Назад
Company hidden
16 часов назад

Splunk / Cribl Engineer (Cybersecurity Engineering)

84 500 - 162 000$
Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Splunk / Cribl Engineer (Cybersecurity Engineering): Building and optimizing security data pipelines, data models, and SIEM integrations with an accent on telemetry normalization, data lineage, and query-optimized storage. Focus on connecting distributed security data sources, automating metrics, validating pipeline integrity, and improving analytics for security operations.

Location: Hybrid in North Chicago, Illinois, United States

Salary: $84,500–$162,000 per year

Company

hirify.global develops medicines and healthcare solutions across areas including immunology, oncology, neuroscience, and aesthetics.

What you will do

  • Design, implement, and enhance streaming and batch data pipelines using message brokers for SIEM and analytics platforms.
  • Route, filter, normalize, and harmonize structured and unstructured security telemetry before SIEM ingestion.
  • Build scalable data models and optimize schemas, storage, indexing, and retrieval across data warehouses and security data lakes.
  • Integrate security telemetry sources with SIEM platforms, data warehouses, and other repositories through code and APIs.
  • Validate data integrity and lineage, test and debug pipeline routing, and document data flows and integration protocols.
  • Develop analytics environments, governance standards, retention procedures, and automated security metrics reporting.

Requirements

  • Bachelor’s degree with 5 years of experience, or master’s degree with 4 years of experience.
  • Advanced experience writing and optimizing Splunk Search Processing Language, administering Splunk Enterprise, and onboarding data sources.
  • Experience developing SIEM data models, dictionaries, reports, and configurable data pipelines.
  • Knowledge of regular expressions, unstructured-data parsing, database management systems, query languages, table relationships, and views.
  • Experience validating datasets and calculations, integrating databases and systems, and working with CI/CD pipelines and Git.
  • Ability to work independently and collaboratively in a changing environment.

Nice to have

  • Splunk or Cribl certifications, including Splunk Certified Admin, Power User, Architect, or Cribl Certified User, Admin Stream, or Engineer.
  • Experience with Agile teams, cybersecurity, privacy principles, threats, vulnerabilities, or ETL in SIEM environments such as ELK, Splunk, or Exabeam.
  • Experience with Python, PowerShell, or Go for development and scripting.
  • Experience analyzing large datasets to identify patterns, anomalies, and outliers.
  • Cloud certifications such as Amazon Solutions Architect, Azure Data Engineer Associate, or Professional Data Engineer.

Culture & Benefits

  • Paid vacation, holidays, and sick leave.
  • Medical, dental, and vision insurance for eligible employees.
  • 401(k) benefits for eligible employees.
  • Eligibility to participate in short-term incentive programs.
  • Work within a cybersecurity engineering team supporting security operations and business protection.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →