Security Engineer - Splunk
Posted 3 days 16 hours ago by Recorded Future
With 1,000+ intelligence professionals serving over 1,900 clients worldwide, Recorded Future is the world's most advanced, and largest, intelligence company!
We are looking for a Security Engineer to join the Enterprise Security team within the overall Security organization at Recorded Future. This individual will be primarily responsible for maintaining and uplifting the security stack utilized by the security team, with emphasis on a Splunk environment. The individual should also be comfortable developing creative solutions to engineering related problems in order to best equip the security team to manage enterprise wide security of Recorded Future.
What You'll Do:- Deploy, configure, and maintain the Splunk environment to help the internal security team effectively manage security threats and risks
- Work cross functionally to support other tech stack owners in the configuration and maintenance of security centric tools (e.g. ELK, IAM tools, DLP technologies)
- Architect, build, and expand on existing solutions to solve challenging problems
- Develop dashboards, design data models, and deliver analysis of security logs in order to ensure the security of the Recorded Future enterprise
- 3+ years of experience with deployment, configuration and troubleshooting of SIEM appliances, (Splunk)
- Experience operating within a CSIRT or SOC environment
- Experience with Cribl is a Plus
- Hands on ability to manage distributed Splunk cluster infrastructure and all related components
- Experience administering a Splunk environment consisting of search heads, indexers, deployers, deployment servers, universal forwarders, clustering and Splunk IT Service Intelligence for access, performance, and operational roles.
- Good knowledge of Splunk SPL and visualizations to identify anomalies and trends
- Ability to define and onboard new data sources into SIEMs/Splunk
- Scripting skills with languages such as Perl, Bash, Python to develop custom code when needed
- Ability to diffuse large sets of data and information into actionable recommendations for the security team and leadership
- Strong problem solving and analytical skills
- Time management and organizational skills
- Willingness to travel 10%
Recorded Future employees (or "Futurists"), represent over 40 nationalities and embody our core values of having high standards, practicing inclusion, and acting ethically. Our dedication to empowering clients with intelligence to disrupt adversaries has earned us a 4.6 star user rating on G2 and more than 50% of Fortune 100 companies as customers.
We are committed to maintaining an environment that attracts and retains talent from a diverse range of experiences, backgrounds and lifestyles. By ensuring all feel included and respected for being unique and bringing their whole selves to work, Recorded Future is made a better place every day.
If you need any accommodation or special assistance to navigate our website or to complete your application, please send an e mail with your request to our recruiting team at .
Recorded Future is an equal opportunity and affirmative action employer and we encourage candidates from all backgrounds to apply. Recorded Future does not discriminate based on race, religion, color, national origin, gender including pregnancy, sexual orientation, gender identity, age, marital status, veteran status, disability or any other characteristic protected by law.
Recorded Future will not discharge, discipline or in any other manner discriminate against any employee or applicant for employment because such employee or applicant has inquired about, discussed, or disclosed the compensation of the employee or applicant or another employee or applicant.
Recorded Future does not administer a lie detector test as a condition of employment or continued employment. This is in compliance with the law of the Commonwealth of Massachusetts, and in alignment with our hiring practices across all jurisdictions.
Recorded Future maintains a drug free workplace.