Today
Public Trust
Unspecified
Unspecified
Remote/Hybrid• (Off-Site/Hybrid)
Our client is currently seeking a highly skilled and experienced Senior Information Security Engineer to help lead and execute the migration of an enterprise security logging and monitoring infrastructure from OpenText to Splunk. This role is critical in enhancing our client's security posture by modernizing their SIEM capabilities, ensuring robust threat detection, and enabling real-time analytics. The ideal candidate will be responsible for the design, deployment, configuration, and optimization of Splunk solutions across enterprise environments. This role requires a strong understanding of data ingestion, parsing, and visualization, as well as experience working in secure environments. A current or eligible Public Trust Clearance is required.
This job will have the following responsibilities:
Required Qualifications:
Preferred Qualifications:
This job will have the following responsibilities:
- Help lead the end-to-end migration from OpenText to Splunk, including planning, architecture design, data mapping, and implementation.
- Collaborate with cross-functional teams including IT, DevOps, Compliance, and Risk to ensure seamless integration and minimal disruption.
- Assist in the design and lead implementation of Splunk architecture, including indexers, forwarders, search heads, and deployment servers.
- Develop and optimize Splunk dashboards, alerts, and reports to support security monitoring, incident response, and compliance requirements.
- Ensure data integrity, retention policies, and access controls are properly configured and maintained.
- Conduct risk assessments and security reviews related to the migration process.
- Provide technical leadership and mentorship on best practices and SOPs for client side engineers/admins.
- Document migration processes, configurations, and best practices for future reference and audits.
Required Qualifications:
- Bachelor's degree in Computer Science, Information Security, or a related field (or equivalent experience).
- 8+ years of experience in Information Security or IT infrastructure roles.
- Proven experience with Splunk Enterprise deployment, configuration, and administration.
- Hands-on experience with OpenText (e.g., OpenText EnCase, Axcelerate, or other logging/monitoring tools).
- Strong understanding of SIEM concepts, log management, and security event correlation.
- Proficiency in scripting languages (e.g., Python, Bash) and automation tools.
- Familiarity with security frameworks such as NIST, ISO 27001, or CIS Controls.
- Excellent problem-solving, communication, and project management skills.
Preferred Qualifications:
- Splunk certifications (e.g., Splunk Certified Architect, Splunk Certified Admin).
- Experience with cloud environments (AWS, Azure, GCP) and cloud-native logging.
- Detailed knowledge of compliance standards and security framework.
- Experience with data migration projects or legacy system decommissioning.
group id: cxjudgpa