Key Responsibilities • End-to-End SIEM Pipeline Management & Optimization • Lead the migration of log sources from Splunk ingestion to Cribl Stream/Edge pipelines, ensuring load-balanced, fault ...
Key Responsibilities • End-to-End SIEM Pipeline Management & Optimization • Lead the migration of log sources from Splunk ingestion to Cribl Stream/Edge pipelines, ensuring load-balanced, fault ...
Senior Elastic Engineer (Scott AFB) with Security Clearance
Alden, IL · On-site
$190K - $230K/yr
Experience leading Splunk-to-Elastic migration projects. * Experience supporting SIEM, security logging, and enterprise observability platforms. * Familiarity with Kubernetes operators and ...
Senior Elastic Engineer (Scott AFB) with Security Clearance
Alden, IL · On-site
$190K - $230K/yr
Experience leading Splunk-to-Elastic migration projects. * Experience supporting SIEM, security logging, and enterprise observability platforms. * Familiarity with Kubernetes operators and ...
Key Responsibilities End-to-End SIEM Pipeline Management & Optimization Lead the migration of log sources from Splunk ingestion to Cribl Stream/Edge pipelines, ensuring load-balanced, fault-tolerant ...
Key Responsibilities End-to-End SIEM Pipeline Management & Optimization Lead the migration of log sources from Splunk ingestion to Cribl Stream/Edge pipelines, ensuring load-balanced, fault-tolerant ...
Okta Architect
Washington, DC · Remote
$160K - $190K/yr
Experience architecting SIEM integrations and monitoring pipelines. * Experience supporting IAM product roadmaps, dependency mapping, and migration planning. * Working knowledge of ICAM, HSPD-12 ...
Okta Architect
Washington, DC · Remote
$160K - $190K/yr
Experience architecting SIEM integrations and monitoring pipelines. * Experience supporting IAM product roadmaps, dependency mapping, and migration planning. * Working knowledge of ICAM, HSPD-12 ...
Onshore Sentinel Lead-Remote
$104K - $138K/yr
Georgia IT, Inc. is seeking an Onshore Sentinel Lead to manage the end-to-end migration and ... SIEM to Azure Sentinel • Good Knowledge on KQL & Creating Analytical Rules • Experience ...
Onshore Sentinel Lead-Remote
$104K - $138K/yr
Georgia IT, Inc. is seeking an Onshore Sentinel Lead to manage the end-to-end migration and ... SIEM to Azure Sentinel • Good Knowledge on KQL & Creating Analytical Rules • Experience ...
Senior Elastic Engineer (Scott AFB) with Security Clearance
Scott Air Force Base, IL · On-site
$190K - $230K/yr
Nice-to-Haves Experience leading Splunk-to-Elastic migration projects. Experience supporting SIEM, security logging, and enterprise observability platforms. Familiarity with Kubernetes operators and ...
Senior Elastic Engineer (Scott AFB) with Security Clearance
Scott Air Force Base, IL · On-site
$190K - $230K/yr
Nice-to-Haves Experience leading Splunk-to-Elastic migration projects. Experience supporting SIEM, security logging, and enterprise observability platforms. Familiarity with Kubernetes operators and ...
Microsegmentation Engineer
Irving, TX · On-site
VEN agents, SaaS policy engines, enforcement modes, migration considerations * Vendor engineering collaboration during live issues * Traffic & Telemetry Analysis * SIEM tools (Splunk), time‑based ...
Quick apply
Microsegmentation Engineer
Irving, TX · On-site
VEN agents, SaaS policy engines, enforcement modes, migration considerations * Vendor engineering collaboration during live issues * Traffic & Telemetry Analysis * SIEM tools (Splunk), time‑based ...
As an Engineer for Cortex XSIAM, you will be responsible for assisting with the log migration ... Be an SME for SIEM, Correlation and Log Source Ingestion • Recognize opportunities where ...
As an Engineer for Cortex XSIAM, you will be responsible for assisting with the log migration ... Be an SME for SIEM, Correlation and Log Source Ingestion • Recognize opportunities where ...
Identity & Access Management Architect
Palo Alto, CA · On-site
$78.19 - $103.41/hr
You will own the migration architecture end-to-end ? federation design, app integrations, cutover ... SIEM integration experience (log normalization, detection engineering for identity signals)
Quick apply
Identity & Access Management Architect
Palo Alto, CA · On-site
$78.19 - $103.41/hr
You will own the migration architecture end-to-end ? federation design, app integrations, cutover ... SIEM integration experience (log normalization, detection engineering for identity signals)
Senior Microsoft Intune Engineer (Endpoint Management) with Security Clearance
Fort George G Meade, MD · On-site
$115K - $158K/yr
Drive endpoint modernization efforts, including migration from MECM and traditional AD-joined ... Experience integrating endpoint management with SIEM/SOC platforms JCS Solutions (JCS) is a premier ...
Senior Microsoft Intune Engineer (Endpoint Management) with Security Clearance
Fort George G Meade, MD · On-site
$115K - $158K/yr
Drive endpoint modernization efforts, including migration from MECM and traditional AD-joined ... Experience integrating endpoint management with SIEM/SOC platforms JCS Solutions (JCS) is a premier ...
