Create Email Alert

ⓘ There was an unexpected error processing your request.

Please refresh the page and try again.

If the problem persists, please contact us with your issue.

Email address is already registered

You can always manage your preferences and update your interests to ensure you receive the most relevant opportunities.

Would you like to [visit your alert settings] now?

Success! You're now signed up for Job Alerts

Get ready to discover your next great opportunity.

Similar Jobs

  • ITmPowered

    Sr. Splunk Enterprise Security App Dev/Administrator (Remote) – (BHJOB22048_762)

    Seattle, WA, United States

    • Ending Soon

    Sr. Splunk Enterprise Security App Dev/Administrator (Remote) – ITmPowered Sr. Splunk Enterprise Security Developer Administrator will develop, create, integrate, and administer a highly advanced Splunk Security application (eSAR) developed internally to detect improper access to protected data by employees and malicious user activity. Develop Spl

    Job Source: ITmPowered
  • Quadtec Solutions, Inc.

    Splunk Engineer Admin

    Bellevue, WA, United States

    • Ending Soon

    Job Description Job Description The Splunk Engineer / Administrator will provide Splunk administration support, including operation and maintenance of the log aggregation and Security Information and Event Management (SIEM) platform. The Splunk Administrator will perform systems analysis, modify and update systems and related data ingestion parame

    Job Source: Quadtec Solutions, Inc.
  • Optiv

    Sr. Splunk Engineer | Remote, USA

    Seattle, WA, United States

    • Ending Soon

    This position will be fully remote and can be hired anywhere in the continental U.S. The Sr. Splunk Engineer works within the Optiv Security’s 24x7x365 Security Operations Center as a member of the Advanced Fusion Center (AFC) team. This individual will be responsible for following Optiv AFC processes & procedures, as well as managing and maintain

    Job Source: Optiv
  • Georgia IT Inc

    Sr. .Net Dev / Architect with Azure or AWS -Remote

    Seattle, WA, United States

    • Ending Soon

    Sr. .Net Dev / Architect with Azure or AWS - must be willing to do 2-hour coding interview. Location - Seattle, WA - Remote - must be willing to work PST Duration - 6 months + USC & GC Preferred. No Third-party C2C available for this job Required Experience • Looking for 10+ years' experience. • 6+ years of experience advanced working as an SDE

    Job Source: Georgia IT Inc
  • Splunk

    Sr. Software Engineer, Frontend-Design System

    Seattle, WA, United States

    • Ending Soon

    Splunk is here to build a safer and more resilient digital world. The world's leading enterprises use our unified security and observability platform to keep their digital systems secure and reliable. While customers love our technology, it's our people that make Splunk stand out as an amazing career destination and why we've won so many awards as

    Job Source: Splunk
  • Edjuster

    Sr. Java Developer

    Seattle, WA, United States

    • Ending Soon

    SmarTek21: Sr Java Developer SmarTek21 is looking for a few great Sr. Java Developers for an onsite role in the Seattle, WA area. The position is currently a hybrid onsite/remote model but will 100% onsite at some time in the future. The position must have the following: Minimum of 4 years of hands-on Java development experience. Strong experi

    Job Source: Edjuster
  • ITmPowered

    Splunk Threat Content Developer – Cloud API Threat Detection (BHJOB22048_760)

    Seattle, WA, United States

    Splunk Threat Content Developer – Cloud and API Threat Detection – Remote Splunk Threat Content Developer will develop, implement, and oversee content development for Threat Detection, Threat Analysis, and Threat investigations focused on Cloud Security and API Security. Bring your Splunk Content Engineering in Threat Detection, Threat analysis, T

    Job Source: ITmPowered
  • Edjuster

    Lead Full Stack Java Developer

    Seattle, WA, United States

    • Ending Soon

    SmarTek21: Sr. Full Stack Java Developer SmarTek21 is looking for a few great Full Stack Java Developers for an onsite role located in Issaquah, WA – just about 20 minutes from Seattle, WA. Currently a hybrid onsite/remote model but eventually it will be onsite 100%. The position must have the following: Minimum of 5 years of hands-on Java devel

    Job Source: Edjuster

Sr. Splunk Enterprise Security App Dev/Administrator (Remote)

