private sector experts. BlueVoyant services utilize large real-time datasets with industry leading analytics and technologies. Founded in 2017 by Fortune 500 executives, including Executive Chairman, Tom Glocer, and former Government cyber officials, BlueVoyant is headquartered in New York City and has offices in Maryland, Tel Aviv, San Francisco, London, Budapest, and Latin America. All employees must be authorized to work in the United States. BlueVoyant provides equal employment opportunities to all employees and applicants for employment without regard to race, color, religion, sex, national origin, age, disability or genetics. In addition to federal law requirements, BlueVoyant complies with applicable state and local laws governing non-discrimination in employment in every location in which the company has facilities. Disclaimer: Please note that pursuant to contractual requirements and applicable law, in order for employees to perform work on some of the company’s federal contracts, U.S. citizenship is required. Accordingly, an employee’s ability to perform work on such contracts is contingent upon the company’s verification of the employee’s citizenship status. Furthermore, individuals may be subject to additional background checks and fingerprinting. Seniority level Mid-Senior level Employment type Full-time Job function Information Technology and Engineering Industries Computer and Network Security #J-18808-Ljbffr BlueVoyant

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Security Content Engineer - Splunk in Annapolis, MD vacancy
  • $225k - $235k

    Endpoint Security Engineer (Annapolis Junction, MD) Active TS/SCI w/Polygraph REQUIRED Please do not apply if you do not currently possess this...  ...with SIEM systems for log analysis and correlation (e.g., Splunk, Elastic, Microsoft Sentinel). Scripting and Automation: Proficient... 
    Splunk
    Full time
    Immediate start
    Remote work

    Shield Consulting Solutions

    Annapolis, MD
    1 day ago
  •  ...when needed. Description: We are seeking a Security Engineer to design, develop, and maintain enterprise security audit and...  .... The ideal candidate will have strong experience using Splunk to visualize security events, compliance posture, and potential... 
    Splunk
    Full time
    Contract work
    Temporary work
    Work experience placement
    Immediate start

    Unisity LLC

    Annapolis, MD
    1 day ago
  •  ...The Information Systems Security Engineer shall perform, or review, technical security assessments...  ...on completeness and compliance of its content. Knowledge of 8570 controls, testing...  ...Knowledge of SIEM technologies such as Splunk and creation of security event related... 
    Splunk
    Immediate start

    SW Complete

    Annapolis, MD
    3 days ago
  • A Service-Disabled Veteran Owned Business in Maryland seeks a Security Engineer to design, develop, and maintain Splunk dashboards for security monitoring. This position requires strong proficiency with audit data collection and compliance, particularly in regulated environments... 
    Splunk
    Contract work

    Unisity, LLC

    Annapolis, MD
    4 days ago
  •  ...2612 Standard Title: Required Security Clearance: Top Secret/SCI with Full Scope...  ...motivated Information Systems Security Engineer (ISSE) to join our team. Our ISSEs play...  ...Security tools such as ACAS, Nessus, Tenable, Splunk, Wireshark, HBSS, McAfee ePO ~... 
    Splunk
    Hourly pay
    Contract work
    Temporary work
    Immediate start
    Flexible hours
    Shift work

    Base2 Solutions

    Annapolis, MD
    4 days ago
  • $125.12k - $187.68k

     ...nation's most mission-critical facilities, secure environments, complex infrastructure,...  ...power and technology solutions through engineering expertise and smart systems integration....  ...including Host Based Security System (HBSS), Splunk, and Microsoft Defender for Endpoints.... 
    Splunk

    M.C. Dean, Inc.

    Annapolis, MD
    2 days ago
  • $92.3k - $166.85k

     ...networking, authentication, and system security. Coach and review the work of lower‑level...  ...monitoring platforms, such as Security Onion or Splunk. Worked with Red Hat Identity Management...  ...while working effectively with engineers and customers. Ability to handle and prioritize... 
    Splunk
    Immediate start
    Flexible hours

    Fairygodboss

    Annapolis, MD
    4 days ago
  • Shieldconsulting, based in Annapolis, Maryland, is seeking a Software Engineer requiring an active TS/SCI clearance with a polygraph. The ideal candidate will have 12 years of experience in software development with expertise in Angular and RxJS. Benefits include 25 days... 
    Full time
    Immediate start

