Senior Splunk Security Engineer
Job in
New York, New York County, New York, 10261, USA
Listed on 2026-07-26
Listing for:
NYC IT Inc
Full Time
position Listed on 2026-07-26
Job specializations:
-
IT/Tech
Cybersecurity, Security Management & Operations, Network Security
Job Description & How to Apply Below
We are seeking a Senior Splunk Security Engineer with 7+ years of experience supporting enterprise cybersecurity environments. The ideal candidate will have strong hands‑on experience with Splunk Enterprise and/or Splunk Cloud
, SIEM engineering, security operations, threat detection, scripting, automation, endpoint security, and incident response.
- Administer and support Splunk Enterprise/Cloud environments, including Search Heads, Indexers, Deployers, Deployment Servers, Heavy/Universal Forwarders, and Splunk applications.
- Onboard and normalize application, database, network, cloud, and endpoint log sources.
- Develop and maintain Splunk dashboards, reports, alerts, searches, and threat detection use cases.
- Monitor security events, analyze logs, investigate incidents, and support SOC operations and incident response.
- Develop automation using Power Shell, Python, and Bash to improve operational efficiency, reporting, and security processes.
- Support endpoint security, including EDR, endpoint hardening, vulnerability remediation, patch validation, and compliance reporting.
- Monitor firewall and network security logs, support user access reviews, audits, security documentation, architecture diagrams, POAM tracking, and remediation validation.
- Strong 7+ years of experience with Splunk Enterprise and/or Splunk Cloud
. - Experience onboarding log sources and developing detection logic.
- Knowledge of enterprise logging, including application, web, database, security, and endpoint logs.
- Experience with Power Shell, Python, and Bash scripting.
- Experience with Endpoint Detection & Response (EDR) tools.
- Knowledge of incident response procedures.
- Understanding of log correlation and threat detection techniques.
- Experience with IDS/IPS and host-based security tools.
- Strong analytical, problem-solving, verbal, and written communication skills.
- Splunk Enterprise Certified Admin or Architect.
- CISSP, CEH, GCIH, Security+, or equivalent cybersecurity certifications.
- Business
Hours:
Monday - Friday, 9:00 AM - 5:00 PM - Work Week:
35 hours per week
, including a one-hour unpaid lunch break - Work Arrangement:
Hybrid (3 days onsite, 2 days remote). Applicants must reside in New York (NY) or New Jersey (NJ).
Position Requirements
10+ Years
work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×