This job is no longer available
This job expired on 21/09/2026. It no longer accepts applications.
IT Security SIEM Engineer – Splunk (Hybrid, New York)
Innovee Consulting LLC · New York
Job description
About the role
We are seeking an experienced IT Security SIEM Engineer to join our New York team on a hybrid basis. You will be responsible for engineering, operating, and administrating our Splunk‑based security monitoring platform, supporting both cloud and on‑premise environments.
Key responsibilities
- Provide engineering and administration for Splunk components (search heads, indexers, deployers, forwarders, apps).
- Onboard, normalize, and maintain log sources from applications, databases, networks, cloud services, and endpoints.
- Develop complex Splunk queries, dashboards, reports, and alerts for technical and executive audiences.
- Support day‑to‑day security monitoring, triage alerts, and assist incident investigations with log, endpoint, and network telemetry.
- Create and maintain automation scripts (PowerShell, Python, Bash) to streamline log ingestion, alert validation, reporting, and compliance checks.
- Monitor and manage endpoint security tools (EDR, antivirus), assist with vulnerability remediation, patch validation, and security configuration reviews.
- Review system and firewall logs, support user access reviews, and document security configurations.
Required profile
- Hands‑on experience with Splunk architecture and administration.
- Strong understanding of security monitoring, log analysis, and incident response processes.
- Proficiency in scripting languages such as PowerShell, Python, or Bash for automation.
- Familiarity with endpoint detection and response (EDR) solutions and antivirus tools.
- Ability to work collaboratively with SOC teams and internal stakeholders.
Required skills
- Splunk (search heads, indexers, forwarders, apps)
- PowerShell
- Python
- Bash
- EDR/antivirus tools
- Firewall and network log monitoring
- Log correlation and threat detection
- Security automation
What we offer
- Hybrid work model (3 days onsite, 2 days remote)
- Long‑term engagement with a leading cybersecurity environment
- Opportunities to develop advanced Splunk and automation expertise
Questions fréquentes
Why are you reporting this job?
Explore further
Salaries, guides and searches in the United States.
A question about this job?
Ask it here: you will get the full job summary by e-mail, right away.
Boost your chances
Upload your CV — we will match you with relevant openings.
Analyzing your CV...
Innovee Consulting LLC
New York