More jobs:
Splunk Enterprise Security Engineer
Job in
Irving, Dallas County, Texas, 75084, USA
Listed on 2026-03-11
Listing for:
Mastech Digital
Full Time
position Listed on 2026-03-11
Job specializations:
-
IT/Tech
Cybersecurity, Security Manager
Job Description & How to Apply Below
Title:
Senior Splunk Enterprise Security Engineer
Duration:
Long term
Location:
Irving ,TX
(ONLY W2)
Job Description:Key Responsibilities
- Lead end-to-end administration of Splunk Enterprise Security in AWS/Azure/GCP
- Perform capacity planning, performance tuning, and platform upgrades
- Manage indexers, search heads, forwarders, deployment servers, and clustering
- Develop and optimize correlation searches, notable events, dashboards, and workflows
- Implement risk-based alerting, asset & identity correlation, and threat intelligence integrations
- Onboard new log sources and ensure CIM compliance
- Monitor platform health (search performance, indexing, license usage, forwarder connectivity)
- Support PCI DSS, SOX, and NIST CSF reporting and audit requirements
- Create runbooks, SOPs, and operational documentation
- Act as escalation point for complex Splunk issues and support incident response
- Evaluate Splunk apps, add-ons, and SOAR integrations
- 5+ years of hands‑on Splunk administration with strong Splunk ES experience
- Active Splunk Enterprise Certified Admin and/or Splunk ES Certified Admin
- Experience managing Splunk in cloud environments (AWS, Azure, or GCP)
- Deep knowledge of SIEM operations, log management, and event correlation
- Experience with Splunk infrastructure components (indexers, search heads, forwarders, clustering)
- Knowledge of PCI DSS, SOX, and NIST CSF frameworks
- Strong communication and stakeholder collaboration skills
- Experience in large-scale retail or high‑transaction environments
- Familiarity with Splunk SOAR (Phantom)
- Background in SOC operations, detection engineering, or threat hunting
- Certifications:
CISSP, GCIA, GCIH, AWS Security Specialty, AZ-500 - Experience with Infrastructure as Code for Splunk deployments
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×