Additionally, the SIEM Engineer is responsible for ensuring ICS 500-27 audit compliance ... Splunk Implementation and Maintenance: * Set up and configure Splunk instances, including ...
Additionally, the SIEM Engineer is responsible for ensuring ICS 500-27 audit compliance ... Splunk Implementation and Maintenance: * Set up and configure Splunk instances, including ...
Remote role of Senior Splunk/SIEM Architect/Engineer
$117K - $160K/yr
Syntricate Technologies is seeking a Senior Splunk/SIEM Architect/Engineer for a remote role. The successful candidate will lead the design and architecture of the bank's SIEM infrastructure ...
Remote role of Senior Splunk/SIEM Architect/Engineer
$117K - $160K/yr
Syntricate Technologies is seeking a Senior Splunk/SIEM Architect/Engineer for a remote role. The successful candidate will lead the design and architecture of the bank's SIEM infrastructure ...
SIEM Engineer
Manhattan, NY · On-site
$140K - $160K/yr
SIEM Engineer - Role Overview The SIEM Engineer is responsible for designing, implementing ... Splunk * QRadar * LogRhythm * Elastic Security * CrowdStrike NG-SIEM * Cribl * Strong knowledge of:
SIEM Engineer
Manhattan, NY · On-site
$140K - $160K/yr
SIEM Engineer - Role Overview The SIEM Engineer is responsible for designing, implementing ... Splunk * QRadar * LogRhythm * Elastic Security * CrowdStrike NG-SIEM * Cribl * Strong knowledge of:
SIEM Engineer
Washington, DC · Remote
$71 - $76/hr
Administer and support SIEM platforms such as Splunk and Microsoft Sentinel. * Develop and maintain ... Experience Requirements: * 5+ years in SIEM engineering, SOC operations, or cybersecurity ...
Quick apply
SIEM Engineer
Washington, DC · Remote
$71 - $76/hr
Administer and support SIEM platforms such as Splunk and Microsoft Sentinel. * Develop and maintain ... Experience Requirements: * 5+ years in SIEM engineering, SOC operations, or cybersecurity ...
SIEM Engineer
Chicago, IL · On-site
SIEM Engineer Salary: $150k-$160k + bonus Location: Chicago, IL or Austin, TX Hybrid: 3 days onsite ... Hands-on experience working with SIEM platforms such as Google SecOps (Chronicle), Splunk, Exabeam ...
SIEM Engineer
Chicago, IL · On-site
SIEM Engineer Salary: $150k-$160k + bonus Location: Chicago, IL or Austin, TX Hybrid: 3 days onsite ... Hands-on experience working with SIEM platforms such as Google SecOps (Chronicle), Splunk, Exabeam ...
SIEM Engineer
Austin, TX · On-site
SIEM Engineer Salary: $150k-$160k + bonus Location: Chicago, IL or Austin, TX Hybrid: 3 days onsite ... Hands-on experience working with SIEM platforms such as Google SecOps (Chronicle), Splunk, Exabeam ...
SIEM Engineer
Austin, TX · On-site
SIEM Engineer Salary: $150k-$160k + bonus Location: Chicago, IL or Austin, TX Hybrid: 3 days onsite ... Hands-on experience working with SIEM platforms such as Google SecOps (Chronicle), Splunk, Exabeam ...
SIEM Engineer II
Chicago, IL · On-site
SIEM google SecOps chronicle splunk exabeam or Microsoft sentinel cribl exposure apis sys log or ... Engineer II , you will play a key role in the implementation, optimization, and day-to-day ...
SIEM Engineer II
Chicago, IL · On-site
SIEM google SecOps chronicle splunk exabeam or Microsoft sentinel cribl exposure apis sys log or ... Engineer II , you will play a key role in the implementation, optimization, and day-to-day ...
