Expoint - all jobs in one place

Finding the best job has never been easier

Limitless High-tech career opportunities - Expoint

IBM Splunk SaaS/SOAR Engineer 
United States, District of Columbia, Washington 
279073435

27.03.2025
Your role and responsibilities

• Design, deploy, and manage the Splunk SaaS platform, including data ingestion, search optimization, and dashboard creation.

• Implement SOAR solutions to automate incident response tasks, integrating with other security tools.

• Develop custom playbooks, rules, and alerts to enhance threat detection and response efficiency.

• Perform continuous tuning and optimization of Splunk SaaS and SOAR systems to improve performance and security posture.

• Work closely with SOC teams to define automation use cases and integrate solutions that enhance security operations.

• Provide troubleshooting and technical support for Splunk SaaS and SOAR-related issues.

• Create and maintain comprehensive documentation for Splunk SaaS configurations, SOAR playbooks, and related workflows.

Required education
Bachelor's Degree
Preferred education
Master's Degree
Required technical and professional expertise

• CISSP or equivalent certification.

• Splunk administration, including designing, configuring, and maintaining the platform.

• Experience with SOAR platforms (e.g., Splunk Phantom, Demisto, or others) and automation of security workflows.

• Strong scripting skills (Python, Bash, PowerShell, etc.) for developing custom automation and integration solutions.

• Familiarity with SIEM tools and integration of security data sources.

• Ability to obtain and maintain a security clearance from the US federal government.

Preferred technical and professional experience

• Splunk Certifications

• Experience in cloud security tools and platforms (AWS, Azure, etc.).

• Prior experience with government security frameworks, such as FedRAMP or NIST.

• Knowledge of machine learning techniques for use in security analytics.

• Splunk certifications (Splunk Certified Admin, Splunk Certified Architect).

• Experience with threat intelligence tools and their integration into SOAR solutions.

Being an IBMer means you’ll be able to learn and develop yourself and your career, you’ll be encouraged to be courageous and experiment everyday, all whilst having continuous trust and support in an environment where everyone can thrive whatever their personal or professional background.

OTHER RELEVANT JOB DETAILS

IBM offers a competitive and comprehensive benefits program. Eligible employees may have access to:

  • Healthcare benefits including medical & prescription drug coverage, dental, vision, and mental health & well being
  • Financial programs such as 401(k), the IBM Employee Stock Purchase Plan, financial counseling, life insurance, short & long- term disability coverage, and opportunities for performance based salary incentive programs
  • Generous paid time off including 12 holidays, minimum 56 hours sick time, 120 hours vacation, 12 weeks parental bonding leave in accordance with IBM Policy, and other Paid Care Leave programs. IBM also offers paid family leave benefits to eligible employees where required by applicable law
  • Training and educational resources on our personalized, AI-driven learning platform where IBMers can grow skills and obtain industry-recognized certifications to achieve their career goals
  • Diverse and inclusive employee resource groups, giving & volunteer opportunities, and discounts on retail products, services & experiences


We consider qualified applicants with criminal histories, consistent with applicable law.


This position was posted on the date cited in the key job details section and is anticipated to remain posted for 21 days from this date or less if not needed to fill the role.