About the Job Venatore is seeking a Splunk SOAR Engineer to support U.S. Central Command (USCENTCOM) operations by designing, implementing, and optimizing enterprise-level Security Orchestration ...
About the Job Venatore is seeking a Splunk SOAR Engineer to support U.S. Central Command (USCENTCOM) operations by designing, implementing, and optimizing enterprise-level Security Orchestration ...
Splunk SOAR Engineer
Tampa, FL · On-site
The Splunk SOAR Engineer will lead the full lifecycle of platform architecture, integration ... Adhere to security best practices and compliance requirements within the operational environment.
Quick apply
Splunk SOAR Engineer
Tampa, FL · On-site
The Splunk SOAR Engineer will lead the full lifecycle of platform architecture, integration ... Adhere to security best practices and compliance requirements within the operational environment.
The CTC Lead Engineer, IT Security, is a primary member of the CTC and serves as a Splunk subject matter expert responsible for the design, development, creation, and maintenance of advanced Splunk ...
The CTC Lead Engineer, IT Security, is a primary member of the CTC and serves as a Splunk subject matter expert responsible for the design, development, creation, and maintenance of advanced Splunk ...
The CTC Lead Engineer, IT Security, is a primary member of the CTC and serves as a Splunk subject matter expert responsible for the design, development, creation, and maintenance of advanced Splunk ...
The CTC Lead Engineer, IT Security, is a primary member of the CTC and serves as a Splunk subject matter expert responsible for the design, development, creation, and maintenance of advanced Splunk ...
AI Security Engineer Specialist
Miami, FL · On-site
AI Security Engineer Specialist North Point Technology is seeking an experienced AI Security ... Create dashboards and reporting tools using Microsoft Sentinel, Splunk, and related platforms
Quick apply
AI Security Engineer Specialist
Miami, FL · On-site
AI Security Engineer Specialist North Point Technology is seeking an experienced AI Security ... Create dashboards and reporting tools using Microsoft Sentinel, Splunk, and related platforms
Security Engineer
Miami, FL · On-site
Proven experience as a Security Engineer with hands-on expertise in logging pipelines, data lakes or SIEM (platforms such as Splunk, ELK, Sentinel, S3/Athena or similar tools) and SOAR automation.
Security Engineer
Miami, FL · On-site
Proven experience as a Security Engineer with hands-on expertise in logging pipelines, data lakes or SIEM (platforms such as Splunk, ELK, Sentinel, S3/Athena or similar tools) and SOAR automation.
Job Summary The Information Systems Security Engineer is responsible for designing, implementing ... Experience with security tools such as ACAS, Nessus, SCC, and Splunk. * Knowledge of system ...
Quick apply
Job Summary The Information Systems Security Engineer is responsible for designing, implementing ... Experience with security tools such as ACAS, Nessus, SCC, and Splunk. * Knowledge of system ...
Security Observability Engineer Job Overview We are seeking an experienced Security Observability ... The role emphasizes secure data delivery, advanced SIEM coverage, Splunk expertise, data reduction ...
Security Observability Engineer Job Overview We are seeking an experienced Security Observability ... The role emphasizes secure data delivery, advanced SIEM coverage, Splunk expertise, data reduction ...
Security Observability Engineer Job Overview We are seeking an experienced Security Observability ... The role emphasizes secure data delivery, advanced SIEM coverage, Splunk expertise, data reduction ...
Security Observability Engineer Job Overview We are seeking an experienced Security Observability ... The role emphasizes secure data delivery, advanced SIEM coverage, Splunk expertise, data reduction ...
Accenture Federal Services is seeking an experienced Cloud Information Systems Security Engineer ... Advanced certifications such as CISSP, Splunk Enterprise Certified Architect/Admin, AWS Certified ...
Accenture Federal Services is seeking an experienced Cloud Information Systems Security Engineer ... Advanced certifications such as CISSP, Splunk Enterprise Certified Architect/Admin, AWS Certified ...
Sr. Security Engineer (SIEM) - Vice President
Tampa, FL · Hybrid
$108K - $148K/yr
MUFG is seeking a highly motivated Sr. Security Engineer Subject Matter Expert (SME) to improve the ... Maintain the current customer managed Splunk infrastructure * Support log onboarding and alert ...
Sr. Security Engineer (SIEM) - Vice President
Tampa, FL · Hybrid
$108K - $148K/yr
MUFG is seeking a highly motivated Sr. Security Engineer Subject Matter Expert (SME) to improve the ... Maintain the current customer managed Splunk infrastructure * Support log onboarding and alert ...
SITEC - Splunk Engineer - MacDill AFB
Tampa, FL · On-site
$86K - $138K/yr
Active Splunk Enterprise Security Certified Admin or Splunk Certified Developer certifications ... Experience using Python or Bash for automation of Splunk administrative tasks and API integrations.
