Demo

Splunk Intel Developer

Nexwave Inc
Wilmington, DE Full Time
POSTED ON 1/22/2025
AVAILABLE BEFORE 4/22/2025

Job Description

Job Description

Role : Splunk Intel Developer

Duration : Long term contract

Location : Wilmington, DE (Onsite)

Rate : 60

Exp 8

We are seeking an experienced and skilled Splunk Intel Developer to join our team and play a key role in integrating threat intelligence into Cribl and Splunk platforms.

The ideal candidate will have a strong understanding of pipeline management in Cribl, experience with lookups, and a proven ability to work with large datasets, optimizing them for large retroactive queries.

This is an exciting opportunity to leverage your expertise in Splunk content development and threat intelligence while helping to enhance the security capabilities of the organization.

Key Responsibilities :

  • Threat Intelligence Integration : Integrate threat intelligence feeds and external threat data into Splunk and Cribl , ensuring effective correlation and analysis within security use cases.
  • Cribl Pipeline Management : Manage and optimize data pipelines in Cribl , ensuring seamless integration of various data sources while maintaining high efficiency and scalability.
  • Lookup Management : Work with Splunk lookups to enrich event data, leveraging threat intelligence to enhance data quality and accuracy for analysis.
  • Data Optimization : Collaborate with teams to design and implement data ingestion strategies, ensuring large datasets are optimized for fast, efficient querying, particularly for retroactive queries .
  • Splunk Content Development : Develop and maintain Splunk apps , knowledge objects , search queries , and dashboards to facilitate security analysis and alerting.
  • Threat Detection and Correlation : Develop and implement custom detection rules and correlation searches that leverage threat intelligence data for proactive security monitoring.
  • Collaboration : Work closely with security analysts, threat hunters, and other stakeholders to ensure that the integration of threat intelligence is aligned with organizational security objectives.
  • Performance Tuning : Troubleshoot and resolve performance issues in Splunk searches, queries, and dashboards, ensuring high system availability and responsiveness under large query loads.
  • Documentation : Create and maintain documentation on the integration processes, pipeline management, and content development for internal knowledge sharing.

Required Skills and Qualifications :

  • Experience with Splunk : 5 years of experience working with Splunk Enterprise Security (ES) or Splunk Cloud . Hands-on experience in content development , including search queries , dashboards , alerts , and reports .
  • Experience with Cribl : Proficient in managing and optimizing data pipelines using Cribl LogStream or similar data management tools. Knowledge of the ingestion process, filtering, and routing strategies.
  • Threat Intelligence Integration : Solid understanding of threat intelligence concepts, including the integration of TI feeds into SIEM platforms like Splunk.
  • Lookup and Data Enrichment : Experience working with Splunk lookups and field extraction to enrich data for enhanced search and analysis.
  • Data Optimization : Demonstrated ability to manage and optimize large datasets for performance, particularly in high-volume environments. Experience with large-scale data queries and retroactive analysis.
  • Security Experience : Strong knowledge of security operations , including threat detection, incident response, and use case development in Splunk.
  • Scripting / Programming : Proficiency in Python , Shell scripting , or other programming languages for automating tasks and optimizing data flows.
  • Analytical Skills : Ability to analyze large volumes of security data and distill actionable insights for security operations teams.
  • Problem Solving : Strong troubleshooting and problem-solving skills, especially with large, complex datasets.
  • Collaboration and Communication : Excellent communication skills with the ability to explain technical concepts to non-technical stakeholders and collaborate effectively across teams.
  • Preferred Qualifications :

  • Splunk Certifications : Splunk Power User, Splunk Certified Admin, or Splunk Certified Architect certification is a plus.
  • Threat Intelligence Platforms : Familiarity with commercial and open-source threat intelligence platforms (e.g., MISP, STIX / TAXII).
  • Cloud Security Experience : Experience working in cloud environments, such as AWS, Azure, or GCP, and integrating cloud-native threat intelligence into Splunk.
  • If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
    Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

    What is the career path for a Splunk Intel Developer?

    Sign up to receive alerts about other jobs on the Splunk Intel Developer career path by checking the boxes next to the positions that interest you.
    Income Estimation: 
    $117,024 - $149,811
    Income Estimation: 
    $137,568 - $176,908
    Income Estimation: 
    $139,945 - $168,577
    Income Estimation: 
    $164,835 - $201,088
    Income Estimation: 
    $135,994 - $168,063
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $70,462 - $84,818
    Income Estimation: 
    $77,991 - $108,747
    Income Estimation: 
    $87,093 - $107,335
    Income Estimation: 
    $140,233 - $181,029
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $87,093 - $107,335
    Income Estimation: 
    $111,725 - $147,313
    Income Estimation: 
    $112,673 - $137,290
    Income Estimation: 
    $140,233 - $181,029
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $112,673 - $137,290
    Income Estimation: 
    $139,945 - $168,577
    Income Estimation: 
    $140,233 - $181,029
    Income Estimation: 
    $161,209 - $233,553
    View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

    Job openings at Nexwave Inc

    Nexwave Inc
    Hired Organization Address Dallas, TX Full Time
    Job Details Title: C Embedded Engineer Location: Dallas, TX ( 5 Days Onsite in office / Need Locals Need 8 years experie...
    Nexwave Inc
    Hired Organization Address Santa Clara, CA Full Time
    Job Details Role : Salesforce Solutions Architect Location : Santa Clara, CA(Onsite) Long term Job Description 10 years ...
    Nexwave Inc
    Hired Organization Address Chicago, IL Contractor
    Role : AWS Python Developer Location: Chicago, IL ( Day1 Onsite ) Need F2F Need 10 years exp Primary Skills: • Programmi...
    Nexwave Inc
    Hired Organization Address New York, NY Contractor
    Job Title : APM Engineer with DataDog Location : New York, NY (Hybrid) Long term Knowledge, Skills & Experience Required...

    Not the job you're looking for? Here are some other Splunk Intel Developer jobs in the Wilmington, DE area that may be a better fit.

    Cribl / Splunk Intel Developer

    Nous Infosystems, Wilmington, DE

    Cribl and Splunk Intel Developer

    Hirextra, Wilmington, DE

    AI Assistant is available now!

    Feel free to start your new journey!