Responsibilities for the SIEM Engineer include ... Configure, maintain, and optimize SIEM platforms such as Splunk Enterprise Security and IBM QRadar
Responsibilities for the SIEM Engineer include ... Configure, maintain, and optimize SIEM platforms such as Splunk Enterprise Security and IBM QRadar
SIEM Engineer - Cribl
Austin, TX · On-site
SIEM google SecOps chronicle splunk exabeam or Microsoft sentinel cribl exposure apis sys log or ... Engineer II , you will play a key role in the implementation, optimization, and day-to-day ...
SIEM Engineer - Cribl
Austin, TX · On-site
SIEM google SecOps chronicle splunk exabeam or Microsoft sentinel cribl exposure apis sys log or ... Engineer II , you will play a key role in the implementation, optimization, and day-to-day ...
Splunk/SIEM Engineer (5552) (TS/SCI) (Ft. Meade, MD) with Security Clearance
Fort George G Meade, MD · On-site
Additionally, the SIEM Engineer is responsible for ensuring ICS 500-27 audit compliance ... Splunk Implementation and Maintenance: * Set up and configure Splunk instances, including ...
Splunk/SIEM Engineer (5552) (TS/SCI) (Ft. Meade, MD) with Security Clearance
Fort George G Meade, MD · On-site
Additionally, the SIEM Engineer is responsible for ensuring ICS 500-27 audit compliance ... Splunk Implementation and Maintenance: * Set up and configure Splunk instances, including ...
Senior SIEM Engineer - Splunk with Security Clearance
Washington, DC · On-site
$129K - $177K/yr
Senior SIEM Engineer to own the architecture, strategy, and long-term health of the organization's Splunk deployment, setting standards for detection engineering, data onboarding, and platform ...
Senior SIEM Engineer - Splunk with Security Clearance
Washington, DC · On-site
$129K - $177K/yr
Senior SIEM Engineer to own the architecture, strategy, and long-term health of the organization's Splunk deployment, setting standards for detection engineering, data onboarding, and platform ...
The Senior Splunk Enterprise Security Engineer will serve as a subject matter expert responsible for designing, implementing, and optimizing SIEM capabilities using Splunk Enterprise Security to ...
The Senior Splunk Enterprise Security Engineer will serve as a subject matter expert responsible for designing, implementing, and optimizing SIEM capabilities using Splunk Enterprise Security to ...
Splunk Engineer
Plano, TX · On-site
We recruit world-class talent for IT, engineering, and other professional jobs at 70+ Fortune and ... Implement and support a SPLUNK SIEM solution. * Develop and implement processes and procedures to ...
Splunk Engineer
Plano, TX · On-site
We recruit world-class talent for IT, engineering, and other professional jobs at 70+ Fortune and ... Implement and support a SPLUNK SIEM solution. * Develop and implement processes and procedures to ...
SIEM Engineer III
Fairfax, VA · On-site
Engineer, deploy, configure, maintain, and optimize enterprise SIEM platforms such as Elastic Security, CrowdStrike Falcon Next-Gen SIEM, Splunk Enterprise Security, Microsoft Sentinel, or similar ...
SIEM Engineer III
Fairfax, VA · On-site
Engineer, deploy, configure, maintain, and optimize enterprise SIEM platforms such as Elastic Security, CrowdStrike Falcon Next-Gen SIEM, Splunk Enterprise Security, Microsoft Sentinel, or similar ...
SIEM Engineer II
Austin, TX · On-site
$149K - $166K/yr
SIEM Engineer II Salary: $149,000-$166,000 What You ll Do Are you a hands-on security engineer ... SecOps), Splunk, Exabeam, Microsoft Sentinel). * Cribl Development - Support the design and ...
SIEM Engineer II
Austin, TX · On-site
$149K - $166K/yr
SIEM Engineer II Salary: $149,000-$166,000 What You ll Do Are you a hands-on security engineer ... SecOps), Splunk, Exabeam, Microsoft Sentinel). * Cribl Development - Support the design and ...
