the Splunk/Cribl product vision, ensuring regulatory and best practice compliance, and integrating Splunk with legacy and modern data platforms.
The engineer will build RBA based detections, dashboards, KOs, and automated SOAR workflows; lead ingestion pipelines; ensure cybersecurity alignment; train CISO engineering teams; and develop automation and ML based enhancements to support DOE cyber missions.
Must be a Splunk Core certified consultant; Responsible for ensuring that the Splunk environment is meeting regulatory requirements and industry best practices; Develop and champion the product vision and strategy for Splunk and Cribl compliance solutions; Work closely with engineering teams throughout the product development lifecycle, from ideation to launch; Integrate Splunk with a wide range of legacy and modern data sources, including big data platforms, to provide comprehensive threat inligence and security analytics; Ensure the security and compliance of Splunk environments, implementing robust access controls, encryption, and data protection measures;