... Engineer who can develop custom detection content (correlation rules) identify threat activity ... Design, manage, and maintain enterprise SIEM infrastructure to improve data ingestion processes ...
Quick apply
... Engineer who can develop custom detection content (correlation rules) identify threat activity ... Design, manage, and maintain enterprise SIEM infrastructure to improve data ingestion processes ...
Quick apply
... Engineer who can develop custom detection content (correlation rules) identify threat activity ... Design, manage, and maintain enterprise SIEM infrastructure to improve data ingestion processes ...
Position Title: Junior Content Developer Location: Redstone Arsenal Position Type: Full-Time ... Experience with Cybersecurity SIEM (Splunk, Elastic) * Experience with Microsoft Power Platforms ...
Position Title: Junior Content Developer Location: Redstone Arsenal Position Type: Full-Time ... Experience with Cybersecurity SIEM (Splunk, Elastic) * Experience with Microsoft Power Platforms ...
Configure, maintain, and optimize SIEM content including correlation rules, alerts, dashboards, and reports * Analyze security events and log data to identify suspicious activity, support ...
Configure, maintain, and optimize SIEM content including correlation rules, alerts, dashboards, and reports * Analyze security events and log data to identify suspicious activity, support ...
Arlington, VA · On-site
The Splunk Content Developer will install and maintain Splunk infrastructure, gatherrequirements ... SIEM) platforms * Extensive experience with advanced configuration of Splunk including Indexer ...
Arlington, VA · On-site
The Splunk Content Developer will install and maintain Splunk infrastructure, gatherrequirements ... SIEM) platforms * Extensive experience with advanced configuration of Splunk including Indexer ...
Arlington, VA · On-site
The Splunk Content Developer SME will install and maintain Splunk infrastructure, gather ... SIEM) platforms * Extensive experience with advanced configuration of Splunk including Indexer ...
Arlington, VA · On-site
The Splunk Content Developer SME will install and maintain Splunk infrastructure, gather ... SIEM) platforms * Extensive experience with advanced configuration of Splunk including Indexer ...
Atlanta, GA · Remote
$118K - $123K/yr
Splunk Content Developer-Atlanta, GA Required Education: Bachelor's Degree in Information ... Ability to interact with end users to gather requirements, optimize existing SIEM processes and ...
Atlanta, GA · Remote
$118K - $123K/yr
Splunk Content Developer-Atlanta, GA Required Education: Bachelor's Degree in Information ... Ability to interact with end users to gather requirements, optimize existing SIEM processes and ...
The Splunk Content Developer SME will install and maintain Splunk infrastructure ... SIEM) platforms * Extensive experience with advanced configuration of Splunk including Indexer ...
The Splunk Content Developer SME will install and maintain Splunk infrastructure ... SIEM) platforms * Extensive experience with advanced configuration of Splunk including Indexer ...
We are seeking a skilled Splunk SIEM Engineer to lead the evolution of our Splunk environment into ... Manage the lifecycle of security content: * Continuously refine detections and correlation rules
We are seeking a skilled Splunk SIEM Engineer to lead the evolution of our Splunk environment into ... Manage the lifecycle of security content: * Continuously refine detections and correlation rules
Crane, IN · On-site
We are seeking a skilled Splunk SIEM Engineer to lead the evolution of our Splunk environment into ... Manage the lifecycle of security content: * Continuously refine detections and correlation rules
Crane, IN · On-site
We are seeking a skilled Splunk SIEM Engineer to lead the evolution of our Splunk environment into ... Manage the lifecycle of security content: * Continuously refine detections and correlation rules
Atlanta, GA · On-site
$118K - $123K/yr
Splunk Content Developer-Atlanta, GA Required Education: Bachelor's Degree in Information ... Ability to interact with end users to gather requirements, optimize existing SIEM processes and ...
Atlanta, GA · On-site
$118K - $123K/yr
Splunk Content Developer-Atlanta, GA Required Education: Bachelor's Degree in Information ... Ability to interact with end users to gather requirements, optimize existing SIEM processes and ...
Crane, IN · On-site
We are seeking a skilled Splunk SIEM Engineer to lead the evolution of our Splunk environment into ... Manage the lifecycle of security content: * Continuously refine detections and correlation rules
Quick apply
Crane, IN · On-site
We are seeking a skilled Splunk SIEM Engineer to lead the evolution of our Splunk environment into ... Manage the lifecycle of security content: * Continuously refine detections and correlation rules
Baltimore, MD · Remote
Configure, maintain, and optimize SIEM content including correlation rules, alerts, dashboards, and reports * Analyze security events and log data to identify suspicious activity, support ...
Baltimore, MD · Remote
Configure, maintain, and optimize SIEM content including correlation rules, alerts, dashboards, and reports * Analyze security events and log data to identify suspicious activity, support ...
Washington, DC · Remote
Configure, maintain, and optimize SIEM content including correlation rules, alerts, dashboards, and reports * Analyze security events and log data to identify suspicious activity, support ...
Washington, DC · Remote
Configure, maintain, and optimize SIEM content including correlation rules, alerts, dashboards, and reports * Analyze security events and log data to identify suspicious activity, support ...
Rosslyn, VA · Remote
Configure, maintain, and optimize SIEM content including correlation rules, alerts, dashboards, and reports * Analyze security events and log data to identify suspicious activity, support ...
Rosslyn, VA · Remote
Configure, maintain, and optimize SIEM content including correlation rules, alerts, dashboards, and reports * Analyze security events and log data to identify suspicious activity, support ...