... engineer directly safeguards national‑level infrastructure by designing and maintaining the Splunk SIEM ecosystem that protects sensitive federal systems and high‑value assets. This role is a ...
... engineer directly safeguards national‑level infrastructure by designing and maintaining the Splunk SIEM ecosystem that protects sensitive federal systems and high‑value assets. This role is a ...
Design, implement, configure, and maintain SIEM platforms (e.g., Splunk, Microsoft Sentinel, QRadar ... Detection Engineering * Develop and maintain correlation rules, detection logic, and alerting ...
Quick apply
Design, implement, configure, and maintain SIEM platforms (e.g., Splunk, Microsoft Sentinel, QRadar ... Detection Engineering * Develop and maintain correlation rules, detection logic, and alerting ...
SIEM Data Engineer
Quincy, MA · On-site
$45 - $50/hr
for SIEM Data Engineer Position Who we are looking for: Cyber Data & Analytics team is looking for ... Splunk data administration, Cribl Stream, GitOps (Cribl code deployed using GitOps), Confluence ...
Quick apply
SIEM Data Engineer
Quincy, MA · On-site
$45 - $50/hr
for SIEM Data Engineer Position Who we are looking for: Cyber Data & Analytics team is looking for ... Splunk data administration, Cribl Stream, GitOps (Cribl code deployed using GitOps), Confluence ...
Key Responsibilities SIEM Engineering & Platform Management Design, implement, configure, and maintain SIEM platforms (e.g., Splunk, Microsoft Sentinel, QRadar, Elastic) Manage SIEM architecture ...
Key Responsibilities SIEM Engineering & Platform Management Design, implement, configure, and maintain SIEM platforms (e.g., Splunk, Microsoft Sentinel, QRadar, Elastic) Manage SIEM architecture ...
Senior Splunk Engineer
$107K - $146K/yr
Integrate Splunk with other critical systems (e.g., SIEM, DevOps tools, databases) and automate repetitive tasks using scripting and CI/CD tools. * Support & Troubleshooting: Act as a final ...
Senior Splunk Engineer
$107K - $146K/yr
Integrate Splunk with other critical systems (e.g., SIEM, DevOps tools, databases) and automate repetitive tasks using scripting and CI/CD tools. * Support & Troubleshooting: Act as a final ...
Splunk Siem Engineer information
See salary details
$54.5K - $66K
1% of jobs
$66K - $77.5K
2% of jobs
$77.5K - $89K
7% of jobs
$89K - $100.5K
11% of jobs
$104.1K is the 25th percentile. Wages below this are outliers.
$100.5K - $112K
13% of jobs
The median wage is $122.5K / yr.
$112K - $123.5K
18% of jobs
$123.5K - $135K
19% of jobs
$140.4K is the 75th percentile. Wages above this are outliers.
$135K - $146.5K
9% of jobs
$146.5K - $158K
7% of jobs
$158K - $169.5K
6% of jobs
$169.5K - $181K
6% of jobs
$54.5K
$126K
$181K
How much do splunk siem engineer jobs pay per year?
What does a Splunk SIEM Engineer do?
What are the key skills and qualifications needed to thrive as a Splunk SIEM Engineer?
What are some common challenges faced by Splunk SIEM Engineers when integrating new data sources?
What is the difference between Splunk Siem Engineer vs Security Analyst?
| Aspect | Splunk Siem Engineer | Security Analyst |
|---|---|---|
| Certifications | Splunk Certified Power User, Splunk Certified Admin | CompTIA Security+, GIAC Security Essentials |
| Work Environment | Focus on configuring, maintaining, and optimizing Splunk SIEM tools | Monitor security alerts, investigate incidents, and implement security measures |
| Industry Usage | Primarily in cybersecurity, IT operations, and compliance | Across cybersecurity teams, incident response, and risk management |
The Splunk Siem Engineer specializes in deploying and managing Splunk SIEM solutions, ensuring data ingestion and system performance. In contrast, the Security Analyst focuses on analyzing security data, investigating threats, and responding to incidents. While both roles require security knowledge and certifications, the engineer emphasizes system setup and maintenance, whereas the analyst emphasizes threat detection and response.
