1

Splunk Siem Engineer Jobs in Florida (NOW HIRING)

SIEM/SOAR Security Engineer Visa: USC, GC, GC-EAD, H4-EAD Interview: Video Mode: Onsite Work ... Working knowledge in RegEx, Splunk search language, etc. is required. Knowledge and experience in ...

... Engineer. The role focuses on leading the migration, optimization, and secure operation of log ... SIEM coverage, Splunk expertise, data reduction strategies, and robust load balancing and high ...

Senior Detection Engineer

Tampa, FL ยท On-site +1

$108K - $148K/yr

As a Senior Detection Engineer, you will be responsible for technical execution and delivery of ... Experience with SIEM technologies such as Splunk (preferred), Microsoft Sentinel, Google Chronicle ...

Senior Detection Engineer

Tampa, FL ยท On-site +1

$108K - $148K/yr

As a Senior Detection Engineer, you will be responsible for technical execution and delivery of ... Experience with SIEM technologies such as Splunk (preferred), Microsoft Sentinel, Google Chronicle ...

Senior Detection Engineer

Tampa, FL ยท On-site +1

$108K - $148K/yr

As a Senior Detection Engineer, you will be responsible for technical execution and delivery of ... Experience with SIEM technologies such as Splunk (preferred), Microsoft Sentinel, Google Chronicle ...

Cybersecurity Engineer

Miami, FL ยท On-site

$100K - $150K/yr

Cybersecurity Engineer We work with companies protecting modern digital systems-and we're looking ... SIEM tools (Splunk, Sentinel) * Cloud security (AWS, Azure, GCP) * Identity & access management

next page

Showing results 1-20

Splunk Siem Engineer information

See Florida salary details

$43.4K

$100.4K

$144.2K

How much do splunk siem engineer jobs pay per year?

As of Aug 1, 2026, the average yearly pay for splunk siem engineer in Florida is $100,398.00, according to ZipRecruiter salary data. Most workers in this role earn between $83,244.00 and $115,904.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a Splunk SIEM Engineer, and why are they important?

To thrive as a Splunk SIEM Engineer, you need strong expertise in security information and event management (SIEM), log analysis, scripting, and a background in cybersecurity, often supported by a computer science degree or related certifications. Familiarity with Splunk Enterprise Security, Splunk Query Language (SPL), and certifications like Splunk Certified Power User or Splunk Certified Admin are commonly required. Analytical thinking, problem-solving skills, and effective communication help engineers interpret security data and collaborate with IT teams. These skills are crucial for proactively detecting threats, optimizing security operations, and ensuring the resilience of organizational IT environments.

What are some common challenges faced by Splunk SIEM Engineers when integrating new data sources?

Splunk SIEM Engineers often encounter challenges such as inconsistent log formats, lack of documentation from data source owners, and ensuring data normalization for effective correlation and analysis. Additionally, dealing with high data volume while maintaining system performance and security compliance can be demanding. Close collaboration with IT, security teams, and application owners is critical to troubleshoot issues and fine-tune data onboarding processes.

What is the difference between Splunk Siem Engineer vs Security Analyst?

AspectSplunk Siem EngineerSecurity Analyst
CertificationsSplunk Certified Power User, Splunk Certified AdminCompTIA Security+, GIAC Security Essentials
Work EnvironmentFocus on configuring, maintaining, and optimizing Splunk SIEM toolsMonitor security alerts, investigate incidents, and implement security measures
Industry UsagePrimarily in cybersecurity, IT operations, and complianceAcross cybersecurity teams, incident response, and risk management

The Splunk Siem Engineer specializes in deploying and managing Splunk SIEM solutions, ensuring data ingestion and system performance. In contrast, the Security Analyst focuses on analyzing security data, investigating threats, and responding to incidents. While both roles require security knowledge and certifications, the engineer emphasizes system setup and maintenance, whereas the analyst emphasizes threat detection and response.

What does a Splunk SIEM Engineer do?

A Splunk SIEM Engineer is responsible for designing, implementing, and managing Splunk Security Information and Event Management (SIEM) solutions within an organization. They monitor security events, create dashboards, and develop alerts to detect and respond to potential threats. Their work involves integrating various data sources into Splunk, maintaining system performance, and ensuring compliance with security policies. Splunk SIEM Engineers also play a key role in incident response and help organizations improve their overall security posture.
What job categories do people searching Splunk Siem Engineer jobs in Florida look for? The top searched job categories for Splunk Siem Engineer jobs in Florida are:
What cities in Florida are hiring for Splunk Siem Engineer jobs? Cities in Florida with the most Splunk Siem Engineer job openings:
Infographic showing various Splunk Siem Engineer job openings in Florida as of July 2026, with employment types broken down into 93% Full Time, 5% Part Time, and 2% Contract. Highlights an 87% Physical, 5% Hybrid, and 8% Remote job distribution, with an average salary of $100,398 per year, or $48.3 per hour.