    Shieldconsulting

    Annapolis, MD
    3 days ago
  • Description The Security Tools Integration Specialist is responsible for the deployment,...  ...Tenable (Nessus Manager & Security Center) Splunk Enterprise Apache NiFi SNORT / Network...  ...A Bachelor’s degree in System Engineering, Computer Science, Information Systems,... 
    Splunk

    Cyberesi Cg

    Annapolis, MD
    20 hours ago
  •  ...Development: JDK 1.8 and 11, MDC, Filters, Loggers, Concurrency, Security, JPA, JUnit, etc. Spring Projects: MVC, Boot, WebFlux, Cloud,...  ...with Agile methodologies. Preferred: Swagger and OpenAPI Splunk Excel, PowerPoint Clearance: Active IRS MBI (Minimum Background... 
    Splunk
    For contractors
    Local area
    Relocation

    6AM City, LLC

    Annapolis, MD
    20 hours ago
  •  ...Consulting, LLC today. Responsibilities Reverse‑engineer and document all existing EAIB...  ...tracing, and Prometheus metrics. Establish secure authentication/authorization using OAuth2...  ...; AWS, Prometheus, Grafana, AppDynamics, Splunk, and Fluent Bit. Join the team at Barrow... 
    Splunk
    Contract work
    Remote work

    EmergencyMD

    Annapolis, MD
    4 days ago
  •  ...solutions throughout the U.S. National Security community. Headquartered in McLean, Virginia...  ...events. Experience with Elastic/Splunk/ or other Security Information and Event...  ...find a way to get things done. Join our team of experts as we engineer national security!
    Splunk
    Worldwide

    Altamira Technologies

    Annapolis, MD
    2 days ago
  • $185k - $205k

    Erias Ventures, LLC in Annapolis, Maryland, is seeking a Software Engineer to develop capabilities for automated security evaluation processes. The role involves building Python-based REST endpoints and microservices, alongside database management. Candidates must have... 

    Erias Ventures, LLC

    Annapolis, MD
    4 days ago
  •  ...solutions throughout the U.S. National Security community. Headquartered in McLean, Virginia...  ...events. Experience with Elastic/Splunk/ or other Security Information and Event...  ...find a way to get things done. Join our team of experts as we engineer national security!
    Splunk
    Remote work
    Worldwide

    Altamira Technologies

    Annapolis, MD
    1 day ago
  •  ...seeking a highly experienced Cyber Systems Engineering Manager to lead and oversee enterprise...  ...a Public Trust or higher federal security clearance. Preferred Qualifications: Master...  ...databases Hadoop, Spark, Elasticsearch Splunk or other SIEM platforms ETL tools and data... 
    Splunk
    Contract work

    Peraton

    Annapolis, MD
    2 days ago
  • $134.1k - $241.4k

     ...is looking for a Cyber Threat Analyst with in-depth knowledge of Secure Internet Protocol Router Network (SIPRNet) environments and...  ...fingerprinting, and identifying atypical events. Experience with Elastic/Splunk or other Security Information and Event Management (SIEM).... 
    Splunk
    Flexible hours

    Parsons Company

    Annapolis, MD
    2 days ago
  • $134.1k - $241.4k

     ...' experience working in the areas of intelligence, information security, network forensics or insider threat. Ability to understand...  ...fingerprinting, and identifying atypical events. Experience with Elastic/Splunk/ or other Security Information and Event Management (SIEM)... 
    Splunk
    Flexible hours

    Parsons Company

    Annapolis, MD
    2 days ago
  • $7.5k

     ...patterns, or anomaly correlations utilizing security-relevant data. Recommends proactive...  ...Cisco, Linux, Microsoft, Python, Red Hat, Splunk, Kibana, Advanced Cyber Defense Course,...  ...cybersecurity, data science and software engineering services and products to customers in... 
    Splunk
    Work experience placement
    Immediate start
    Flexible hours

    RealmOne

    Annapolis, MD
    1 day ago
  •  ...have extensive knowledge of cybersecurity engineering, risk management, and systems...  ...Compliance Assessment Solution (ACAS), Security Content Automation Protocol (SCAP), and Security...  ...Event Management (SIEM) tools, such as Splunk Identity and Access Management (IAM) solutions... 
    Splunk

    SPS - Systems Products Solutions, Inc.

