Splunk Engineer
Hemel Hempstead, Eastern
£25 days holidays, 6% Contributory pension, 4 x life Insurance
Posted 5 days ago
About the role
We are looking for an experienced Splunk Engineer to lead the design, deployment and optimisation of enterprise-scale security monitoring platforms.
If you would like to know a bit more about this opportunity, or are considering applying, then please read the following job information.
This is a hands-on technical role, suited to someone with strong Splunk Enterprise and Splunk Enterprise Security experience, who can take ownership of platform engineering, data ingestion, detection content and performance tuning across complex client environments.
This is a key technical leadership role, responsible for ensuring the right tooling, controls and processes are in place to help protect and monitor our clients environments.
The opportunity is ideally suited to someone with deep hands-on experience deploying, managing and optimising Splunk Enterprise and Splunk ES in large, complex environments.
In return, the role offers the chance to broaden your capability and gain deeper experience in Elastic Security, with support and training available to help build your expertise further.
You will work closely with cross-functional teams to assess risk, design effective security controls and define testing requirements.
You will champion security by design, promote engineering excellence and act as a trusted advisor to clients, helping them understand their security challenges and implement practical, effective solutions to strengthen their security posture.
This is an excellent opportunity to deepen your hands-on cybersecurity expertise while making a meaningful impact across both client and organisational security.
You do need to hold active DV Clearance.
Office based in Hemel Hempstead.
What you will be doing: Lead the deployment, management and optimisation of Splunk Enterprise and Splunk ES platforms in large, complex environments.
Design, implement and maintain data pipelines, including log ingestion, enrichment and schema standardisation.
Develop and tune security detection content, translating threat intelligence and TTPs aligned to MITRE ATT&CK into actionable, high-value alerts.
Manage the full detection content lifecycle: design, test, deploy, monitor, tune and retire, using version control and rollback processes.
Automate workflows and platform configurations using CI/CD, SOAR, scripting and Infrastructure as Code tools such as Terraform and Ansible.
Ensure platform performance, stability and resilience through capacity planning, high availability, disaster recovery and proactive monitoring.
Provide technical leadership and guidance to internal teams and clients on security monitoring strategy and best practice.
What you will bring: Proven experience deploying and managing Splunk at enterprise scale.
Strong hands-on knowledge of SIEM engineering, including indexing, parsing, onboarding and performance tuning.
Experience designing and optimising detection content, including MITRE ATT&CK-aligned use cases and alert tuning to reduce noise.
Good understanding of data pipeline engineering, log enrichment, data quality and large-scale ingestion architectures.
Strong knowledge of SPL; experience with KQL and EQL would be beneficial, but is not essential.
Experience with automation and Infrastructure-as-Code within security monitoring or SIEM environments.
Solid understanding of SIEM platform operations, including clustering, scaling, high availability, disaster recovery and performance optimisation.
Strong problem-solving skills and a proactive approach to improving security operations.
An interest in developing expertise in Elastic Security, with support and training available as part of the role.
If you are interested in this role but not sure if your skills and experience are exactly what were looking for, please do apply, wed love to hear from you! Employment Type: Full Time, Permanent Location: Hemel Hempstead Security Clearance Level: DV Cleared Internal Recruiter: Jane Salary: Competitive, depending on experience Benefits: £5400 Car Allowance, 25 days annual leave with the option to buy additional days, private health care, life assurance, pension, and generous flexible benefits fund ? Loved reading about this job and want to know more about us? Sopra Sterias Aerospace, Defence and Security business designs, develops and deploys digital solutions to Central Government clients.
The work we do makes a real difference to the clients goal of National Security, and we operate in a unique and privileged environment.
We are given time for professional development activities, and we coach and mentor our colleagues, sharing knowledge and learning from each other. xwzovoh
We foster a culture in which employees feel valued and supported and have pride in their work for the customer, delivering outstanding rates of customer satisfaction in the UKs most complex safety- and security-critical markets.
If you would like to know a bit more about this opportunity, or are considering applying, then please read the following job information.
This is a hands-on technical role, suited to someone with strong Splunk Enterprise and Splunk Enterprise Security experience, who can take ownership of platform engineering, data ingestion, detection content and performance tuning across complex client environments.
