1

Splunk Siem Engineer Jobs in San Ramon, CA (NOW HIRING)

Sr. Security Engineer

San Jose, CA · On-site

$70 - $84/hr

Title: Sr. Security Engineer Location: Fulton, MD (HYBRID) or Raleigh, NC (HYBRID) Duration ... SIEM & Monitoring: Splunk, Microsoft Sentinel, Amazon CloudWatch, AWS CloudTrail * EDR & Threat ...

Security Operations Lead

Foster City, CA · On-site

$295K - $385K/yr

This role leads the global SOC function-monitoring, SIEM ownership, detection engineering, alert ... Strong experience with SIEM platforms (Chronicle, Splunk, Elastic, Sentinel, Panther, etc.). * Deep ...

Senior Security Engineer

San Jose, CA · On-site

$184K - $208K/yr

Experience with SIEM platforms (Splunk, Sentinel, Elastic, or similar) for log analysis and detection engineering * Solid networking knowledge - firewalls, proxies, DNS security, network segmentation ...

Senior Security Engineer

San Jose, CA · On-site

$184K - $208K/yr

Experience with SIEM platforms (Splunk, Sentinel, Elastic, or similar) for log analysis and detection engineering * Solid networking knowledge - firewalls, proxies, DNS security, network segmentation ...

Through our merger with Voltage Park, a neocloud and AI Factory, Lightning AI combines developer ... Experience with SIEM (e.g., Splunk, QRadar), vulnerability scanners (e.g., Nessus, Qualys), and ...

Through our merger with Voltage Park, a neocloud and AI Factory, Lightning AI combines developer ... Experience with SIEM (e.g., Splunk, QRadar), vulnerability scanners (e.g., Nessus, Qualys), and ...

Showing results 21-40

Splunk Siem Engineer information

What does a Splunk SIEM Engineer do?

A Splunk SIEM Engineer is responsible for designing, implementing, and managing Splunk Security Information and Event Management (SIEM) solutions within an organization. They monitor security events, create dashboards, and develop alerts to detect and respond to potential threats. Their work involves integrating various data sources into Splunk, maintaining system performance, and ensuring compliance with security policies. Splunk SIEM Engineers also play a key role in incident response and help organizations improve their overall security posture.

What are the key skills and qualifications needed to thrive as a Splunk SIEM Engineer?

To thrive as a Splunk SIEM Engineer, you need strong expertise in security information and event management (SIEM), log analysis, scripting, and a background in cybersecurity, often supported by a computer science degree or related certifications. Familiarity with Splunk Enterprise Security, Splunk Query Language (SPL), and certifications like Splunk Certified Power User or Splunk Certified Admin are commonly required. Analytical thinking, problem-solving skills, and effective communication help engineers interpret security data and collaborate with IT teams. These skills are crucial for proactively detecting threats, optimizing security operations, and ensuring the resilience of organizational IT environments.

What are some common challenges faced by Splunk SIEM Engineers when integrating new data sources?

Splunk SIEM Engineers often encounter challenges such as inconsistent log formats, lack of documentation from data source owners, and ensuring data normalization for effective correlation and analysis. Additionally, dealing with high data volume while maintaining system performance and security compliance can be demanding. Close collaboration with IT, security teams, and application owners is critical to troubleshoot issues and fine-tune data onboarding processes.

What is the difference between Splunk Siem Engineer vs Security Analyst?

AspectSplunk Siem EngineerSecurity Analyst
CertificationsSplunk Certified Power User, Splunk Certified AdminCompTIA Security+, GIAC Security Essentials
Work EnvironmentFocus on configuring, maintaining, and optimizing Splunk SIEM toolsMonitor security alerts, investigate incidents, and implement security measures
Industry UsagePrimarily in cybersecurity, IT operations, and complianceAcross cybersecurity teams, incident response, and risk management

The Splunk Siem Engineer specializes in deploying and managing Splunk SIEM solutions, ensuring data ingestion and system performance. In contrast, the Security Analyst focuses on analyzing security data, investigating threats, and responding to incidents. While both roles require security knowledge and certifications, the engineer emphasizes system setup and maintenance, whereas the analyst emphasizes threat detection and response.

What job categories do people searching Splunk Siem Engineer jobs in San Ramon, CA look for?

The top searched job categories for Splunk Siem Engineer jobs in San Ramon, CA are:

What cities near San Ramon, CA are hiring for Splunk Siem Engineer jobs?

Cities near San Ramon, CA with the most Splunk Siem Engineer job openings:

Infographic showing various Splunk Siem Engineer job openings in San Ramon, CA as of June 2026, with employment types broken down into 1% As Needed, 53% Full Time, 39% Part Time, 2% Contract, and 5% Nights. Highlights an 78% Physical, 9% Hybrid, and 13% Remote job distribution.

Other

Re-posted 25 days ago


Job description

Our client, a technology solutions provider company located in San Francisco, CA, needs a Netskope Engineer for permanent employment. The Netskope Engineer will work 4 days a week onsite in San Francisco, and be responsible for the design, administration, and organization of the client's Netskope One Security Service Edge Platform.
Required Skills:
5+ years of experience in security or network engineering with hands on experience with Netskope or comparable SSE/SASE platform.
4+ years of experience administrating or engineering Netskope in an enterprise environment. Including building and tuning Netskope polices for cloud applications, web traffic, user activity, threats, and data controls.
Over 5 years of experience configuring, managing, and troubleshooting traffic steering and proxy solutions, including Netskope Client deployments, PAC files, GRE/IPsec tunnels, certificate management, routing, DNS, and SSL/TLS inspection.
Over 5 years of experience implementing and supporting identity integrations using Microsoft Entra ID, Okta, Ping Identity, Active Directory, SAML, SCIM, LDAP, user group management, and conditional access frameworks.
Over 5 years of experience monitoring, analyzing, and interpreting security events and logs through SkopeIT, alerts, dashboards, reports, and SIEM platforms to support threat investigations, incident response, and operational decision-making.
Bachelor's degree in Computer Science, Information Technology, or a related discipline, or equivalent hands-on industry experience.
Desired Skills:
Hands-on experience with Netskope Private Access (ZTNA), RBI, Cloud Firewall, DNS Security, Cloud Exchange, and cloud security services.
Netskope certification
Integrated Netskope with Splunk, Microsoft Sentinel, QRadar, ServiceNow, Jira, SOAR platforms, and REST APIs.
Strong knowledge of CASB, SWG, DLP, SSE/SASE, Zero Trust, SaaS security, and cloud risk management.
Managed endpoint deployments across Windows, macOS, and mobile devices using MDM/UEM solutions.
Working knowledge of HTTP/HTTPS, TLS, web proxies, authentication protocols, APIs, and enterprise networking.
Designed and tuned DLP policies, data classification controls, and incident response workflows.
Troubleshot complex issues across Netskope, endpoints, networks, identity providers, SaaS, and cloud environments.
Secured enterprise platforms including Microsoft 365, Google Workspace, Salesforce, AWS, Azure, and Google Cloud.
Supported data governance and information protection initiatives using Microsoft Purview and sensitivity labels.
Automated security operations using Python, PowerShell, REST APIs, and JSON.
Applied security controls aligned with NIST, ISO 27001, PCI DSS, HIPAA, SOX, GDPR, and CCPA requirements.
ClearBridge Technology Group is an Equal Opportunity Employer.
We offer excellent benefits and compensation packages.
The expected base salary range for this role is: 150K-180K per year
The posted range is an estimate, the actual compensation offer will be based on the candidate's experience, skills, qualifications and will be in line with internal equity.