Demo

Splunk - Sentinel Engineer || Remote || W2 Only

Xlysi
New York, NY Remote Full Time
POSTED ON 2/9/2025
AVAILABLE BEFORE 4/9/2025

Splunk - Sentinel Engineer
Remote.
Contract role

Responsibilities:
  • Splunk Administration: Manage and maintain the Splunk platform, including indexers, search heads, forwarders, and apps. Perform upgrades, patching, and performance tuning. Develop and maintain Splunk dashboards, reports, and alerts. Troubleshoot Splunk performance issues and ensure system availability.
  • Migration to Microsoft Sentinel: Lead and execute the migration of security logs and data from Splunk to Microsoft Sentinel. Develop and implement data ingestion pipelines. Configure and customize Sentinel rules, playbooks, and workbooks. Ensure a seamless transition with minimal disruption to security monitoring.
  • Security Monitoring and Incident Response: Monitor security events and alerts generated by Splunk and Sentinel. Investigate security incidents and provide timely responses. Collaborate with the security team to develop and implement security policies and procedures.
  • SIEM Optimization: Continuously optimize the performance and effectiveness of the SIEM solutions. Identify and address gaps in log coverage. Develop and implement new use cases and detection rules.
  • Documentation: Maintain comprehensive documentation of the SIEM architecture, configurations, and processes.
  • Collaboration: Work closely with other IT teams, including security, networking, and systems administration, to ensure the effective integration of SIEM solutions with other systems.
  • Automation: Automate routine tasks and processes using scripting languages (e.g., Python, PowerShell) to improve efficiency and reduce manual effort.
Required Skills:
  • Splunk Expertise: Extensive experience with Splunk administration, including installation, configuration, maintenance, and troubleshooting. Proficiency in Splunk Search Processing Language (SPL). Experience with Splunk Enterprise Security is a plus. Keywords: Splunk, SPL, Splunk Administration, Splunk Enterprise Security
  • Microsoft Sentinel: Experience with Microsoft Sentinel, including deployment, configuration, and management. Knowledge of KQL (Kusto Query Language). Experience with migrating data to Sentinel. Keywords: Microsoft Sentinel, KQL, Azure Sentinel, Data Migration
  • SIEM Principles: Strong understanding of security information and event management (SIEM) concepts and best practices. Keywords: SIEM, Security Information and Event Management
  • Security Monitoring: Experience with security monitoring and incident response. Knowledge of common security threats and vulnerabilities. Keywords: Security Monitoring, Incident Response, Threat Detection
  • Scripting: Proficiency in scripting languages such as Python or PowerShell. Keywords: Python, PowerShell, Scripting, Automation
  • Cloud Computing: Familiarity with cloud computing platforms, preferably Microsoft Azure. Keywords: Azure, Cloud Computing
  • Networking: Basic understanding of networking concepts and protocols. Keywords: Networking, TCP/IP
  • Operating Systems: Experience with Linux and Windows operating systems. Keywords: Linux, Windows
  • Problem-solving: Strong analytical and problem-solving skills.
  • Communication: Excellent communication and collaboration skills. 1  
Preferred Skills:
  • Relevant certifications (e.g., Splunk Certified Administrator, Microsoft Certified: Azure Security Engineer Associate).
  • Experience with other security tools and technologies.
  • Knowledge of IT compliance frameworks (e.g., NIST, ISO 27001).
Keywords for Job Boards: Splunk Engineer, Sentinel Engineer, SIEM Engineer, Security Engineer, Azure Security, KQL, Python, PowerShell, Security Monitoring, Incident Response

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Splunk - Sentinel Engineer || Remote || W2 Only?

Sign up to receive alerts about other jobs on the Splunk - Sentinel Engineer || Remote || W2 Only career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$117,024 - $149,811
Income Estimation: 
$137,568 - $176,908
Income Estimation: 
$139,945 - $168,577
Income Estimation: 
$164,835 - $201,088
Income Estimation: 
$135,994 - $168,063
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$70,462 - $84,818
Income Estimation: 
$77,991 - $108,747
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$139,945 - $168,577
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Xlysi

Xlysi
Hired Organization Address Waukegan, IL Full Time
Responsibilities Design and Map Technical Specifications per business requirements. Communicate structure of models to d...
Xlysi
Hired Organization Address Chicago, IL Full Time
Sr. FileNet Developer Location: Chicago, IL. Contract role. Responsibilities Design, develop, and maintain Java-based ap...
Xlysi
Hired Organization Address Gurnee, IL Full Time
Job Responsibilities: Responsible for the overall Operations of Windows 2003,2008,2012 ,2016 and 2019 servers Extensive ...
Xlysi
Hired Organization Address Chicago, IL Full Time
Key Areas of Responsibility • Partner with business leaders to understand key objectives to design optimized data produc...

Not the job you're looking for? Here are some other Splunk - Sentinel Engineer || Remote || W2 Only jobs in the New York, NY area that may be a better fit.

Data Integration Engineer/ 100% Remote/ Only on W2 role

Stash Talent Services, New York, NY

Infrastructure System Engineer(Only W2)

3i Infotech Inc., New York, NY

AI Assistant is available now!

Feel free to start your new journey!