$69K - $90K/yr
PeopleTec is currently seeking a Junior Content Developer to support our Huntsville, AL location ... Cybersecurity SIEM (Splunk, Elastic) * Microsoft Power Platform (PowerBI, Power App, Power Automate)
$69K - $90K/yr
PeopleTec is currently seeking a Junior Content Developer to support our Huntsville, AL location ... Cybersecurity SIEM (Splunk, Elastic) * Microsoft Power Platform (PowerBI, Power App, Power Automate)
Huntsville, AL · On-site
$69K - $90K/yr
Opportunity PeopleTec is currently seeking a Junior Content Developer to support our Huntsville, AL ... Cybersecurity SIEM (Splunk, Elastic) * Microsoft Power Platform (PowerBI, Power App, Power Automate)
Huntsville, AL · On-site
$69K - $90K/yr
Opportunity PeopleTec is currently seeking a Junior Content Developer to support our Huntsville, AL ... Cybersecurity SIEM (Splunk, Elastic) * Microsoft Power Platform (PowerBI, Power App, Power Automate)
Huntsville, AL · On-site
$69K - $90K/yr
Opportunity PeopleTec is currently seeking a Junior Content Developer to support our Huntsville, AL ... Cybersecurity SIEM (Splunk, Elastic) * Microsoft Power Platform (PowerBI, Power App, Power Automate)
Huntsville, AL · On-site
$69K - $90K/yr
Opportunity PeopleTec is currently seeking a Junior Content Developer to support our Huntsville, AL ... Cybersecurity SIEM (Splunk, Elastic) * Microsoft Power Platform (PowerBI, Power App, Power Automate)
Ashburn, VA · On-site
$131K - $237K/yr
The Cyber Systems Engineer - Splunk Content Developer is responsible for designing, engineering ... Management (SIEM) platform using advanced Search Processing Language (SPL), data models, and ...
Ashburn, VA · On-site
$131K - $237K/yr
The Cyber Systems Engineer - Splunk Content Developer is responsible for designing, engineering ... Management (SIEM) platform using advanced Search Processing Language (SPL), data models, and ...
$131K - $237K/yr
The Cyber Systems Engineer - Splunk Content Developer is responsible for designing, engineering ... Management (SIEM) platform using advanced Search Processing Language (SPL), data models, and ...
$131K - $237K/yr
The Cyber Systems Engineer - Splunk Content Developer is responsible for designing, engineering ... Management (SIEM) platform using advanced Search Processing Language (SPL), data models, and ...
Atlanta, GA · Remote
$118K - $123K/yr
Splunk Content Developer-Atlanta, GA Required Education: Bachelor's Degree in Information ... Ability to interact with end users to gather requirements, optimize existing SIEM processes and ...
Atlanta, GA · Remote
$118K - $123K/yr
Splunk Content Developer-Atlanta, GA Required Education: Bachelor's Degree in Information ... Ability to interact with end users to gather requirements, optimize existing SIEM processes and ...
$29.5K - $38.5K
2% of jobs
$38.5K - $47.6K
1% of jobs
$47.6K - $56.6K
1% of jobs
$56.6K - $65.7K
2% of jobs
$65.7K - $74.7K
2% of jobs
$74.7K - $83.8K
2% of jobs
$83.8K - $92.8K
1% of jobs
$92.8K - $101.9K
1% of jobs
$101.9K - $110.9K
1% of jobs
$110.9K - $120K
1% of jobs
$121K is the 25th percentile. Wages below this are outliers.
$120K - $129K
85% of jobs
$29.5K
$116.6K
$129K
Siem Content Developers typically spend their days creating and refining detection rules, correlation searches, and security alerts within SIEM platforms to identify suspicious activities. They work closely with security analysts to understand emerging threats, tune existing content for accuracy, and research new attack techniques to ensure early detection. Regular responsibilities also include analyzing security logs, testing and documenting new rules, and collaborating with IT or incident response teams to translate business risk into technical controls. This collaborative and analytical environment helps foster ongoing professional development and deeper expertise in threat detection.
A successful Siem Content Developer possesses strong cybersecurity expertise, experience with SIEM platforms (such as Splunk, IBM QRadar, or ArcSight), and the ability to write detection rules and correlation logic. Familiarity with scripting languages, threat intelligence sources, and relevant certifications like CISSP or CompTIA Security+ are highly valuable. Excellent problem-solving, collaboration, and communication skills help developers work effectively with security teams and stakeholders. These competencies ensure the development of accurate, actionable detection content, keeping organizations protected from evolving cyber threats.
A SIEM Content Developer is responsible for designing, creating, and optimizing security information and event management (SIEM) content such as correlation rules, dashboards, alerts, and reports. Their role involves analyzing security events, identifying threats, and enhancing detection capabilities. They work closely with security analysts and engineers to fine-tune SIEM configurations, improve threat detection, and reduce false positives. This role requires expertise in log analysis, threat intelligence, and scripting to customize SIEM solutions for an organization's security needs.

Full-time
Posted 11 days ago
Kinzo Staffing is seeking a Splunk Enterprise Security Engineer who can develop custom detection content (correlation rules) identify threat activity. This includes developing notable events, visualizations, forms, reports, alerts, as well as Splunk Apps, Technology Add-ons, and normalize data sources to the Common Information Model. The candidate will provide optimization of data flow using aggregation, filters, etc. The Splunk Engineer will provide overall engineering, and administration in supporting a very large distributed clustered Splunk environment consisting of search heads, indexers, deployers, deployment servers, heavy/universal forwarders and Splunk Enterprise Security app, spanning security, performance, and operational roles. The Engineer should be proficient with recognizing and onboarding new data sources into Splunk, analyzing the data for anomalies and trends, and building dashboards highlighting the key trends of the data. The Splunk engineer should be proficient within a Linux environment, editing and maintaining Splunk configuration files and apps.
What you will do:
Qualifications:Required Qualifications:
Preferred Qualifications: