1

Splunk Soar Jobs in Michigan (NOW HIRING)

... SOAR platforms). • Experience with detection tuning, threat hunting, and log analysis. • ... Preferred : • Experience with Splunk, Microsoft Sentinel, Defender XDR, and/or similar platforms ...

Strong understanding of security operations tools (SIEM, XDR, EDR, SOAR platforms). * Experience ... Experience with Splunk, Microsoft Sentinel, Defender XDR, and/or similar platforms. * Experience ...

Strong understanding of security operations tools (SIEM, XDR, EDR, SOAR platforms). * Experience ... Experience with Splunk, Microsoft Sentinel, Defender XDR, and/or similar platforms. * Experience ...

Splunk Soar information

See Michigan salary details

$38

$51

$75

How much do splunk soar jobs pay per hour?

As of Aug 1, 2026, the average hourly pay for splunk soar in Michigan is $51.71, according to ZipRecruiter salary data. Most workers in this role earn between $43.65 and $56.78 per hour, depending on experience, location, and employer.

What is the difference between Splunk Soar vs Splunk Security Analyst?

AspectSplunk SoarSplunk Security Analyst
CertificationsSplunk Certified SOAR User, Security certificationsCompTIA Security+, CISSP, Splunk certifications
Work EnvironmentSecurity operations centers, incident response teamsSecurity teams, SOCs, incident analysis
Primary FocusAutomating security workflows, incident response automationMonitoring security alerts, analyzing threats

Splunk Soar specializes in automating security incident response and streamlining workflows within security operations centers. In contrast, Splunk Security Analysts focus on monitoring security alerts, analyzing threats, and supporting incident investigations. While both roles require security knowledge and Splunk certifications, Splunk Soar emphasizes automation skills, whereas Security Analysts focus on threat analysis and monitoring.

What are popular job titles related to Splunk Soar jobs in Michigan? For Splunk Soar jobs in Michigan, the most frequently searched job titles are:
What job categories do people searching Splunk Soar jobs in Michigan look for? The top searched job categories for Splunk Soar jobs in Michigan are:
What cities in Michigan are hiring for Splunk Soar jobs? Cities in Michigan with the most Splunk Soar job openings:
Infographic showing various Splunk Soar job openings in Michigan as of June 2026, with employment types broken down into 83% Full Time, 15% Part Time, and 2% Contract. Highlights an 87% Physical, 6% Hybrid, and 7% Remote job distribution, with an average salary of $107,561 per year, or $51.7 per hour.

Lead SOC Analyst

UFP Industries

Grand Rapids, MI • On-site

Full-time

Re-posted yesterday


UFP Industries rating

7.5

Company rating: 7.5 out of 10

Based on 90 frontline employees who took The Breakroom Quiz

261st of 537 rated manufacturers


Job description

Job Summary:
UFP Industries is seeking a Lead SOC Analyst to oversee the daily operations of their Security Operations Center. This role involves leading incident response, managing vendor relationships, developing SOC processes, and providing technical leadership to the SOC team.
Responsibilities:
• Act as the senior escalation point for security incidents, providing hands-on investigation and response.
• Perform advanced threat hunting, incident analysis, and root cause determination.
• Lead and coordinate incident response activities across IT, infrastructure, and application teams.
• Validate and enrich alerts generated by internal tools and external MDR provider.
• Ensure timely containment, remediation, and closure of security incidents.
• Serve as the primary operational liaison with our MDR provider.
• Manage day-to-day interactions including alert triage alignment, escalation handling, and service quality.
• Review MDR detections, investigations, and recommendations for accuracy and relevance.
• Identify and drive improvements in detection coverage, alert fidelity, and response processes.
• Participate in regular service reviews and ensure deliverables meet organizational expectations.
• Provide technical leadership and guidance to SOC analysts.
• Lead daily SOC operations including prioritization of alerts, workload management, and escalation decisions.
• Mentor and develop analysts through coaching, training, and knowledge sharing.
• Establish expectations for investigation quality, documentation, and response timelines.
• Support hiring, onboarding, and skill development of SOC team members.
• Develop, document, and maintain SOC standard operating procedures (SOPs), playbooks, and runbooks.
• Identify gaps in SOC processes and implement improvements to increase consistency and effectiveness.
• Define and track SOC metrics and KPIs (e.g., MTTR, alert volume, false positives, escalation rates).
• Standardize incident documentation and evidence collection to support audit and compliance requirements.
• Drive continuous improvement initiatives aligned to industry best practices and organizational goals.
• Collaborate with engineering and security teams to improve detection logic and use cases.
• Develop and tune detection rules within SIEM, XDR, and MDR platforms.
• Identify gaps in logging and telemetry and work with teams to onboard required data sources.
• Ensure monitoring coverage for systems handling sensitive or critical data.
• Contribute to threat modeling and detection strategy development.
• Communicate security incidents, risks, and trends to technical and non-technical stakeholders.
• Provide clear and concise reporting on incident outcomes and lessons learned.
• Partner with infrastructure, application, and business teams to improve security practices.
• Support audit, compliance, and risk management activities as needed.
Qualifications:
Required:
• Bachelor’s degree in computer science, information security, or equivalent experience.
• 7+ years of experience in a SOC, incident response, or cybersecurity operations role.
• Proven experience leading incident investigations and managing escalations.
• Experience working with a managed detection and response (MDR) provider (preferred).
• Strong understanding of security operations tools (SIEM, XDR, EDR, SOAR platforms).
• Experience with detection tuning, threat hunting, and log analysis.
• Demonstrated ability to develop SOC processes, playbooks, and operational documentation.
• Strong leadership, mentoring, and team development skills.
• Excellent analytical, problem-solving, and decision-making capabilities.
• Strong written and verbal communication skills.
Preferred:
• Experience with Splunk, Microsoft Sentinel, Defender XDR, and/or similar platforms.
• Experience working in a hybrid SOC model (internal + MDR).
• Familiarity with compliance frameworks (e.g., NIST, CMMC).
• Relevant certifications such as CISSP, GCIA, GCIH, or equivalent.
Company:
UFP Industries manufactures and sells variety of products used in residential and commercial construction such as wood decks and lumbers. Founded in 1955, the company is headquartered in Michigan, USA, with a team of 10001+ employees. The company is currently Late Stage.

What UFP Industries employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


UFP Industries logo

About UFP Industries

Sourced by ZipRecruiter

Universal Forest Products, Inc., is a U.S.-based global corporation that finds reward in its roots and its hard-earned success. Founded in 1955 as a supplier of lumber to the manufactured housing industry, Universal today is a multibillion-dollar holding company with subsidiaries around the globe that serve three robust markets: retail, industrial and construction. Since 1993, Universal has been publicly traded (Nasdaq: UFPI). We re headquartered in Grand Rapids, Michigan.

Industry

Wood product manufacturing

Company size

10,000+ Employees

Headquarters location

Grand Rapids, MI, US

Year founded

1955

Social media