2

Remote Splunk Engineer Jobs in Killingworth, CT (NOW HIRING)

Vancord is seeking a Senior Security Engineer to serve as our SOC Lead. This is primarily a leadership position within the Security Operations Center; in addition, it is a role that safeguards our ...

Remote Splunk Engineer information

What are the typical daily responsibilities of a remote Splunk engineer?

A Remote Splunk Engineer typically manages Splunk deployments, ingests and normalizes data from various sources, and creates dashboards and alerts to support security and operational teams. Daily tasks often include troubleshooting log sources, optimizing search queries, maintaining system health, and collaborating with IT security, DevOps, or infrastructure teams to meet business objectives. Regular communication with stakeholders is also important to understand monitoring needs and proactively address incidents or gaps in visibility. Most remote Splunk engineers use virtual collaboration tools and ticketing systems to organize work and ensure seamless team integration, even from a distance.

What is a remote Splunk engineer?

A Remote Splunk Engineer is responsible for designing, implementing, and managing Splunk solutions while working remotely. They configure data ingestion, create dashboards, optimize system performance, and troubleshoot issues to ensure effective log management and security monitoring. This role often involves working with security teams, DevOps, or IT operations to analyze system performance and detect anomalies. Strong knowledge of Splunk architecture, search queries, and scripting is essential.

What are the key skills and qualifications needed to thrive in the remote Splunk engineer position?

To thrive as a Remote Splunk Engineer, you need expertise in Splunk architecture, log management, data analysis, and scripting or automation, typically supported by a degree in computer science or a related field. Familiarity with Splunk Enterprise, Splunk Cloud, ITSI, and certifications like Splunk Certified Power User or Admin are highly valued. Strong problem-solving skills, effective communication, and self-motivation are essential soft skills for remote collaboration and troubleshooting. These qualifications enable you to efficiently implement security monitoring, deliver actionable insights, and support distributed teams in diverse technical environments.

What cities near Killingworth, CT are hiring for Remote Splunk Engineer jobs?

Cities near Killingworth, CT with the most Remote Splunk Engineer job openings:

Senior Security Engineer

Vancord

Glastonbury, CT • Remote

$95K - $145K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Re-posted 23 days ago


Job description

Vancord is seeking a Senior Security Engineer to serve as our SOC Lead. This is primarily a leadership position within the Security Operations Center; in addition, it is a role that safeguards our customers, protects our reputation, and upholds the trust that countless organizations place in Vancord every single day.

This person will balance technical depth and client success. You will guide our security analyst team, help engineer our detection strategies, shape our response posture, and represent the very best of Vancord’s operational security excellence.

Key Responsibilities

  • Operations & Technical Execution

  • Lead, mentor, and uplift a team of SOC analysts whose work directly protects customers.

  • Serve as the senior escalation point for complex investigations, high-severity incidents, and real-time decision making.

  • Develop training, playbooks, and performance goals to ensure analysts thrive.

  • Refine and maintain detection and response workflows in tools such as Elastic Security, Microsoft Defender XDR, Microsoft Sentinel, CrowdStrike Falcon, and Torq (SOAR).

  • Design and maintain the telemetry pipelines, normalization workflows, and automation triggers that power our SOC.

  • Be a mentor to the analyst group.

  • Customer Success & Relationship Management

  • Serve as a point of contact for escalations and customer communications during major incidents. Excellent customer relations & communication skills are a must.

  • Partner with the strategic consulting team and customer success teams to ensure client needs are met and exceeded.

  • Represent the SOC internally and externally, championing best practices, emerging threats, and the importance of strong telemetry hygiene.

  • Present SOC metrics, incident summaries, and operational improvements to customers in a clear, executive-ready format.

  • Strategic Contributions

  • Contribute to SOC2 compliance and internal process maturity.

  • Provide feedback to Product and Engineering teams to improve Vancord’s Vantage MDR.

  • Stay ahead of emerging threats, industry best practices, and technology evolutions.

Required Qualifications

  • 5+ years of experience in a SOC, Incident Response, or security observability environment.

  • 3+ years of senior-level technical experience guiding analysts, leading investigations, or operating as a technical lead.

  • Strong knowledge of SIEM, EDR, SOAR, and security telemetry (Elastic, Sentinel, Defender, CrowdStrike, SentinelOne, etc.).

  • Demonstrated ability to lead and mentor technical teams.

  • Strong communication skills, with the ability to present to executives and customers under pressure.

  • Experience building runbooks, playbooks, or process documentation.

  • Experience managing vulnerabilities, threat intelligence, and emerging threats.

  • Experience using programming languages such as Python to automate security tasks.

  • A strong understanding of data pipelines, normalization, and security observability.

Preferred Qualifications

  • Advanced Detection & Telemetry Engineering: Expertise designing large-scale detection architectures, authoring advanced correlation logic, building ECS-aligned pipelines, and operating SIEM/EDR platforms such as Elastic, Defender, Sentinel, and CrowdStrike.

  • Automation & Tooling Mastery: Proven ability to engineer SOC automation through SOAR platforms and Python-based tooling, including enrichment pipelines, ETL workflows, and data-stream integrations that measurably reduce manual workload and MTTR.

  • Threat Intelligence, Threat Hunting & Incident Command: Deep experience conducting structured hunts, developing threat intelligence-driven detections, and leading major incident response events with clear executive communication and real-time decision making.

  • Security Architecture & MSSP/MDR Experience: Strong understanding of cloud, endpoint, and identity telemetry; experience operating in high-velocity MSSP/MDR environments; and familiarity with SOC2/ISO/NIST frameworks, customer communications, and operational maturity programs.

Company Description

About Vancord

Founded in 2005, Vancord is a full-service Managed Service and Cyber Security Provider headquartered in the Northeastern United States. Vancord successfully combines the power of execution, strategy, and partnership to deliver multi-faceted Information Technology and Cyber Security services to our valued customers. We build strong partnerships with startups, manufacturers, higher education, state and municipal governments, and other diverse organizations.