Job Description & How to Apply Below
Role
Title:
Splunk SIEM Engineer
Duration: contract to run until 30/11/2026
Location:
Knutsford. Hybrid, 3 days per week onsite
Rate: up to £587.33 p/d Umbrella inside IR35
Role purpose / summaryJoin us as Splunk SIEM Engineer where you must design, develop and improve software, utilizing various engineering methodologies, that provides business, platform, and technology capabilities for our customers and colleagues.
Responsibilities & Qualifications- Minimum Qualification - bachelor's degree
- Multi‑Platform SIEM Expertise:
Proven experience with Splunk Enterprise Security, Microsoft Sentinel, and SIEM architecture including data models, correlation rules, and administrative functions. - Security Operations:
Strong analytical skills in threat detection, incident response, and security event analysis with experience in large enterprise environments (10,000+ endpoints). - Data Pipeline Management:
Hands‑on experience with log ingestion, data routing, and transformation using tools like Cribl, plus understanding of data normalisation and parsing in Splunk Enterprise. - SOAR & Automation:
Experience with Security Orchestration platforms, playbook development, and automated response workflows for incident management. - Network Security Fundamentals:
Working knowledge of network architectures, firewalls, proxies, and common attack vectors with troubleshooting expertise. - Communication & Documentation:
Excellent technical writing and communication skills to create runbooks, procedures, and translate complex security concepts for diverse audiences.
- Cloud Security & Modern Infrastructure:
Proficiency with AWS/Azure cloud security, containerised environments, and SaaS‑based security solutions. - Programming & Scripting:
Advanced skills in Python, Power Shell, KQL, SPL, and SQL for automation, custom integrations, and advanced analytics development. - Security
Certifications:
Professional certifications such as CISSP, GCIH, GCFA, Splunk Certified Architect, or Microsoft Sentinel Ninja. - Extended Security Stack:
Experience with EDR, UBA, CASB, CSPM, vulnerability assessment tools, and threat intelligence platforms. - Infrastructure as Code:
Experience with Chef, Ansible, Jenkins, Git Lab CI/CD for automated security tool deployment and configuration management. - Compliance & Governance:
Knowledge of regulatory frameworks (SOX, PCI‑DSS, GDPR) and hands‑on incident response/forensics experience.
All profiles will be reviewed against the required skills and experience. Due to the high number of applications we will only be able to respond to successful applicants in the first instance. We thank you for your interest and the time taken to apply!
#J-18808-LjbffrNote that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
Search for further Jobs Here:
×