16 часов назад
Splunk / Cribl Engineer (Cybersecurity Engineering)
84 500 - 162 000$
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Splunk / Cribl Engineer (Cybersecurity Engineering): Building and optimizing security data pipelines, data models, and SIEM integrations with an accent on telemetry normalization, data lineage, and query-optimized storage. Focus on connecting distributed security data sources, automating metrics, validating pipeline integrity, and improving analytics for security operations.
Location: Hybrid in North Chicago, Illinois, United States
Salary: $84,500–$162,000 per year
Company
develops medicines and healthcare solutions across areas including immunology, oncology, neuroscience, and aesthetics.
What you will do
- Design, implement, and enhance streaming and batch data pipelines using message brokers for SIEM and analytics platforms.
- Route, filter, normalize, and harmonize structured and unstructured security telemetry before SIEM ingestion.
- Build scalable data models and optimize schemas, storage, indexing, and retrieval across data warehouses and security data lakes.
- Integrate security telemetry sources with SIEM platforms, data warehouses, and other repositories through code and APIs.
- Validate data integrity and lineage, test and debug pipeline routing, and document data flows and integration protocols.
- Develop analytics environments, governance standards, retention procedures, and automated security metrics reporting.
Requirements
- Bachelor’s degree with 5 years of experience, or master’s degree with 4 years of experience.
- Advanced experience writing and optimizing Splunk Search Processing Language, administering Splunk Enterprise, and onboarding data sources.
- Experience developing SIEM data models, dictionaries, reports, and configurable data pipelines.
- Knowledge of regular expressions, unstructured-data parsing, database management systems, query languages, table relationships, and views.
- Experience validating datasets and calculations, integrating databases and systems, and working with CI/CD pipelines and Git.
- Ability to work independently and collaboratively in a changing environment.
Nice to have
- Splunk or Cribl certifications, including Splunk Certified Admin, Power User, Architect, or Cribl Certified User, Admin Stream, or Engineer.
- Experience with Agile teams, cybersecurity, privacy principles, threats, vulnerabilities, or ETL in SIEM environments such as ELK, Splunk, or Exabeam.
- Experience with Python, PowerShell, or Go for development and scripting.
- Experience analyzing large datasets to identify patterns, anomalies, and outliers.
- Cloud certifications such as Amazon Solutions Architect, Azure Data Engineer Associate, or Professional Data Engineer.
Culture & Benefits
- Paid vacation, holidays, and sick leave.
- Medical, dental, and vision insurance for eligible employees.
- 401(k) benefits for eligible employees.
- Eligibility to participate in short-term incentive programs.
- Work within a cybersecurity engineering team supporting security operations and business protection.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
4 дня назад
Staff Security Operations Engineer (Cybersecurity)
128 000 - 200 000$
4 дня назад
Senior Cyber Threat Analyst (Cybersecurity)
110 000 - 160 000$
4 дня назад
Senior Data Loss Prevention (DLP) Architect & Engineer (Cybersecurity)
110 000 - 160 000$
4 дня назад
Sr Active Defense Engineer (Cybersecurity)
159 600 - 239 400$
1 день назад
Security Engineer, Public Sector
164 000 - 342 000$
5 дней назад
Senior Engineer II- Information Security Systems (Cybersecurity)
70 304 - 205 000$