Our Client is seeking a Cyber Security Principal – Splunk & Cribl Engineer to support and expand its Cyber Risk Defense program. This is a high-impact, principal-level role responsible for engineering and administering a large-scale enterprise Splunk and Cribl environment that supports cyber threat detection and response. Summary: This position plays a critical role in protecting systems that support secure healthcare delivery to tens of millions of people. The ideal candidate will be a hands-on technical expert with deep experience in Splunk Enterprise, Splunk Cloud, and Cribl Stream, with the ability to drive both day-to-day operations and long-term improvements in enterprise SIEM capabilities.
Key Responsibilities:
- Administer and optimize Splunk Enterprise and Splunk Cloud environments
- Manage Cribl data onboarding and pipeline configurations
- Support threat detection, incident response, and vulnerability remediation efforts
- Perform and document root cause analysis and vulnerability assessments
- Develop and enhance security analytics and threat intelligence capabilities
- Investigate and document anomalous events and escalated security incidents
- Drive improvements across security processes, tools, and monitoring strategies
- Translate risk analysis into actionable detection and monitoring solutions
- Support the full incident response lifecycle, including recommendations for improvement
- Establish and maintain security metrics and reporting on program effectiveness
- Contribute to the ongoing evolution of enterprise cyber defense capabilities
Requirements
- Bachelor’s degree in Computer Science, Business Administration, Mathematics, Social Science, or related field
- Certifications: Splunk Certified Administrator; Cribl Certified Admin (Stream)
- 8+ years of IT or related experience
- 5+ years of Splunk administration experience
- Strong expertise in Splunk Enterprise and Splunk Cloud administration and engineering
- Experience with Cribl Stream, including data onboarding and pipeline management
- Proven experience managing large-scale Linux/Unix environments
- Hands-on experience supporting enterprise SIEM platforms and security operations
Technical Environment:
- Splunk Enterprise
- Splunk Cloud
- Cribl Stream
- Linux/Unix systems
-
Are you interested in this position?
Apply by clicking on the “Apply Now” button below!
#AlbionarcJobs#FintechJobs
#AsiaJobs#MiddleEastCareers
#TechTalent#FintechRecruitment
#FinanceOpportunities#