Senior Microsoft Intune Engineer (Endpoint Management)
Fort George G Meade, MD · On-site
$115K - $158K/yr
Drive endpoint modernization efforts, including migration from MECM and traditional AD-joined ... Experience integrating endpoint management with SIEM/SOC platforms JCS Solutions (JCS) is a premier ...
Senior Microsoft Intune Engineer (Endpoint Management)
Fort George G Meade, MD · On-site
$115K - $158K/yr
Drive endpoint modernization efforts, including migration from MECM and traditional AD-joined ... Experience integrating endpoint management with SIEM/SOC platforms JCS Solutions (JCS) is a premier ...
Senior Microsoft Intune Engineer (Endpoint Management)
Fort George G Meade, MD · On-site
$100K - $129K/yr
Drive endpoint modernization efforts, including migration from MECM and traditional AD-joined ... Experience integrating endpoint management with SIEM/SOC platforms JCS Solutions (JCS) is a premier ...
Quick apply
Senior Microsoft Intune Engineer (Endpoint Management)
Fort George G Meade, MD · On-site
$100K - $129K/yr
Drive endpoint modernization efforts, including migration from MECM and traditional AD-joined ... Experience integrating endpoint management with SIEM/SOC platforms JCS Solutions (JCS) is a premier ...
CyberArk Consultant with LEAD
Frisco, TX · On-site
Support migration from Centrify to CyberArk Core PAS. * Integrate Legacy IDM instances with ... Experience on integrating CyberArk solution with LDAP, SIEM SNMP and other identity management ...
Quick apply
CyberArk Consultant with LEAD
Frisco, TX · On-site
Support migration from Centrify to CyberArk Core PAS. * Integrate Legacy IDM instances with ... Experience on integrating CyberArk solution with LDAP, SIEM SNMP and other identity management ...
Principal Google Cloud Security Consultant
$127K - $212K/yr
Support SIEM modernization and migration planning, including log source rationalization, detection migration, alert tuning, and operational transition * Help customers move from fragmented monitoring ...
Principal Google Cloud Security Consultant
$127K - $212K/yr
Support SIEM modernization and migration planning, including log source rationalization, detection migration, alert tuning, and operational transition * Help customers move from fragmented monitoring ...
Splunk Engineer
Reston, VA · On-site
Provide Impact assessment for migration efforts. * Support Performance Testing and User Acceptance ... Experience in Security information and event management (SIEM) * Experience with RTIR
Splunk Engineer
Reston, VA · On-site
Provide Impact assessment for migration efforts. * Support Performance Testing and User Acceptance ... Experience in Security information and event management (SIEM) * Experience with RTIR
Splunk Engineer
Reston, VA · On-site
Provide Impact assessment for migration efforts. * Support Performance Testing and User Acceptance ... Experience in Security information and event management (SIEM) * Experience with RTIR
Splunk Engineer
Reston, VA · On-site
Provide Impact assessment for migration efforts. * Support Performance Testing and User Acceptance ... Experience in Security information and event management (SIEM) * Experience with RTIR
Technology Architect | Identity Management | Privileged User Management
Richardson, TX · On-site
$60.25 - $79.25/hr
The architect will own solution design, migration strategy, integration architecture, stakeholder ... Saviynt, SIEM integrations • REST APIs, PowerShell, automation and scripting • Azure, AWS ...
Technology Architect | Identity Management | Privileged User Management
Richardson, TX · On-site
$60.25 - $79.25/hr
The architect will own solution design, migration strategy, integration architecture, stakeholder ... Saviynt, SIEM integrations • REST APIs, PowerShell, automation and scripting • Azure, AWS ...
Senior Google Cloud Security Consultant
$109K - $182K/yr
Support SIEM modernization and migration planning, including log source rationalization, detection migration, alert tuning, and operational transition * Help customers move from fragmented monitoring ...
Senior Google Cloud Security Consultant
$109K - $182K/yr
Support SIEM modernization and migration planning, including log source rationalization, detection migration, alert tuning, and operational transition * Help customers move from fragmented monitoring ...
Senior Security Engineer - Threat Intelligence, Detection
Seattle, WA · On-site
$130K - $178K/yr
* Design, develop, and maintain high-fidelity detection rules in CrowdStrike NG-SIEM (LogScale/CQL ... Contribute to purple team exercises, tabletop scenarios, and platform migration readiness * Report ...
Senior Security Engineer - Threat Intelligence, Detection
Seattle, WA · On-site
$130K - $178K/yr
* Design, develop, and maintain high-fidelity detection rules in CrowdStrike NG-SIEM (LogScale/CQL ... Contribute to purple team exercises, tabletop scenarios, and platform migration readiness * Report ...
Information Technology_USA - USA_Engineer
Jacksonville, FL · On-site
$96K - $132K/yr
Define target-state architectures, migration strategies, and transformation roadmaps aligned with ... Support integration with SOC, SIEM, SOAR, and security operations workflows where applicable ...
