Coalfire

Cybersecurity

SecurityEngineer(Splunk)

$78–135k United States FULL TIME Remote Friendly
Market Sentiment
HIGH DEMAND

Neural analysis suggests this role is
optimal for Mid+ candidates.

The Brief

“Security Engineer (Splunk) at Coalfire. Skills: Splunk, SIEM, Incident response. Develop and maintain Splunk dashboards. Create and tune Splunk alerts”

What You'll Achieve.

Enhance security posture; Reduce incident response time

Industry & Context.

Cybersecurity
Problems you'll solve

Root cause analysis; Incident analysis

What You'll Do.

Develop and maintain Splunk dashboards

Create and tune Splunk alerts

Automate security workflows

Perform threat hunting

Respond to security incidents

Analyze security logs

Manage Splunk infrastructure

Develop custom Splunk applications

Integrate security tools with Splunk

Provide security expertise

How You'll Work.

Team & Collaboration

Cross-functional teams; Security operations

Communication Scope

Technical reporting

Full Job Description

## Description About Coalfire Coalfire is on a mission to make the world a safer place by solving our clients’ hardest cybersecurity challenges. We work at the cutting edge of technology to advise, assess, automate, and ultimately help companies navigate the ever-changing cybersecurity landscape. We are headquartered in Chicago, Illinois with offices across the U.S. and U.K., and we support clients around the world. But that’s not who we are – that’s just what we do.   We are thought leaders, consultants, and cybersecurity experts, but above all else, we are a team of passionate problem-solvers who are hungry to learn, grow, and make a difference. ## What You’ll Do Maintain SIEM solutions (Splunk, Sentinel, ELK, LogRhythm, Sumo Logic) in cloud environments (AWS, Azure, GCP) to support FedRAMP continuous monitoring requirements Maintain and support SIEM platforms (Splunk, Sentinel, ELK, LogRhythm, Sumo Logic) in AWS, Azure, and GCP environments to support continuous monitoring and compliance requirements Manage and maintain log collection infrastructure including forwarders, collectors, and ingestion pipelines across hybrid environments Support SIEM performance tuning, storage management, retention settings, and licensing optimization under established operational guidelines Implement and maintain log retention and audit configurations aligned with FedRAMP and other compliance framework requirements Develop, tune, and maintain detection rules, correlation searches, and alerting logic to identify security events Create and maintain custom parsers and field extractions for complex or proprietary log sources Reduce false positives through ongoing rule tuning, baseline analysis, and detection improvement efforts Participate in peer reviews of detection rules and SIEM configuration changes Monitor SIEM alerts and investigate security events to support incident response and threat hunting activities Contribute to development and maintenance of detection and response playbo

Free ATS check

Applying for this Security Engineer (Splunk) role?

Most applicants get filtered before a human reads their resume. See if yours makes the cut.

How to Apply on Lever

  • Lever uses a streamlined one-page form — apply in under 5 minutes.
  • LinkedIn import works well; review parsed data before submitting.
  • The cover letter field is optional but visible to reviewers — use it to differentiate.
  • Referral codes from employees can significantly boost visibility of your application.

ANONYMOUS · UNFILTERED

What do employees actually say about Coalfire?

Real rants from real employees. Read before you apply.

Read Company Rants →