Splunk Engineer
Listed on 2026-02-16
-
IT/Tech
Cybersecurity, Security Manager, Data Security, Systems Engineer
Splunk Engineer (Cloud / AI / Security)
* Location:
* Remote in Texas (Preference for Austin area)
* Type:
* 8month contract
* with strong potential to extend or convert to full-time
* * Interview Process:
* 1-2 rounds total
Top Skills We're Looking For
* * Senior**-level Splunk Engineering* - Designing, building, and owning Splunk alerts, dashboards, reports, and SIEM use cases in a security-focused environment
* * AI & Automation in Security* - Experience automating threat detection techniques and workflows (e.g., integrating with tools like Microsoft Copilot, creating reactive alerts, scripting, or orchestration)
* * Cloud Security in AWS* - Hands-on security work in AWS (Azure is nice to have but not mandatory) with strong understanding of multi-cloud security architecture
* * Security Architecture & Frameworks* - Deep familiarity with NIST, ISO 27001, and modern enterprise security best practices
* * Strong Communication & Collaboration* - Able to work closely with SOC, threat hunters, and leadership in a small, highly visible team
Role Overview We're partnering with a
* large Texas state agency
* that is rapidly modernizing its environment and expanding further into the cloud. They are looking for a
* Splunk Engineer
* who can serve as the primary Splunk expert on a small, high-impact security team.
In this role, you will:
* Own Splunk engineering, data ingest, index health, dashboards, and executive reporting
* Work closely with a Threat Hunter to
* automate threat techniques in Splunk
* and develop
* reactive alerts
* * Help integrate
* Microsoft Copilot
* and natural language querying into the security monitoring ecosystem
* Design and implement cloud and AI security controls that protect sensitive data and critical workloads
This is a great opportunity for a Senior engineer who enjoys both hands-on technical work and partnering closely with security leadership.
What You'll Be Doing
* Splunk & SIEM Engineering
* * Manage data ingest, index health, and Splunk infrastructure performance
* Create and tune alerts, correlation searches, dashboards, and executive reports
* Add/modify Splunk alerts to triage notables using TTPs and threat intelligence
* Troubleshoot Splunk issues and drive continuous improvement of detections and visibility
* Cloud & AI Security
* * Design, implement, and manage security controls for public cloud platforms (primarily
* AWS*, with exposure to Azure a plus)
* Secure AI/ML systems including model dev environments, training pipelines, APIs, and inference services
* Implement cloud security tooling (e.g., CSPM, CWPP, CIEM, container security, API security)
* Collaborate with engineering, Dev Ops, data science, and AI teams to embed security into CI/CD and MLOps workflows (Dev Sec Ops / MLOps)
* Security Architecture & Risk Management
* * Design and implement security measures to protect cloud-stored data (auth, encryption, ACLs, IDS/IPS, firewalls, etc.)
* Conduct security architecture reviews, threat modeling, and risk assessments for cloud and AI initiatives
* Monitor environments for security events, investigate alerts, and support incident response activities
* Conduct forensic investigations on cyberattacks to determine root cause and future prevention
* Create, review, and update security policies and standards for public/private/hybrid cloud contexts
Required Experience & Qualifications
* Must-Haves (8+ Years):
* * Proven experience in
* security architecture
* and delivering secure solutions aligned with business and regulatory requirements
* Strong background in
* cloud security*, including:
* Protecting data on public cloud platforms from unauthorized access
* Implementing secure authentication, encryption, access controls, IDS/IPS, firewalls, etc.
* Hands-on experience with
* multi-cloud security architectures* (infrastructure, tools, and cloud-based application security)
* Experience consulting and engineering
* security best practices
* across an organization
* Deep understanding of
* cloud security risks*: data breaches, broken authentication, account hijacking, malicious insiders, third parties, APTs, data loss, DoS, etc.
* Strong
* threat analysis
* skills and ability to design solutions to…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).