Haystack
← Back to Jobs
Engineering

Splunk SIEM Engineer

Skywalk GlobalRichmond, VA🇺🇸United StatesPosted 4 Aug 2026

Quick Overview

Work Type
On Site
Level
Mid Senior

Job Description

Onsite at Richmond, VA

In person Interview

Key Responsibilities

Threat Detection & Monitoring: Continuously monitor network traffic, endpoint logs, and cloud security events for anomalous behavior and potential security incidents.

Splunk Management: Create, maintain, and tune Splunk correlation searches, alerts, and dashboards to minimize false positives and improve detection capabilities.

Incident Response: Investigate potential security incidents, follow forensic evidence, and collaborate with IT and network teams to remediate threats.

Use Case Development: Develop and refine detection and response playbooks based on threat intelligence and frameworks like MITRE ATT&CK.

Log Integration: Work with infrastructure teams to onboard new data sources, ensuring log integrity, parsing, and normalization across the SIEM platform.

Compliance & Reporting: Support audit readiness by collecting SIEM control evidence and generating compliance reports aligned with internal policies and standards

Similar jobs