cover image
CBTS

Senior Splunk Enterprise Security Engineer(no third party, only W2)

On site

Irving, United states

Senior

Freelance

05-03-2026

Share this job:

Skills

Communication Python Bash PowerShell Cloud Security Splunk Monitoring Ansible Azure AWS Google Cloud Platform Terraform Infrastructure as Code

Job Specifications

Job Description:

Required

5+ years of hands-on experience with Splunk platform administration, with significant

depth in Splunk Enterprise Security.

Active Splunk certifications required: Splunk Enterprise Certified Admin and/or Splunk

ES Certified Admin.

Proven experience managing Splunk deployments in cloud environments (AWS, Azure,

or Google Cloud Platform).

Deep understanding of security monitoring, log management, SIEM operations, and

event correlation at enterprise scale.

Working knowledge of PCI DSS, SOX, and NIST CSF compliance frameworks and how

they translate into SIEM use cases and reporting requirements.

Strong SPL (Search Processing Language) proficiency, including complex statistical

commands, lookups, macros, and data models.

Experience with Splunk infrastructure components: indexers, search heads,

heavy/universal forwarders, deployment servers, and cluster management.

Excellent communication skills with the ability to translate complex technical concepts for

non-technical stakeholders.

Preferred

Experience in large-scale retail or similarly complex, high-transaction-volume

environments.

Familiarity with Splunk SOAR (formerly Phantom) and security automation/orchestration

workflows.

Background in detection engineering, threat hunting, or SOC operations.

Additional certifications such as CISSP, GIAC (GCIA, GCIH), or cloud security

credentials (AWS Security Specialty, AZ-500).

Experience with Infrastructure as Code (Terraform, Ansible) for Splunk deployment

management.

Scripting proficiency in Python, Bash, or PowerShell for automation and custom

integrations.

Work Environment & Expectations

About the Company

CBTS (#44 CRN Solution Provider 500) serves enterprise and midmarket clients in all industries across North America. We combine deep technical expertise with a full suite of flexible technology solutions--including Application Modernization, Managed Hybrid Cloud, Cybersecurity, Digital Workplace, and Infrastructure solutions. From developing and deploying modern AI-enabled applications and the secure, scalable infrastructure platforms on which they run, to managing, monitoring, and optimizing their operations, we are your tr... Know more