Jobiglo

No results.

This job is no longer available

This job expired on 25/09/2026. It no longer accepts applications.

Splunk Engineer – Security Monitoring Lead

Sopra Steria · Hemel Hempstead

🇬🇧 English
Splunk Enterprise Splunk Enterprise Security Elastic Security Scripting Terraform Ansible Capacity planning High availability Disaster recovery

Job description

About the role

We are looking for an experienced Splunk Engineer to lead the design, deployment and optimisation of enterprise‑scale security monitoring platforms. The role is hands‑on, focusing on Splunk Enterprise and Splunk Enterprise Security, and requires ownership of platform engineering, data ingestion, detection content and performance tuning across complex client environments.

Key responsibilities

  • Lead deployment, management and optimisation of Splunk Enterprise and Splunk ES platforms in large, complex environments.
  • Design, implement and maintain data pipelines for log ingestion, enrichment and schema standardisation.
  • Develop and tune security detection content, translating threat intelligence and MITRE ATT&CK TTPs into high‑value alerts.
  • Manage the full detection content lifecycle using version control, testing, deployment, monitoring and retirement processes.
  • Automate workflows and platform configurations with CI/CD, SOAR, scripting and Infrastructure as Code tools such as Terraform and Ansible.
  • Ensure platform performance, stability and resilience through capacity planning, high availability, disaster recovery and proactive monitoring.
  • Provide technical leadership and guidance to internal teams and clients on security monitoring strategy and best practice.

Required profile

  • Proven experience deploying and managing Splunk Enterprise and Splunk Enterprise Security in large, complex environments.
  • Strong understanding of security monitoring, detection content development and threat intelligence mapping.
  • Ability to work collaboratively with cross‑functional teams and act as a trusted advisor to clients.
  • Active DV clearance is required.

Required skills

  • Splunk Enterprise
  • Splunk Enterprise Security
  • Elastic Security (exposure)
  • CI/CD pipelines
  • SOAR platforms
  • Scripting (e.g., Python, Bash)
  • Terraform
  • Ansible
  • Version control systems
  • MITRE ATT&CK framework
  • Capacity planning, high availability and disaster recovery concepts

Questions fréquentes

Le salaire n'est pas communiqué publiquement par le recruteur. Vous pouvez postuler et négocier directement avec Sopra Steria.
Cliquez sur "Postuler maintenant" en haut de la page. Vous pouvez importer votre CV en 1 clic — Jobiglo extrait automatiquement vos informations et postule pour vous.

Why are you reporting this job?

Thank you for your report. We will review this job.

Explore further

Salaries, guides and searches in the United Kingdom.

A question about this job?

Ask it here: you will get the full job summary by e-mail, right away.

💬 Chat with us on Telegram

Published 2 months ago

30 views · 0 interested

Boost your chances

Upload your CV — we will match you with relevant openings.

Analyzing your CV...

Sopra Steria

Hemel Hempstead