1

Splunk Siem Engineer Jobs in Silver Spring, MD (NOW HIRING)

Support SIEM data ingestion, indexing, normalization, dashboarding, alerting, and operational reporting. * Develop dashboards and visualizations for security, operations, and mission stakeholders.

Support SIEM data ingestion, indexing, normalization, dashboarding, alerting, and operational reporting. * Develop dashboards and visualizations for security, operations, and mission stakeholders.

... and supporting Splunk Applications * Experience in automation with programming languages like ... Experience in Security information and event management (SIEM) * Experience with RTIR

... and supporting Splunk Applications * Experience in automation with programming languages like ... Experience in Security information and event management (SIEM) * Experience with RTIR

The Senior Splunk Engineer will be responsible for designing, implementing, and optimizing Splunk ... Understanding of security information and event management (SIEM) concepts. * Proficiency with REST ...

Splunk Engineer : Familiar with Splunk architectures in addition to RMF and Splunk best practices ... SOAR, IT Services Infrastructure (ITSI), User Behavior Analysis (UBA), or ES (SIEM). Works with ...

The Senior Splunk Engineer will be responsible for designing, implementing, and optimizing Splunk ... Understanding of security information and event management (SIEM) concepts. * Proficiency with REST ...

RIT Solutions, Inc. is looking for a Splunk Engineer to join their Reliability and Integrations ... SIEM principles. Preferred : • Splunk Certification (Admin or Architect) • Experience with ...

Support the organization's transition from Splunk to Elastic, including migration and validation of data sources, searches, dashboards, reports, alerts, and security use cases. * Configure, manage ...

Showing results 21-40

Splunk Siem Engineer information

What does a Splunk SIEM Engineer do?

A Splunk SIEM Engineer is responsible for designing, implementing, and managing Splunk Security Information and Event Management (SIEM) solutions within an organization. They monitor security events, create dashboards, and develop alerts to detect and respond to potential threats. Their work involves integrating various data sources into Splunk, maintaining system performance, and ensuring compliance with security policies. Splunk SIEM Engineers also play a key role in incident response and help organizations improve their overall security posture.

What are the key skills and qualifications needed to thrive as a Splunk SIEM Engineer?

To thrive as a Splunk SIEM Engineer, you need strong expertise in security information and event management (SIEM), log analysis, scripting, and a background in cybersecurity, often supported by a computer science degree or related certifications. Familiarity with Splunk Enterprise Security, Splunk Query Language (SPL), and certifications like Splunk Certified Power User or Splunk Certified Admin are commonly required. Analytical thinking, problem-solving skills, and effective communication help engineers interpret security data and collaborate with IT teams. These skills are crucial for proactively detecting threats, optimizing security operations, and ensuring the resilience of organizational IT environments.

What are some common challenges faced by Splunk SIEM Engineers when integrating new data sources?

Splunk SIEM Engineers often encounter challenges such as inconsistent log formats, lack of documentation from data source owners, and ensuring data normalization for effective correlation and analysis. Additionally, dealing with high data volume while maintaining system performance and security compliance can be demanding. Close collaboration with IT, security teams, and application owners is critical to troubleshoot issues and fine-tune data onboarding processes.

What is the difference between Splunk Siem Engineer vs Security Analyst?

AspectSplunk Siem EngineerSecurity Analyst
CertificationsSplunk Certified Power User, Splunk Certified AdminCompTIA Security+, GIAC Security Essentials
Work EnvironmentFocus on configuring, maintaining, and optimizing Splunk SIEM toolsMonitor security alerts, investigate incidents, and implement security measures
Industry UsagePrimarily in cybersecurity, IT operations, and complianceAcross cybersecurity teams, incident response, and risk management

The Splunk Siem Engineer specializes in deploying and managing Splunk SIEM solutions, ensuring data ingestion and system performance. In contrast, the Security Analyst focuses on analyzing security data, investigating threats, and responding to incidents. While both roles require security knowledge and certifications, the engineer emphasizes system setup and maintenance, whereas the analyst emphasizes threat detection and response.

What are popular job titles related to Splunk Siem Engineer jobs in Silver Spring, MD?

For Splunk Siem Engineer jobs in Silver Spring, MD, the most frequently searched job titles are:

What job categories do people searching Splunk Siem Engineer jobs in Silver Spring, MD look for?

The top searched job categories for Splunk Siem Engineer jobs in Silver Spring, MD are:

What cities near Silver Spring, MD are hiring for Splunk Siem Engineer jobs?

Cities near Silver Spring, MD with the most Splunk Siem Engineer job openings:

Infographic showing various Splunk Siem Engineer job openings in Silver Spring, MD as of August 2026, with employment types broken down into 85% Full Time, 9% Part Time, and 6% Contract. Highlights an 86% Physical, 5% Hybrid, and 9% Remote job distribution.

SEIM Engineer with Security Clearance

Apex Systems

Fort George G Meade, MD • On-site

Other

Re-posted 6 days ago


Job description

SIEM Engineer
Location: Fort Meade, Maryland (Onsite) Role Overview
Our organization is seeking a SIEM Engineer to support a critical enterprise migration from Splunk to Elastic. This role will serve as a senior analyst, responsible for developing queries, tuning alerts, and performing advanced analysis within a large-scale environment. The position involves translating existing security use cases, dashboards, and alerts while ensuring detection capabilities are maintained or improved throughout the transition. Key Responsibilities
Serve as a senior SIEM analyst leveraging Splunk, with responsibility for query development (SPL), alert tuning, correlation, and advanced analysis.
Support and contribute to enterprise SIEM migration efforts from Splunk to Elastic, including translating use cases, dashboards, and alerts.
Validate data ingestion pipelines and log sources during the migration to ensure fidelity.
Leverage network monitoring and detection capabilities (netflow, PCAP, IDS) to identify adversary activity.
* Perform advanced log analysis, correlation, and threat detection across large-scale datasets. Discover adversary campaigns, anomalies, and inconsistencies across SIEM platforms.
Support the development of cyber fusion frameworks aligned with best practices.
Analyze and document malicious actor TTPs, mapping them to enterprise vulnerabilities.
Produce detailed analytic reports and visualizations to communicate findings.
Provide mitigation strategies to reduce risk and improve the enterprise security posture.
Required Qualifications
Bachelor’s Degree with 8-15 years of relevant experience, or equivalent professional experience.
An active IAT Level II or III Certification.
Experience with Splunk, including SPL query development, dashboard creation, and alert tuning.
Experience supporting or participating in SIEM platform migrations, preferably from Splunk to Elastic.
Familiarity with Elastic/ELK Stack tools such as Elasticsearch, Kibana, Logstash, and Beats.
Knowledge of network protocols (TCP/IP, OSI) and cyber threat methodologies.
Experience analyzing netflow, PCAP, and custom application logging data.
Experience with security tools such as Wireshark, passive DNS, and threat intelligence platforms.
Preferred Qualifications
Experience supporting DISN or DOW networks.
Demonstrated experience building SIEM dashboards, analytics, and detection content in Splunk and/or Elastic.
Hands-on experience with Splunk to Elastic migrations, data pipeline validation, or detection engineering conversions.
Familiarity with intelligence-driven defense methodologies.
IAT Level III and/or IAM Level II/III Certifications.