Haystack
← Back to Jobs
Technology
SC

Splunk SOAR Security Engineer

SGS ConsultingTaylor, TX🇺🇸United StatesPosted 18 Aug 2026

Quick Overview

Work Type
Hybrid
Level
Mid Senior

Job Description

Job Description:

Security team is seeking a contract security engineer to take on day-to-day administration, engineering, and operational support for our Splunk Enterprise and Splunk SOAR environments.

Responsibilities

The contractor will manage and maintain the Splunk Enterprise environment, including data onboarding, index and source type management, search head and indexer health, and performance tuning. On the SOAR side, they'll build and maintain playbooks, manage app/connector integrations, and support automation of playbooks across the broader security stack. The role also includes troubleshooting data ingestion issues, supporting upgrades and patching, and working with the broader security engineering team to align Splunk/SOAR use cases with detection and response priorities, and service delivery workflows. Documentation of architecture, playbooks, and standard operating procedures will be expected to support knowledge transfer.

Required qualifications

  • 3+ years hands-on experience administering Splunk Enterprise (indexers, search heads, forwarders, data onboarding)
  • Direct experience building and maintaining Splunk SOAR playbooks
  • Direct experience integrating Splunk/SOAR with endpoint, vulnerability, or other security tool
  • Experience with REST API-based integrations
  • Experience troubleshooting issues related to API, network, authentication and other integrations
  • Strong SPL skills, including correlation searches, dashboard/report development, and system health monitoring

Preferred qualifications

  • Splunk certifications (Core Certified Power User, Certified Admin, or SOAR-specific certs)
  • Scripting experience (Python, PowerShell) to support custom SOAR app development or automation
  • Familiarity with security operations workflows: infrastructure build pipelines, alert triage, incident response, threat detection engineering

EDUCATION

  • Bachelor's Degree: Cyber Security, Computer Science, MIS, or related discipline (Preferred)
  • or a combination of education and experience that provides equivalent knowledge to a major in such fields is required

Skills

Splunk
PowerShell
Python
REST

Similar jobs