Position Details
About this role
Design, implement, and operate enterprise-scale SIEM architectures with a focus on Cribl Stream/Edge feeding Splunk and downstream consumers. Build data lakes/warehouses (AWS-based) and define platform standards for SIEM/SOAR across hybrid environments.
Key Responsibilities
- Design and implement enterprise-scale SIEM architectures
- Leverage Cribl Stream/Edge for data pipelines
- Build/manage Security Data Lakes and Warehouses (AWS-based)
- Define SIEM/SOAR platform standards
- Integrate diverse data sources (on-prem, cloud, SaaS, containers) into SIEM
Technical Overview
Expertise in SIEM/SOAR technologies, data pipelines, cloud and on-prem integration, and scripting for automation; strong knowledge of security monitoring and incident reporting.
Ideal Candidate
An AVP-level security engineer with 5+ years in cybersecurity, SIEM/SOAR, and data lake/warehouse experience; strong Cribl/Splunk and AWS skills; proven leadership and vendor management capabilities.
Must-Have Skills
Nice-to-Have Skills
Tools & Platforms
Required Skills
Hard Skills
Soft Skills
Certifications
Preferred
Industry & Role
Keywords for Your Resume
Deal Breakers
Must be onsite 4 days and 1 day remote across Tampa/NJ/Tempe, Willingness to work in hybrid environment
Get matched to jobs like this
Luna finds roles that fit your skills and career goals — no endless scrolling required.
Create a Free Profile