Security Observability Engineer

Starr Insurance Companies

Destin, FL โ€ข On-site

Full-time

Re-posted 19 days ago


Job description

Join Starr, a global leader in commercial insurance with over a century of expertise. We empower our employees to innovate, make impactful decisions, and build lasting client relationships worldwide. At Starr, you'll work in an entrepreneurial culture alongside accessible leaders, leveraging our financial strength and vast industry experience to deliver solutions for our clients, no matter how complex. Grow your career with a rapidly growing company that invests in its people and their ability to drive real progress.
Security Observability Engineer
Job Overview
We are seeking an experienced Security Observability Engineer to lead the migration, optimization, and secure operation of our log ingestion and observability pipelines. The role emphasizes secure data delivery, advanced SIEM coverage, Splunk expertise, data reduction strategies, and robust load balancing and high availability for log infrastructure.
Key Responsibilities
โ€ข End-to-End SIEM Pipeline Management & Optimization
โ€ข Lead the migration of log sources from Splunk ingestion to Cribl Stream/Edge
pipelines, ensuring load-balanced, fault-tolerant delivery and processing of security and IT logs.
โ€ข Architect and manage scalable, resilient pipelines-including design,
implementation, and operation of load balancing solutions (e.g., Cribl worker groups, external load balancers, or syslog load distribution) for high ingest volumes.
โ€ข Analyze, tune and securely onboard all log sources (firewalls, EDR, cloud,
authentication, proxies, etc.)-covering parsing, filtering, and data reduction techniques to minimize Splunk ingest/storage costs without sacrificing security coverage.
โ€ข Develop and maintain Cribl and Splunk configurations, including advanced
transformations, field normalization, masking, and enrichment for security analytics.
โ€ข Ensure optimal distribution of logging workload across Cribl worker nodes and
Splunk indexers to prevent bottlenecks, data loss, or single points of failure. โ€ข Security Event Visibility and SOC Enablement
โ€ข Collaborate with SOC, IR, and threat detection teams to ensure all security logs
reach the SIEM eRiciently and reliably, and logs are tuned for actionable detection. โ€ข Actively monitor, test, and remediate pipeline balancing and ingestion health to
maximize uptime and forensic visibility.
โ€ข Respond to and resolve SIEM and pipeline issues that impact security, detection, or
compliance visibility.
โ€ข Governance, Compliance & Documentation
โ€ข Apply and document security policies for log routing, load balancing, event
retention, and integrity-ensuring pipeline architecture meets audit, legal, and privacy requirements.
โ€ข Track and report ingest reduction, Splunk cost savings, pipeline health, and event
loss/drop rates across the load-balanced infrastructure.
โ€ข Maintain clear, up-to-date documentation of log flows, pipeline topology, load
balancing strategies, and operational procedures.
Required Skills & Qualifications
โ€ข Extensive hands-on experience with Splunk SIEM engineering (indexers, search
heads, clustering, forwarders, CIM, performance/load optimization).
โ€ข 2+ years with Cribl Stream/Edge, including deployment and tuning of distributed,
load-balanced pipelines.
โ€ข Deep understanding of machine data transport (syslog, HEC, TCP, UDP), log
balancing strategies (syslog balancers, DNS round-robin, Cribl worker groups, etc.), and high-availability logging environments.
โ€ข Proven expertise onboarding, parsing, and tuning security log sources (firewalls,
cloud, EDR/XDR, IAM, authentication, and networking) for best possible coverage and SOC/IR support.
โ€ข Advanced Splunk SPL, data model, event parsing, and alert tuning skills; practical
SIEM optimization experience.
โ€ข Scripting/automation ability (Python, shell/CLI, or similar) for pipeline management
and validation.
โ€ข Strong troubleshooting, monitoring, and operational dashboard skills for both
pipeline and SIEM health.
Preferred Qualifications
โ€ข Hands-on experience designing and operating clustered/HA Cribl and Splunk
deployments (worker groups, clustered indexers, resilient data forwarders, etc.). โ€ข Splunk ES or Cribl certifications.
Key Success Metrics
โ€ข No loss of security data or alert coverage during/after pipeline migration and
optimization.
โ€ข Documented, measurable reductions in Splunk ingest volume and
operational/storage cost.
โ€ข Consistently balanced log throughput and minimal risk of bottlenecks or
overloads-pipeline health and reliability metrics maintained above SLA. โ€ข Well-documented, adaptable pipeline and load balancing architecture.
The estimated salary range for this position is 90k-120k
Starr is an equal opportunity employer, which means we'll consider all suitably qualified applicants regardless of gender identity or expression, ethnic origin, nationality, religion or beliefs, age, sexual orientation, disability status or any other protected characteristic. We recruit and develop our people based on merit and we're committed to creating an inclusive environment for all employees. We offer first class training and development opportunities to all employees. Our aim is to grow our own talent and bring out the best in people.