Information Technology_USA - USA_Engineer
Jacksonville, FL · On-site
$96K - $132K/yr
Define target-state architectures, migration strategies, and transformation roadmaps aligned with ... Support integration with SOC, SIEM, SOAR, and security operations workflows where applicable ...
Siem Migration information
See salary details
$5.29 - $17.92
0% of jobs
$17.92 - $30.55
0% of jobs
$40.66 is the 25th percentile. Wages below this are outliers.
$30.55 - $43.18
31% of jobs
$43.18 - $55.81
17% of jobs
$55.81 - $68.44
1% of jobs
The median wage is $68.88 / hr.
$68.44 - $81.08
30% of jobs
$81.08 - $93.71
11% of jobs
$93.71 - $106.34
8% of jobs
$106.34 - $118.97
0% of jobs
$118.97 - $131.60
0% of jobs
$131.60 - $144.23
1% of jobs
$5
$68
$144
How much do siem migration jobs pay per hour?
What other helpful pages are available for Siem Migration?
Other pages related to Siem Migration:
Security Observability Engineer
Destin, FL • On-site
Full-time
Re-posted 29 days ago
Job description
Security Observability Engineer
Job Overview
We are seeking an experienced Security Observability Engineer to lead the migration, optimization, and secure operation of our log ingestion and observability pipelines. The role emphasizes secure data delivery, advanced SIEM coverage, Splunk expertise, data reduction strategies, and robust load balancing and high availability for log infrastructure.
Key Responsibilities
• End-to-End SIEM Pipeline Management & Optimization
• Lead the migration of log sources from Splunk ingestion to Cribl Stream/Edge
pipelines, ensuring load-balanced, fault-tolerant delivery and processing of security and IT logs.
• Architect and manage scalable, resilient pipelines-including design,
implementation, and operation of load balancing solutions (e.g., Cribl worker groups, external load balancers, or syslog load distribution) for high ingest volumes.
• Analyze, tune and securely onboard all log sources (firewalls, EDR, cloud,
authentication, proxies, etc.)-covering parsing, filtering, and data reduction techniques to minimize Splunk ingest/storage costs without sacrificing security coverage.
• Develop and maintain Cribl and Splunk configurations, including advanced
transformations, field normalization, masking, and enrichment for security analytics.
• Ensure optimal distribution of logging workload across Cribl worker nodes and
Splunk indexers to prevent bottlenecks, data loss, or single points of failure. • Security Event Visibility and SOC Enablement
• Collaborate with SOC, IR, and threat detection teams to ensure all security logs
reach the SIEM eRiciently and reliably, and logs are tuned for actionable detection. • Actively monitor, test, and remediate pipeline balancing and ingestion health to
maximize uptime and forensic visibility.
• Respond to and resolve SIEM and pipeline issues that impact security, detection, or
compliance visibility.
• Governance, Compliance & Documentation
• Apply and document security policies for log routing, load balancing, event
retention, and integrity-ensuring pipeline architecture meets audit, legal, and privacy requirements.
• Track and report ingest reduction, Splunk cost savings, pipeline health, and event
loss/drop rates across the load-balanced infrastructure.
• Maintain clear, up-to-date documentation of log flows, pipeline topology, load
balancing strategies, and operational procedures.
Required Skills & Qualifications
• Extensive hands-on experience with Splunk SIEM engineering (indexers, search
heads, clustering, forwarders, CIM, performance/load optimization).
• 2+ years with Cribl Stream/Edge, including deployment and tuning of distributed,
load-balanced pipelines.
• Deep understanding of machine data transport (syslog, HEC, TCP, UDP), log
balancing strategies (syslog balancers, DNS round-robin, Cribl worker groups, etc.), and high-availability logging environments.
• Proven expertise onboarding, parsing, and tuning security log sources (firewalls,
cloud, EDR/XDR, IAM, authentication, and networking) for best possible coverage and SOC/IR support.
• Advanced Splunk SPL, data model, event parsing, and alert tuning skills; practical
SIEM optimization experience.
• Scripting/automation ability (Python, shell/CLI, or similar) for pipeline management
and validation.
• Strong troubleshooting, monitoring, and operational dashboard skills for both
pipeline and SIEM health.
Preferred Qualifications
• Hands-on experience designing and operating clustered/HA Cribl and Splunk
deployments (worker groups, clustered indexers, resilient data forwarders, etc.). • Splunk ES or Cribl certifications.
Key Success Metrics
• No loss of security data or alert coverage during/after pipeline migration and
optimization.
• Documented, measurable reductions in Splunk ingest volume and
operational/storage cost.
• Consistently balanced log throughput and minimal risk of bottlenecks or
overloads-pipeline health and reliability metrics maintained above SLA. • Well-documented, adaptable pipeline and load balancing architecture.
The estimated salary range for this position is 90k-120k
Starr is an equal opportunity employer, which means we'll consider all suitably qualified applicants regardless of gender identity or expression, ethnic origin, nationality, religion or beliefs, age, sexual orientation, disability status or any other protected characteristic. We recruit and develop our people based on merit and we're committed to creating an inclusive environment for all employees. We offer first class training and development opportunities to all employees. Our aim is to grow our own talent and bring out the best in people.