    Annapolis, MD
    3 days ago
  •  ...Reflexive Concepts is seeking a skilled Application Engineer IV to join our team! Qualifications: Eight (8) years of experience...  ...Duties and Responsibilities: Maintain and enhance existing Splunk effort of the Data Analytics, Tools, and Infrastructure team.... 
    Splunk

    Reflexive Concepts

    Annapolis, MD
    1 day ago
  • $87.7k - $164k

    Within Information Security we blend risk strategy, digital identity, cyber defense, application...  ...Computer Science, Information Systems, Engineering or a related field 5+ years experience...  ...Experience with SIEM technologies (i.e. Splunk) Deep understanding of both Windows and... 
    Splunk
    Summer holiday
    Local area
    Flexible hours

    Ernst & Young Oman

    Annapolis, MD
    20 hours ago
  • $140k - $265k

     ...requirements, United States citizenship and an active TS/SCI security clearance and polygraph are required for the position. Required...  ...Science, Information Assurance, Information Security System Engineering, or a related discipline. DoD 8570 compliance with IASAE Level... 
    Contract work
    Temporary work
    Immediate start

    Constellation Technologies, Inc

    Annapolis, MD
    1 day ago
  • $86.9k - $198k

     ...analysis. The role requires TS/SCI clearance and a Bachelor’s degree, with responsibilities including reverse engineering and using AI to enhance system security. Comprehensive benefits and competitive salary ranging from $86,900 to $198,000 are offered. #J-18808-Ljbffr... 
    Remote job

    Booz Allen Hamilton

    Annapolis, MD
    2 days ago
  • $71.2k - $158.2k

     ...Job Description The Senior Federal Information Systems Security Engineer (ISSE) serves as a technical integrator responsible for ensuring that system-to-system connections across federal boundaries are properly documented, approved, and compliant with all required cybersecurity... 
    Contract work
    Temporary work
    Work experience placement
    Relocation
    Flexible hours

    Oracle

    Annapolis, MD
    1 day ago
  •  ...Experts, LLC is seeking a High-Performance Computing (HPC) Systems Engineer to support complex system design and diagnostics. The ideal...  ...understanding of system architectures and leverage monitoring tools like Splunk to identify and solve hardware issues. Applicants must have... 
    Splunk

    Trexllc

    Annapolis, MD
    2 days ago
  •  ...Department of War. You will work with government and engineering teams to develop automated dashboards using tools like Splunk and PowerBI. Candidates should have experience...  ...continuous monitoring efforts and possess a security clearance. This role combines technical... 
    Splunk

    Leidos

    Annapolis, MD
    20 hours ago
  •  ...Network Security Engineer Annapolis, MD 12+ months Mandatory Qualifications: Associate degree in an Information...  ...Detection and Prevention with Palo Alto networks. o Content Filtering Palo Alto networks. o Virtual Private... 

    West Advanced Technologies

    Annapolis, MD
    4 days ago
  •  ...Role: Network Security Engineer Location: Annapolis, MD, 21401 - Hybrid (3 days onsite/week) Duration: Long term Rate:...  ...Intrusion Detection and Prevention with Palo Alto networks. (3) Content Filtering Palo Alto networks. (4) Virtual Private Networks... 
    3 days per week

    Damco Solutions

    Annapolis, MD
    20 hours ago
  • $150k - $250k

     ...need to thrive - in our offices or yours. Job Summary The Security Engineer - Google collaborates with account and specialty teams to...  ...firewalls, Anti-DDOS Protection, Threat Management Protection, Content Filtering, Ingress/Egress management) - Intermediate... 
    Work experience placement
    Work at office
    Remote work
    Worldwide
    Flexible hours

    SHI GmbH

    Annapolis, MD
    1 day ago
  • $78.9k - $123.3k

     ...highly technical professionals with a strong foundation in network architecture, design, and security - individuals who are ready to step up from traditional network engineering roles to take ownership of strategic, architecture-level responsibilities. Ideal candidates... 
    Permanent employment
    Full time
    Contract work
    Part time
    Local area
    Remote work

    Noblis

    Annapolis, MD
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Security Content Engineer - Splunk. Be the first to apply!