What cities are hiring for Splunk Siem Engineer jobs?
Cities with the most Splunk Siem Engineer job openings:
What states have the most Splunk Siem Engineer jobs?
States with the most job openings for Splunk Siem Engineer jobs include:
What are popular job titles related to Splunk Siem Engineer jobs?
For Splunk Siem Engineer jobs, the most frequently searched job titles are:

Splunk/SIEM Engineer (5552) (TS/SCI) (Ft. Meade, MD)
Fort George G Meade, MD • On-site
Full-time
Medical, Retirement, PTO
Posted 13 days ago
Job description
This is a full-time onsite position in Ft. Meade, MD.
Essential Duties & Responsibilities
- SIEM Platform Migration (Splunk to Elastic)
- Lead the end-to-end migration of the enterprise Security Information and Event Management (SIEM) capability from Splunk to the Elastic Stack (Elasticsearch, Logstash, Kibana), including planning, stakeholder coordination, execution, and post-migration validation to ensure zero degradation in security monitoring and detection coverage.
- Develop and manage the migration roadmap and program schedule, defining phased cutover milestones, resource requirements, and risk mitigation strategies while ensuring parallel operation of both platforms during transition to maintain continuous threat detection and incident response readiness.
- Splunk Implementation and Maintenance:
- Set up and configure Splunk instances, including forwarders, indexers, and search heads.
- Onboard new data sources into Splunk while ensuring proper parsing, field extraction, and indexing.
- Manage Splunk licenses, user access controls, and configurations to maintain stability and security.
- Data Analysis and Visualization:
- Build and optimize dashboards, alerts, and reports for security monitoring, IT operations, and business use cases.
- Develop and enhance Splunk Search Processing Language (SPL) queries to facilitate advanced analytics.
- Collaborate with teams to ensure that data sources meet the requirements for analysis and visualization.
- Troubleshooting and Performance Tuning:
- Monitor the health of the Splunk system, identify issues, and implement solutions to maintain high availability and performance.
- Optimize queries, alerts, and settings to lower resource use and improve efficiency.
- Resolve data ingestion and indexing issues.
- Service Level Agreement (SLA) Management and Monitoring: •
- Maintain and monitor the Service Level Agreement (SLA) of the Splunk system, ensuring that the system meets the required uptime, performance, and data ingestion targets.
- Monitor the ingest of data sources, particularly high-value or high-impact systems, and alert stakeholders when these systems stop sending events or experience disruptions.
- Develop and implement monitoring dashboards and alerts to quickly identify and respond to SLA breaches or data ingest issues.
- Disaster Recovery and High Availability:
- Design and implement disaster recovery and high availability solutions for the Splunk system, ensuring minimal downtime and data loss in the event of a disaster or system failure.
- Develop and maintain disaster recovery plans, including backup and restore procedures, to ensure business continuity.
- Configure and manage Splunk clustering, replication, and indexing to ensure high availability and redundancy.
- Compliance and Security:
- Maintain RMF (Risk Management Framework) ATO (Authority to Operate) compliance for the Splunk system, ensuring that all security controls and configurations are in place and up-to-date.
- Ensure STIG (Security Technical Implementation Guide) compliance for the Splunk system, including configuration and vulnerability management.
- Maintain accurate and up-to-date documentation, including:
- Data flow diagrams to illustrate data ingestion and processing.
- Architecture diagrams to depict the Splunk system architecture.
- System inventories to track hardware and software components.
- Collaborate with the security team to ensure that the Splunk system meets all relevant security requirements and standards.
