1

Splunk Siem Engineer Jobs (NOW HIRING)

SIEM Engineer II

Austin, TX ยท On-site

$133K - $166K/yr

As a SIEM Engineer II , you will play a key role in the implementation, optimization, and day-to ... SecOps), Splunk, Exabeam, Microsoft Sentinel). * Cribl Development - Support the design and ...

SIEM Engineer II

Chicago, IL ยท On-site

$133K - $166K/yr

As a SIEM Engineer II , you will play a key role in the implementation, optimization, and day-to ... SecOps), Splunk, Exabeam, Microsoft Sentinel). * Cribl Development - Support the design and ...

Splunk Admin

Dallas, TX ยท On-site

$110K - $130K/mo

Recommend and develop on-demand dashboards, rules, alerts, and reports using Splunk SIEM * Management and support parsing fields from unstructured logs * Administration and support for Splunk cluster ...

We are looking for a skilled Splunk Developer to join a SIEM team within a leading financial organization. The role involves developing and maintaining Splunk-based security solutions, integrating ...

Showing results 41-60

Splunk Siem Engineer information

See salary details

$54.5K

$126K

$181K

How much do splunk siem engineer jobs pay per year?

As of Sep 9, 2026, the average yearly pay for splunk siem engineer in the United States is $126,034.00, according to ZipRecruiter salary data. Most workers in this role earn between $104,500.00 and $145,500.00 per year, depending on experience, location, and employer.

What does a Splunk SIEM Engineer do?

A Splunk SIEM Engineer is responsible for designing, implementing, and managing Splunk Security Information and Event Management (SIEM) solutions within an organization. They monitor security events, create dashboards, and develop alerts to detect and respond to potential threats. Their work involves integrating various data sources into Splunk, maintaining system performance, and ensuring compliance with security policies. Splunk SIEM Engineers also play a key role in incident response and help organizations improve their overall security posture.

What are the key skills and qualifications needed to thrive as a Splunk SIEM Engineer?

To thrive as a Splunk SIEM Engineer, you need strong expertise in security information and event management (SIEM), log analysis, scripting, and a background in cybersecurity, often supported by a computer science degree or related certifications. Familiarity with Splunk Enterprise Security, Splunk Query Language (SPL), and certifications like Splunk Certified Power User or Splunk Certified Admin are commonly required. Analytical thinking, problem-solving skills, and effective communication help engineers interpret security data and collaborate with IT teams. These skills are crucial for proactively detecting threats, optimizing security operations, and ensuring the resilience of organizational IT environments.

What are some common challenges faced by Splunk SIEM Engineers when integrating new data sources?

Splunk SIEM Engineers often encounter challenges such as inconsistent log formats, lack of documentation from data source owners, and ensuring data normalization for effective correlation and analysis. Additionally, dealing with high data volume while maintaining system performance and security compliance can be demanding. Close collaboration with IT, security teams, and application owners is critical to troubleshoot issues and fine-tune data onboarding processes.

What is the difference between Splunk Siem Engineer vs Security Analyst?

AspectSplunk Siem EngineerSecurity Analyst
CertificationsSplunk Certified Power User, Splunk Certified AdminCompTIA Security+, GIAC Security Essentials
Work EnvironmentFocus on configuring, maintaining, and optimizing Splunk SIEM toolsMonitor security alerts, investigate incidents, and implement security measures
Industry UsagePrimarily in cybersecurity, IT operations, and complianceAcross cybersecurity teams, incident response, and risk management

The Splunk Siem Engineer specializes in deploying and managing Splunk SIEM solutions, ensuring data ingestion and system performance. In contrast, the Security Analyst focuses on analyzing security data, investigating threats, and responding to incidents. While both roles require security knowledge and certifications, the engineer emphasizes system setup and maintenance, whereas the analyst emphasizes threat detection and response.

More about Splunk Siem Engineer jobs

What cities are hiring for Splunk Siem Engineer jobs?

Cities with the most Splunk Siem Engineer job openings:

What states have the most Splunk Siem Engineer jobs?

States with the most job openings for Splunk Siem Engineer jobs include:

What are popular job titles related to Splunk Siem Engineer jobs?

For Splunk Siem Engineer jobs, the most frequently searched job titles are:

Infographic showing various Splunk Siem Engineer job openings in the United States as of September 2026, with employment types broken down into 1% Internship, 92% Full Time, 3% Part Time, and 4% Contract. Highlights an 85% Physical, 4% Hybrid, and 11% Remote job distribution, with an average salary of $126,034 per year, or $60.6 per hour.

SIEM Engineer - Splunk, Cribl, Exabeam, Sentinel

Chicago, IL โ€ข On-site

Request Technology, LLC
1 - 10 employees

Other

Posted 23 days ago


Job description

***We are unable to sponsor as this is a permanent full-time role***

***Hybrid, 3 days onsite, 2 days remote***

Responsibilities:

  • Assist in the implementation, administration, and ongoing optimization of the Firm s SIEM platform (e.g., Google Security Operations (SecOps), Splunk, Exabeam, Microsoft Sentinel).
  • Support the design and maintenance of Cribl pipelines, including data routing, filtering, enrichment, and performance optimization.
  • Build and maintain integrations for standard and custom log sources using APIs, agents, syslog, and cloud-native logging services.
  • Partner with Cybersecurity Operations to develop and refine SIEM use cases, correlation rules, and alerting logic.
  • Create and enhance dashboards, searches, and reports to support SOC (Security Operations Center) operations and threat hunting.
  • Contribute to documentation of SIEM architecture, data flows, onboarding processes, and operational procedures.
  • Help establish and monitor data quality standards to ensure reliable and accurate telemetry.
  • Provide support during security incidents, assisting with investigation and analysis efforts.
  • Stay current on SIEM technologies, security analytics, and observability trends to enhance capabilities.

Qualifications

  • Bachelor s degree or equivalent professional experience required.
  • Minimum of 3 5 years in IT or engineering, with at least 2 3 years focused on SIEM, logging, or security analytics.
  • Hands-on experience working with SIEM platforms such as Google SecOps (Chronicle), Splunk, Exabeam, or Microsoft Sentinel.
  • Experience working with Cribl, including pipeline configuration and log onboarding, preferred.
  • Familiarity with integrating log sources using APIs, syslog, or agents.
  • Experience building dashboards, alerts, and queries to support security monitoring and operations.
  • Understanding of common log sources, including endpoint, network, identity, cloud, SaaS (Software as a Service), and application logs.
  • Exposure to scripting or query languages (e.g., SPL, KQL, Python, Regex) and cloud platforms (Amazon Web Services (AWS), Microsoft Azure, Google Cloud Platform (Google Cloud Platform)) is a plus.