SITEC - Splunk Engineer - MacDill AFB
Tampa, FL · On-site
$86K - $138K/yr
Active Splunk Enterprise Security Certified Admin or Splunk Certified Developer certifications ... Experience using Python or Bash for automation of Splunk administrative tasks and API integrations.
Security Operations Center Cloud Engineer
Coral Gables, FL · On-site +1
$165/hr
Ensure AWS and Azure log sources are properly ingested into the SIEM (e.g., Splunk) and normalized ... AWS Certified Security - Specialty, Azure Security Engineer Associate, GCIH, GCIA, GCFA.
Security Operations Center Cloud Engineer
Coral Gables, FL · On-site +1
$165/hr
Ensure AWS and Azure log sources are properly ingested into the SIEM (e.g., Splunk) and normalized ... AWS Certified Security - Specialty, Azure Security Engineer Associate, GCIH, GCIA, GCFA.
Security Operations Center Cloud Engineer
Coral Gables, FL · On-site
$165/hr
Ensure AWS and Azure log sources are properly ingested into the SIEM (e.g., Splunk) and normalized ... AWS Certified Security - Specialty, Azure Security Engineer Associate, GCIH, GCIA, GCFA.
Security Operations Center Cloud Engineer
Coral Gables, FL · On-site
$165/hr
Ensure AWS and Azure log sources are properly ingested into the SIEM (e.g., Splunk) and normalized ... AWS Certified Security - Specialty, Azure Security Engineer Associate, GCIH, GCIA, GCFA.
Sr Cloud Infrastructure and Security Engineer
New Port Richey, FL · On-site
$128K/yr
Role: Sr Cloud Infrastructure and Security Engineer Location : New Port Richey. FL (Hybrid ... such as Splunk, ELK stack, or Cloud-native services. Vulnerability Management: Conduct ...
Sr Cloud Infrastructure and Security Engineer
New Port Richey, FL · On-site
$128K/yr
Role: Sr Cloud Infrastructure and Security Engineer Location : New Port Richey. FL (Hybrid ... such as Splunk, ELK stack, or Cloud-native services. Vulnerability Management: Conduct ...
AI Security Engineer Specialist
Miami, FL · On-site
The AI Security Engineer Specialist is a highly motivated and technically proficient Security AI ... Creates dashboards and reporting tools (e.g., Splunk, Sentinel) that reflect AI-enhanced threat ...
AI Security Engineer Specialist
Miami, FL · On-site
The AI Security Engineer Specialist is a highly motivated and technically proficient Security AI ... Creates dashboards and reporting tools (e.g., Splunk, Sentinel) that reflect AI-enhanced threat ...
The AI Security Engineer Specialist is a highly motivated and technically proficient Security AI ... Creates dashboards and reporting tools (e.g., Splunk, Sentinel) that reflect AI-enhanced threat ...
The AI Security Engineer Specialist is a highly motivated and technically proficient Security AI ... Creates dashboards and reporting tools (e.g., Splunk, Sentinel) that reflect AI-enhanced threat ...
Information Systems Security Engineer
Tampa, FL · Hybrid
$110K - $170K/yr
BCubed Engineering, an Auria company, is looking to hire an Information Systems Security Engineer ... Hands-on experience with security tools such as ACAS, Nessus, SCC, Splunk, etc. * Knowledge of ...
Information Systems Security Engineer
Tampa, FL · Hybrid
$110K - $170K/yr
BCubed Engineering, an Auria company, is looking to hire an Information Systems Security Engineer ... Hands-on experience with security tools such as ACAS, Nessus, SCC, Splunk, etc. * Knowledge of ...
... experienced Security Observability Engineer. The role focuses on leading the migration ... coverage, Splunk expertise, data reduction strategies, and robust load balancing and high ...
... experienced Security Observability Engineer. The role focuses on leading the migration ... coverage, Splunk expertise, data reduction strategies, and robust load balancing and high ...
Senior Cybersecurity Engineer Splunk Location: Irving, TX/ Jacksonville, FL /Onsite Position type ... Enterprise Security. • 5-8 years of experience • Expertise in log onboarding, parsing ...
New
Senior Cybersecurity Engineer Splunk Location: Irving, TX/ Jacksonville, FL /Onsite Position type ... Enterprise Security. • 5-8 years of experience • Expertise in log onboarding, parsing ...
New
Contractual Splunk Security Engineer information
What is the difference between Contractual Splunk Security Engineer vs Contractual Security Analyst?
| Aspect | Contractual Splunk Security Engineer | Contractual Security Analyst |
|---|---|---|
| Certifications | Splunk Certified Security Intelligence Professional, CISSP (preferred) | CompTIA Security+, GIAC Security Essentials (GSEC) |
| Work Environment | Focus on Splunk platform deployment, configuration, and security monitoring | Broader security monitoring, incident response, and risk assessment |
| Industry Usage | Primarily in cybersecurity teams utilizing Splunk for SIEM | Across various industries for security operations and analysis |
| Search & Comparison Intent | Understanding specialized Splunk security roles | General security monitoring roles |
The Contractual Splunk Security Engineer specializes in deploying and managing Splunk for security purposes, requiring specific certifications and technical expertise. In contrast, the Contractual Security Analyst performs broader security monitoring and incident response tasks, often with different certifications. Both roles are vital in cybersecurity but differ in focus and technical scope.