- SIEM Management:
- Manage the onboarding process for new systems and log types, including:
- Maintaining onboarding documents for each system/log type.
- Developing and maintaining a detailed list of event codes per operating system and application type.
- Ensure that all data sources are properly configured and sending events to the Splunk system.
- Collaborate with analysts and architects to develop and implement use cases for security monitoring and incident response.
- Collaboration and Support:
- Collaborate with architects and analysts to create and implement solutions that align with the organization's objectives.
- Provide technical support and assist end users with Splunk-related issues, ensuring timely resolution and minimal downtime.
- Documentation and Continuous Improvement:
- Document the configurations, workflows, and troubleshooting procedures to enhance team knowledge sharing.
- Research and suggest enhancements to Splunk infrastructure and analytics capabilities.
Required Skills, Experience & Education
- Active Top Secret (TS) security clearance with eligibility for SCI and NATO read-on before starting work (and willingness for SAP and CI Poly).
- Certifications:
- Splunk Enterprise Certified Architect
- Security+ (or above)
- Education
- Bachelor's degree in computer science, Information Technology, or a similar field OR Minimum of 5 years of experience working with Splunk, including installation, configuration, and management.
- Technical Skills
- 2-3 years of experience an Elastic SIEM environment
- Proficiency in managing Splunk components including forwarders, indexers, and search heads.
- Strong understanding of SPL and the capacity to create custom dashboards and reports.
- Experience in data parsing, field extraction, and indexing.
Desired Skills/Experience
- Experience transitioning a SIEM environment from Splunk to Elastic
- Experience supporting Splunk Enterprise Security (ES) or IT Service Intelligence (ITSI).
- Familiarity with scripting languages (e.g., Python, Bash) for automation.
- Knowledge of security operations, including SIEM best practices.
Application Deadline: September 28, 2026
#CJPOST
#LI-onsite
The SMX salary determination process takes into account a number of factors, including but not limited to, geographic location, Federal Government contract labor categories, relevant prior work experience, specific skills, education and certifications. At SMX, one of our Core Values is to Invest in Our People so we offer a competitive mix of compensation, learning & development opportunities, and benefits. Some key components of our robust benefits include health insurance, paid leave, and retirement.
The proposed salary for this position is:
$160,000-$190,000 USD
At SMX®, we are a team of technical and domain experts dedicated to enabling your mission. From priority national security initiatives for the DoD to highly assured and compliant solutions for healthcare, we understand that digital transformation is key to your future success.
We share your vision for the future and strive to accelerate your impact on the world. We bring both cutting edge technology and an expansive view of what's possible to every engagement. Our delivery model and unique approaches harness our deep technical and domain knowledge, providing forward-looking insights and practical solutions to power secure mission acceleration.
SMX is an Equal Opportunity employer including disabilities and veterans.
Selected applicant may be subject to a background investigation and/or education verification.
SMX does not sponsor a new applicant for employment authorization or immigration related support for this position (i.e. H1B, F-1 OPT, F-1 STEM OPT, F-1 CPT, J-1, TN, E-2, E-3, L-1 and O-1, or any EADs or other forms of work authorization that require immigration support from an employer).
About SMX
Sourced by ZipRecruiter
Our tradition of delivering innovative, technical solutions dates back to 1995, however, you may know us better by one of our legacy company names: Trident Technologies, Smartronix, Datastrong or C2S Consulting Group. With the support of OceanSound Partners, our private equity investment sponsor, we began operating as one business starting in 2019 and became SMX in 2021. We operate in close proximity to our clients around the globe and have core locations in Alabama, California, DC Metro, Florida, Hawaii, Maryland, and Massachusetts. Today, as SMX, we are one team and together empower government and commercial enterprises to become more effective, innovative, and resilient, no matter what challenges they face.
Industry
It services
Company size
1,001 - 5,000 Employees
Headquarters location
Hollywood, MD, US