1

Splunk Siem Engineer Jobs in Indiana (NOW HIRING)

Architect, Security Products

Carmel, IN ยท On-site

$61.50 - $79.50/hr

Develop enablement material and deliver training for sales engineers, partners and customers ... Experience with SIEM integrations (Syslog, Splunk, Sentinel, QRadar), NAC/identity, IDS use cases ...

Architect, Security Products

Carmel, IN ยท Remote

$61.50 - $79.50/hr

Develop enablement material and deliver training for sales engineers, partners and customers ... Experience with SIEM integrations (Syslog, Splunk, Sentinel, QRadar), NAC/identity, IDS use cases ...

Manager, Cyber Security

Indianapolis, IN ยท Hybrid

$150K - $165K/yr

Partner with IT and DevOps teams to embed security controls into the SDLC and cloud pipelines ... Proficiency with SIEM platforms (e.g., Splunk, Microsoft Sentinel, QRadar) * Experience with ...

Manager, Cyber Security

Indianapolis, IN ยท On-site

$150K - $165K/yr

Partner with IT and DevOps teams to embed security controls into the SDLC and cloud pipelines ... Proficiency with SIEM platforms (e.g., Splunk, Microsoft Sentinel, QRadar) * Experience with ...

Manager, Cyber Security

Indianapolis, IN ยท On-site

$150K - $165K/yr

Partner with IT and DevOps teams to embed security controls into the SDLC and cloud pipelines ... Proficiency with SIEM platforms (e.g., Splunk, Microsoft Sentinel, QRadar) * Experience with ...

next page

Showing results 1-20

Splunk Siem Engineer information

See Indiana salary details

$51.1K

$118.1K

$169.7K

How much do splunk siem engineer jobs pay per year?

As of Aug 3, 2026, the average yearly pay for splunk siem engineer in Indiana is $118,149.00, according to ZipRecruiter salary data. Most workers in this role earn between $97,961.00 and $136,396.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a Splunk SIEM Engineer, and why are they important?

To thrive as a Splunk SIEM Engineer, you need strong expertise in security information and event management (SIEM), log analysis, scripting, and a background in cybersecurity, often supported by a computer science degree or related certifications. Familiarity with Splunk Enterprise Security, Splunk Query Language (SPL), and certifications like Splunk Certified Power User or Splunk Certified Admin are commonly required. Analytical thinking, problem-solving skills, and effective communication help engineers interpret security data and collaborate with IT teams. These skills are crucial for proactively detecting threats, optimizing security operations, and ensuring the resilience of organizational IT environments.

What are some common challenges faced by Splunk SIEM Engineers when integrating new data sources?

Splunk SIEM Engineers often encounter challenges such as inconsistent log formats, lack of documentation from data source owners, and ensuring data normalization for effective correlation and analysis. Additionally, dealing with high data volume while maintaining system performance and security compliance can be demanding. Close collaboration with IT, security teams, and application owners is critical to troubleshoot issues and fine-tune data onboarding processes.

What is the difference between Splunk Siem Engineer vs Security Analyst?

AspectSplunk Siem EngineerSecurity Analyst
CertificationsSplunk Certified Power User, Splunk Certified AdminCompTIA Security+, GIAC Security Essentials
Work EnvironmentFocus on configuring, maintaining, and optimizing Splunk SIEM toolsMonitor security alerts, investigate incidents, and implement security measures
Industry UsagePrimarily in cybersecurity, IT operations, and complianceAcross cybersecurity teams, incident response, and risk management

The Splunk Siem Engineer specializes in deploying and managing Splunk SIEM solutions, ensuring data ingestion and system performance. In contrast, the Security Analyst focuses on analyzing security data, investigating threats, and responding to incidents. While both roles require security knowledge and certifications, the engineer emphasizes system setup and maintenance, whereas the analyst emphasizes threat detection and response.

What does a Splunk SIEM Engineer do?

A Splunk SIEM Engineer is responsible for designing, implementing, and managing Splunk Security Information and Event Management (SIEM) solutions within an organization. They monitor security events, create dashboards, and develop alerts to detect and respond to potential threats. Their work involves integrating various data sources into Splunk, maintaining system performance, and ensuring compliance with security policies. Splunk SIEM Engineers also play a key role in incident response and help organizations improve their overall security posture.
What are popular job titles related to Splunk Siem Engineer jobs in Indiana? For Splunk Siem Engineer jobs in Indiana, the most frequently searched job titles are:
What cities in Indiana are hiring for Splunk Siem Engineer jobs? Cities in Indiana with the most Splunk Siem Engineer job openings:

Information Technology Project Manager, Senior (CSSP Engineering Team Lead) P06

FEDITC LLC

Indianapolis, IN โ€ข On-site

$99K - $134K/yr

Full-time

Re-posted 19 days ago


Job description

FEDITC, LLC is a fast-growing business supporting DoD and other intelligence agencies worldwide. FEDITC develops mission critical national security systems throughout the world directly supporting the Warfighter, DoD Leadership, & the country. We are proud & honored to provide these services.