Other
Medical, Dental, Vision, Retirement, PTO
Re-posted 5 days ago
Job description
Venatore is a woman-owned small business headquartered in Tampa, Florida, providing mission-driven technology and professional services to federal defense and civilian agencies. We deliver expertise in information technology, engineering, logistics, and program support to help our clients achieve operational excellence and mission success. About the Job
Venatore is seeking a Splunk SOAR Engineer to support U.S. Central Command (USCENTCOM) operations by designing, implementing, and optimizing enterprise-level Security Orchestration, Automation, and Response (SOAR) capabilities. This role is responsible for transforming manual incident response processes into scalable, automated workflows that accelerate threat detection, containment, and remediation. The Splunk SOAR Engineer will lead the full lifecycle of platform architecture, integration, content development, and performance optimization while collaborating closely with SOC analysts, threat hunters, and incident response teams. An active TS/SCI clearance is required. Responsibilities Platform Architecture & Engineering * Design, deploy, document, and maintain distributed Splunk SOAR (Phantom) platform architecture to ensure high availability, scalability, and performance.
* Support system upgrades, patching, and performance tuning across the SOAR infrastructure.
* Provide advanced troubleshooting and resolution of platform issues and playbook execution errors.
* Adhere to security best practices and compliance requirements within the operational environment.
Playbook Development & Automation * Develop, customize, and maintain complex SOAR playbooks using Python and the Phantom Playbook Editor for automated enrichment, triage, containment, and remediation of security incidents (e.g., phishing, malware, unauthorized access).
* Translate manual security procedures into robust, automated workflows aligned with SecOps best practices.
* Establish and track automation metrics, including utilization rates, automation coverage, and Mean Time to Respond (MTTR) improvements.
Integration & Interoperability * Integrate Splunk SOAR with Splunk Enterprise Security (ES) and other core security technologies, including EDR/XDR platforms, firewalls, vulnerability scanners, threat intelligence platforms, and ticketing systems.
* Develop custom apps and integrations to connect proprietary or unsupported security tools using RESTful APIs and custom connectors.
* Manage and optimize data flow between Splunk ES and Splunk SOAR to ensure effective event-triggered automation actions.
Collaboration & Documentation * Partner with SOC analysts, threat hunters, and incident response teams to gather requirements and document workflows.
* Develop and maintain detailed technical documentation for platform configurations, integrations, and automation content.
* Provide training and mentorship to SOC staff on SOAR usage, content development, and automation best practices.
* Evaluate and integrate emerging security technologies and threat intelligence feeds into the automation ecosystem.
Required Qualifications * Active TS/SCI security clearance.
* U.S. citizenship.
* Applicable DoD 8140 or DoD 8570 certification.
* 8+ years of related experience in security engineering or security operations.
* Hands-on expertise with Splunk SOAR (Phantom) administration, configuration, and maintenance in a distributed enterprise environment.
* Advanced proficiency in Python scripting for playbook development, custom apps, and integrations.
* Proven experience integrating SOAR platforms with Splunk Enterprise Security (ES), SIEMs, EDR/XDR tools, and other security technologies.
* Strong understanding of security operations principles, incident response lifecycles, and threat detection methodologies.
* Experience working with RESTful APIs and developing tool connectors.
* Proficiency in data manipulation, log parsing, and understanding of the Common Information Model (CIM) in a security context.
* Strong verbal and written communication skills with the ability to convey complex automation concepts to technical and non-technical audiences.
Preferred Qualifications * Familiarity with cloud security logging, containerization (Docker/Kubernetes), and CI/CD pipelines for playbook deployment.
* Knowledge of the MITRE ATT&CK framework and its application in automated detection and response use cases.
* Experience using Git or other version control systems for SOAR content management.
* Familiarity with network protocols, Windows and Linux operating systems, and enterprise security architecture components.
* Splunk Enterprise Security Certified Admin or Architect certification.
* Splunk SOAR (Phantom) Certified Content Developer or Administrator certification.
* Experience with other SOAR platforms (e.g., Palo Alto Cortex XSOAR, IBM Resilient).
* Experience supporting USCENTCOM or multi-domain defense security operations environments.
* ITIL 4 Foundation certification.
Benefits
Venatore offers a competitive benefits package designed to support the well-being of our employees, including: * Paid Time Off (PTO)
* 10 Federal Holidays
* 401(k) with company matching
* Medical, dental, and vision insurance
* Paid parental leave
* Paid military leave
Venatore is an equal opportunity employer and considers qualified applicants without regard to disability or protected veteran status.
About Venatôre
Sourced by ZipRecruiter
Industry
It services
Company size
11 - 50 Employees
Headquarters location
Tampa, FL, US
Year founded
2007