This is a key technical leadership role, responsible for ensuring the right tooling, controls and processes are in place to help protect and monitor our clients environments.
The opportunity is ideally suited to someone with deep hands-on experience deploying, managing and optimising Splunk Enterprise and Splunk ES in large, complex environments.
In return, the role offers the chance to broaden your capability and gain deeper experience in Elastic Security, with support and training available to help build your expertise further.
You will work closely with cross-functional teams to assess risk, design effective security controls and define testing requirements.
You will champion security by design, promote engineering excellence and act as a trusted advisor to clients, helping them understand their security challenges and implement practical, effective solutions to strengthen their security posture.
This is an excellent opportunity to deepen your hands-on cybersecurity expertise while making a meaningful impact across both client and organisational security.
You do need to hold active DV Clearance.
Office based in Hemel Hempstead.
What you will be doing: Lead the deployment, management and optimisation of Splunk Enterprise and Splunk ES platforms in large, complex environments.
Design, implement and maintain data pipelines, including log ingestion, enrichment and schema standardisation.
Develop and tune security detection content, translating threat intelligence and TTPs aligned to MITRE ATT&CK into actionable, high-value alerts.
Manage the full detection content lifecycle: design, test, deploy, monitor, tune and retire, using version control and rollback processes.
Automate workflows and platform configurations using CI/CD, SOAR, scripting and Infrastructure as Code tools such as Terraform and Ansible.
Ensure platform performance, stability and resilience through capacity planning, high availability, disaster recovery and proactive monitoring.
Provide technical leadership and guidance to internal teams and clients on security monitoring strategy and best practice.
What you will bring: Proven experience deploying and managing Splunk at enterprise scale.
Strong hands-on knowledge of SIEM engineering, including indexing, parsing, onboarding and performance tuning.
Experience designing and optimising detection content, including MITRE ATT&CK-aligned use cases and alert tuning to reduce noise.
Good understanding of data pipeline engineering, log enrichment, data quality and large-scale ingestion architectures.
Strong knowledge of SPL; experience with KQL and EQL would be beneficial, but is not essential.
Experience with automation and Infrastructure-as-Code within security monitoring or SIEM environments.
Solid understanding of SIEM platform operations, including clustering, scaling, high availability, disaster recovery and performance optimisation.
Strong problem-solving skills and a proactive approach to improving security operations.
An interest in developing expertise in Elastic Security, with support and training available as part of the role.
If you are interested in this role but not sure if your skills and experience are exactly what were looking for, please do apply, wed love to hear from you! Employment Type: Full Time, Permanent Location: Hemel Hempstead Security Clearance Level: DV Cleared Internal Recruiter: Jane Salary: Competitive, depending on experience Benefits: £5400 Car Allowance, 25 days annual leave with the option to buy additional days, private health care, life assurance, pension, and generous flexible benefits fund ? Loved reading about this job and want to know more about us? Sopra Sterias Aerospace, Defence and Security business designs, develops and deploys digital solutions to Central Government clients.
The work we do makes a real difference to the clients goal of National Security, and we operate in a unique and privileged environment.
We are given time for professional development activities, and we coach and mentor our colleagues, sharing knowledge and learning from each other. xwzovoh
We foster a culture in which employees feel valued and supported and have pride in their work for the customer, delivering outstanding rates of customer satisfaction in the UKs most complex safety- and security-critical markets.
About this listing
Screened by Joboru
This role passed our automated spam and quality filters and was active in our feed when last checked. Joboru is an aggregator — here is how we screen listings. If anything looks off, tell us.
Similar jobs you may like
Mobile Engineer Power
1 day agoSpeedy Hire
Business Systems Manager
1 day agoPin Point Recruitment
Mobile Hose Engineer
1 day agoHYDRAQUIP HOSE & HYDRAULICS LIMITED
Lead Engineer - Automation/Controls
1 day agoCore Control Solutions Limited
Quality Assurance Manager Awarding Organisation (Vocational Educati
1 day agoCareer Poster
Principal Systems Engineer
1 day agoSynoptix Limited
Area Sales Manager (MSP / Cyber Security)
1 day agoErnest Gordon Recruitment
Pega Lead System Architect
1 day agoDCV Technologies Limited
Planning Application Manager
1 day agoPrince Personnel Limited