Overview of position:

FEDITC seeks a CSSP Engineering Team Lead to work in the Indianapolis IN area to direct the Security Infrastructure Engineering function for the DFAS Cybersecurity Service Provider (CSSP) program. The lead provides 24/7 engineering support for security infrastructure technologies, SIEM operations, and cybersecurity tool suite management across all DFAS CCE enclaves.

An active Top Secret/SCI security clearance and a United States Citizenship is required to be considered for this position.

On-site presence required at designated location

Responsibilities

  • Lead and supervise CSSP Engineering technical staff delivering 24/7 security infrastructure engineering support
  • Engineer, deploy, and maintain network perimeter defense appliances including firewalls, IDS/IPS, web proxies, and reverse proxies
  • Direct Security Information and Event Management (SIEM) engineering including Splunk, ArcSight, Microsoft Sentinel, and Azure Data Explorer (ADX)
  • Oversee CSSP tool suite engineering including Microsoft Defender for Endpoint (MDE), Defender for Identity (MDI), and Defender for Cloud Apps (MDCA)
  • Lead penetration testing capabilities, vulnerability management, and Assured Compliance Assessment Solution (ACAS) operations
  • Engineer Zero Trust Network Architecture technologies aligned with DoD Zero Trust requirements
  • Coordinate security infrastructure projects with CCB and DFAS Engineering teams
  • Develop and maintain engineering documentation for security tools, configurations, and operational procedures
  • Support CSSP accreditation requirements and documentation
  • Ensure compliance with DoD CSSP Evaluators Scoring Metrics, JFHQ-DODIN, DISA, and U.S. Cyber Command guidance
  • Provide quarterly technology briefings on CSSP engineering capabilities to DFAS management

Required Experience/Skills:

  • Minimum 8 years of cybersecurity engineering experience in DoD or Federal Government environments
  • Demonstrated expertise engineering enterprise SIEM platforms (Splunk, ArcSight, Microsoft Sentinel)
  • Experience with network security technologies including enterprise firewalls (Palo Alto, Cisco), IDS/IPS, and web proxies
  • Hands-on experience with Microsoft Defender security suite (MDE, MDI, MDCA)
  • Experience with vulnerability assessment tools (ACAS, Nessus) and penetration testing methodologies
  • Knowledge of Zero Trust architecture principles and implementation
  • Experience with DoD CSSP requirements, evaluations, and accreditation processes
  • Strong understanding of NIST 800-53, DISA STIGs, and DoD cybersecurity frameworks
  • Proven ability to lead technical security teams in 24/7 operational environments
  • Ability to support COOP exercises and emergency operations

Preferred Qualifications:

  • Azure security certifications (AZ-500, SC-200)
  • Splunk Certified Architect or Administrator
  • GIAC certifications (GCIA, GCIH, GPEN)
  • Experience with microsegmentation technologies (Illumio)
  • DFAS or DoD financial system security engineering experience

Education:

  • BA/BS Degree

Certifications:

  • AZ801-802 and CISSP (or equivalent per 651 A)
  • Computing Environment (CE) certification required for privileged access roles
  • Must obtain and maintain all mandatory DoD 8140 certifications

Clearance:

  • Active Top Secret/ SCI clearance is required.
  • Must be a United States Citizen and pass a background check.
  • Maintain applicable security clearance(s) at the level required by the client and/or applicable certification(s) as requested by FEDITC and/or required by FEDITCโ€™S Client(s)/Customer(s)/Prime contractor(s).

FEDITC, LLC. is committed to fostering an inclusive workplace and provides equal employment opportunities (EEO) to all employees and applicants for employment. We do not employ AI tools in our decision-making processes. Regardless of race, color, religion, sex (including pregnancy), sexual orientation, gender identity or expression, national origin, age, disability, genetic information, marital status, amnesty, or status as a covered veteran, FEDITC, LLC. ensures that all employment decisions are made in accordance with applicable federal, state, and local laws. Our commitment to non-discrimination in employment extends to every location in which our company operates.