Splunk SIEM Engineer
Quick Overview
Job Description
Onsite at Richmond, VA
In person Interview
Key Responsibilities
Threat Detection & Monitoring: Continuously monitor network traffic, endpoint logs, and cloud security events for anomalous behavior and potential security incidents.
Splunk Management: Create, maintain, and tune Splunk correlation searches, alerts, and dashboards to minimize false positives and improve detection capabilities.
Incident Response: Investigate potential security incidents, follow forensic evidence, and collaborate with IT and network teams to remediate threats.
Use Case Development: Develop and refine detection and response playbooks based on threat intelligence and frameworks like MITRE ATT&CK.
Log Integration: Work with infrastructure teams to onboard new data sources, ensuring log integrity, parsing, and normalization across the SIEM platform.
Compliance & Reporting: Support audit readiness by collecting SIEM control evidence and generating compliance reports aligned with internal policies and standards
Similar jobs
Drilling Engineer
bp · Houston, United States
18 minutes agoSales Engineer
Yellowstone Local · Westchester, United States
1 hour ago$100k - $250k/yrApplications Engineer I
Goodwin Recruiting · Agawam, United States
1 hour ago€39/hrSystems Engineering Acquisition Logistics Specialist
BOOZ, ALLEN & HAMILTON, INC. · El Segundo, United States
1 hour ago$86.8k - $198k/yrFIRE PROTECTION ENGINEER
Naval Sea Systems Command · Springfield, United States
1 hour ago$191.8k/yrFIRE PROTECTION ENGINEER
Naval Sea Systems Command · Bowie, United States
1 hour ago$191.8k/yr