Seattle, WA, United States

Sr. Splunk Enterprise Security App Dev/Administrator (Remote) - ITmPowered

Sr. Splunk Enterprise Security Developer Administrator will develop, create, integrate, and administer a highly advanced Splunk Security application (eSAR) developed internally to detect improper access to protected data by employees and malicious user activity. Develop Splunk Apps and add-ons in support of Security Access cyber threat monitoring, threat management and data compliance across numerous business critical enterprise applications. Develop advanced Splunk ES Application functionality. Work with Splunk Developers using Agile development and administration using Agile project management methodologies. Work with the Splunk Engineering team, and support Splunk development, data integrations, and application administration using Agile methodologies. Splunk Enterprise Certified Architect OR Splunk Certified Developer required. Splunk Core Certified Consultant Preferred.

RESPONSIBILITIES:

Administering Splunk and Splunk App for Enterprise Security (ES) log management, ingestion, normalization.

Advanced Splunk analytics and the development and administration of custom Splunk applications.

Splunk data integrations with business-critical enterprise applications and systems.

Translating feedback from the business to Splunk technical requirement and solutions.

Develop specialized Splunk Security and Compliance applications, add-ons, data models, dashboards, content using Python, Splunk SPL, Splunk SimpleXML (OR JavaScript, CSS), Bash.

Develop custom Splunk applications and Add-Ons for inclusion of access events per use case criteria.

Leverage Modular design to onboard access/security logging applications and include in incident scoring.

Onboard access logging applications via modular design

Develop Splunk Risk scoring based on compliance conditions to determine suspicious access events.

Develop custom risk scoring to weed out white noise and only show actionable incidents to SOC Analysts.

Develop Dashboards for Security Analysts with detailed drill down capability for incident response.

Develop triage workflows for analysts to assign and track ongoing investigations.

Develop summary indexing enrichment of access events with IAM data, Application data, Break-the-Glass logs.

Aggregate access event data for specific criteria.

Enable fast searching across fully enriched access events over long periods of time.

Develop Break-the-Glass correlations in Splunk for contextual user access / app data mapping & monitoring.

Skills and experience: Active Splunk Enterprise Certified Architect or Splunk Certified Developer - Required at a minimum.

Splunk Core Certified Consultant - strongly preferred.

Required Experience: In addition to active Splunk certification(s), must also have experience with the following: Python development - Proficiency in Python programming language

Splunk SimpleXML or web development (JavaScript, CSS)

Splunk app & add-on development

Splunk data modeling

Strong experience in Splunk development, building dashboards, reports and lookup tables.

Programming experience (Python and Splunk SimpleXML OR JavaScript, CSS)

Working knowledge of Splunk including SPL, indexers, forwarders, search heads

Experience in OOAD, agile processes, design patterns

Expertise in large scale cyber security data analytics, identifying data-driven threat collection opportunities.

Prior Information security analysis experience in a Cyber Security Operations Center (CSOC)

Soft skills Ability to collaborate with others, leveraging many project approaches (Agile/Scrum, Waterfall, Gantt Charts)

Comfortable working remotely with team members around the country. Self-starter with intellectual curiosity

LOGISTICS: Work remotely anywhere in Domestic US. Preferred locations Colorado or Georgia.

Contract role through end of the year with potential for extension and/or conversion to perm.

COVID-19 Vaccine and Booster Required - OR must provide valid medical exemption from doctor in advance.

Must be able to successfully pass a 12-panel drug screen, 10-year background check, employment verification.

You will need to be a current US Citizen or valid Green Card holder. No need for visa now or in future. This role is not able to offer visa transfer or sponsorship now or in the future.

W2 only - No sub vendors. Sponsorship NOT available.

Must have direct contact information on resume (phone / email) to be considered.

Apply

Create Email Alert

Create Email Alert

Sr. Splunk Enterprise Security App Dev/Administrator (Remote) jobs in Seattle, WA, United States

ⓘ There was an unexpected error processing your request.

Please refresh the page and try again.

If the problem persists, please contact us with your issue.

Email address is already registered

You can always manage your preferences and update your interests to ensure you receive the most relevant opportunities.

Would you like to [visit your alert settings] now?

Success! You're now signed up for Job Alerts

Get ready to discover your next great opportunity.