Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
JobTailor Logo

See all jobs on JobTailor

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Booker DiMaio

IT Security SIEM Engineer – Splunk Experience Required

Booker DiMaio

IT Security SIEM Engineer with strong hands-on experience in Splunk Enterprise required. Hybrid role based in New York City, requiring 3 days onsite and 2 remote.

Posted 7/23/2026contractNew York City • New York • 🇺🇸 United StatesMid-LevelSeniorWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in administering Splunk Enterprise and Splunk Cloud environments, developing dashboards and alerts for security monitoring, and automating processes using PowerShell, Python, or Bash. Strong analytical skills and experience in incident response and endpoint security are essential for enhancing cybersecurity capabilities.

Highest-signal resume keywords
Splunk Enterprise AdministrationLog Onboarding and SIEM Detection RulesScripting and Automation (PowerShell, Python, Bash)Endpoint Detection and Response (EDR)Incident Response and Threat Detection

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Splunk Cloud AdministrationDashboard DevelopmentLog AnalysisSecurity MonitoringAutomation ScriptingVulnerability RemediationPatch ValidationSecurity Configuration ManagementIncident ResponseThreat Detection
Soft Skills
Analytical SkillsTroubleshooting Skills
Tools & Technologies
PowerShellPythonBashIDS/IPSHost-Based Security Tools
Industry Keywords
CybersecurityCompliance ReportingSecurity DocumentationNYC Government Experience

Tech Stack

Tools & technologies
CloudCyber SecurityPythonSplunk

About the role

Key responsibilities & impact
  • Engineer, administer, and support Splunk Enterprise and/or Splunk Cloud environments.
  • Develop Splunk dashboards, reports, alerts, searches, and detection logic for security monitoring and operations.
  • Onboard, normalize, and analyze logs from applications, databases, networks, cloud platforms, and endpoints.
  • Investigate security events and support incident response, threat detection, and security monitoring activities.
  • Develop automation scripts using PowerShell, Python, and/or Bash to improve operational efficiency.
  • Support endpoint security, vulnerability remediation, patch validation, and security configuration management.
  • Monitor infrastructure, network, and security logs while supporting compliance reporting, audits, and security documentation.
  • Collaborate with security, infrastructure, and operations teams to improve enterprise cybersecurity capabilities.

Requirements

What you’ll need
  • Strong hands-on experience administering Splunk Enterprise and/or Splunk Cloud
  • Experience onboarding log sources and developing SIEM detection rules, dashboards, alerts, and reporting
  • Experience with enterprise logging across application, database, network, cloud, and endpoint environments
  • Experience with scripting and automation using PowerShell, Python, and/or Bash
  • Experience with endpoint detection and response (EDR) and endpoint security technologies
  • Knowledge of incident response, threat detection, log correlation, and security operations
  • Experience with IDS/IPS, host-based security tools, and enterprise security monitoring
  • Strong analytical and troubleshooting skills
  • Experience supporting NYC government is highly preferred,
  • Candidates must be within a commutable distance to New York City (10038)

Benefits

Comp & perks
  • Ability to work a hybrid schedule of 3 days/week onsite and 2 remote
  • Access to the Veteran Institute for Procurement (VIP) Program