Splunk and Splunk SOAR Security Engineer

Mindlance

  • Taylor, TX
  • 9 days ago
  • Remote

    Highlights

    The role also includes troubleshooting data ingestion issues, supporting upgrades and patching, and working with the broader security engineering team to align Splunk/SOAR use cases with ***'s detection and response priorities, and service delivery workflows. ***'s Security team is seeking a contract security engineer to take on day-to-day administration, engineering, and operational support for our Splunk Enterprise and Splunk SOAR environments.

    Numbers & Facts

    LocationTaylor, TX (
    Remote
    )

    Description

    Fully Remote
    Hourly Billing Rate: ***-***

    Job Description:


    ***'s Security team is seeking a contract security engineer to take on day-to-day administration, engineering, and operational support for our Splunk Enterprise and Splunk SOAR environments.


    Responsibilities


    The contractor will manage and maintain the Splunk Enterprise environment, including data onboarding, index and source type management, search head and indexer health, and performance tuning. On the SOAR side, they'll build and maintain playbooks, manage app/connector integrations, and support automation of playbooks across the broader security stack. The role also includes troubleshooting data ingestion issues, supporting upgrades and patching, and working with the broader security engineering team to align Splunk/SOAR use cases with ***'s detection and response priorities, and service delivery workflows. Documentation of architecture, playbooks, and standard operating procedures will be expected to support knowledge transfer.



    Required qualifications


    3+ years hands-on experience administering Splunk Enterprise (indexers, search heads, forwarders, data onboarding)


    Direct experience building and maintaining Splunk SOAR playbooks


    Direct experience integrating Splunk/SOAR with endpoint, vulnerability, or other security tool


    Experience with REST API-based integrations


    Experience troubleshooting issues related to API, network, authentication and other integrations


    Strong SPL skills, including correlation searches, dashboard/report development, and system health monitoring



    Preferred qualifications


    Splunk certifications (Core Certified Power User, Certified Admin, or SOAR-specific certs)


    Scripting experience (Python, PowerShell) to support custom SOAR app development or automation


    Familiarity with security operations workflows: infrastructure build pipelines, alert triage, incident response, threat detection engineering



    EDUCATION


    Bachelor's Degree: Cyber Security, Computer Science, MIS, or related discipline (Preferred)


    or a combination of education and experience that provides equivalent knowledge to a major in such fields is required



    Shift: []

    Start: []

    EEO:

    Mindlance is an Equal Opportunity Employer and does not discriminate in employment on the basis of Minority/Gender/Disability/Religion/LGBTQI/Age/Veterans.