Senior Splunk Engineer - Information Security (Hybrid Preferred/ Remote Possible- CA/AZ/NV)

95-2566122 First American Title Insurance Co
USA, Nevada, Remote
$87.9K-$162.4K a year
Remote
Full-time

Who We Are

Join a team that puts its People First! Since 1889, First American (NYSE : FAF) has held an unwavering belief in its people.

They are passionate about what they do, and we are equally passionate about fostering an environment where all feel welcome, supported, and empowered to be innovative and reach their full potential.

Our inclusive, people-first culture has earned our company numerous accolades, including being named to the Fortune 100 Best Companies to Work For® list for nine consecutive years.

We have also earned awards as a best place to work for women, diversity and LGBTQ+ employees, and have been included on more than 50 regional best places to work lists.

First American will always strive to be a great place to work, for all. For more information, please visit www.careers.firstam.com.

What We Do

This role is responsible for supporting the Security Operations Center (SOC) logging and monitoring functions. This is a collaborative role and requires an interdisciplinary technical background with skillsets in systems and application administration, data engineering, security operations, and detection engineering.

For local candidates, this role would be onsite in Santa Ana, CA two days per week (Tues / Thurs). For out of area candidates within California, Nevada, or Arizona, this role is open to be remote.

Please note for remote candidates travel may be required.

What You’ll Do

  • Design, implement, and maintain the SIEM infrastructure
  • Utilize data management platforms and other tools for efficient data routing, parsing, and filtering
  • Apply data engineering concepts such as data warehousing, real-time data processing, and data normalization to enhance the overall data infrastructure
  • Leverage SIEM and data management platforms to collect, analyze, and correlate logs
  • Develop and fine-tune correlation rules, alerts, and dashboards to detect and support response to security threats
  • Contribute to the expansion of data engineering practices, leveraging advanced analytics and machine learning for proactive threat detection
  • Utilize your knowledge of cloud environments to implement and support multi-cloud infrastructure deployments
  • Collaborate with cross-functional teams to identify and mitigate security risks and vulnerabilities
  • Perform regular audits of security configurations, policies, and procedures to ensure compliance with industry standards and regulations
  • Stay up to date on latest security trends, tools, and best practices to continually enhance our SIEM capabilities
  • Provide guidance and support to junior security engineers and platform users
  • May be required to perform duties outside of normal work hours based on business needs

What You’ll Bring

Extensive experience with SIEM, data management platforms, particularly Splunk and Cribl, including deployment, configuration, optimization, administration, and functional use of the tooling (e.

g., integration of log sources into SIEM, searching cloud archives with Cribl, etc.)

  • Strong understanding of network protocols, firewalls, intrusion detection systems, endpoint security solutions, Windows and Linux distributions, and major cloud environments such as Azure, AWS, and GCP
  • Demonstrated ability to deploy, configure, and secure infrastructure in Azure, AWS, and GCP
  • Proficiency in scripting languages (e.g., Python, PowerShell, Bash) for automation and task simplification, experience with AWS Lambda and Azure Functions is a plus
  • Strong understanding of MITRE ATT&CK
  • Hands on experience developing, tuning, and deploying security detections in SIEM
  • Excellent analytical skills to identify, analyze, and resolve complex engineering issues
  • Knowledge of security frameworks and standards (e.g., COBIT, NIST 800-53, ISO27001, SSAE16, SOC1, SOC2, etc.)
  • Proficient in Microsoft Word, Excel, PowerPoint, Visio
  • Strong verbal and written communication skills; strong presentation skills
  • Ability to manage multiple projects and tasks effectively
  • Ability to work collaboratively in a team-oriented environment
  • Generally, requires a bachelor’s degree in computer science, Information Technology, Cybersecurity, or a related field.

or equivalent work experience

  • A minimum of 7 years information security experience
  • Relevant certifications such as Splunk Certified Admin, Cribl Certified Admin, Security+, CEH, OSCP, CISSP, etc.

Pay Range : $87,945- $162,360 Annually

This hiring range is a reasonable estimate of the base pay range for this position at the time of posting. Pay is based on a number of factors which may include job-related knowledge, skills, experience, business requirements and geographic location.

What We Offer

By choice, we don’t simply accept individuality we embrace it, we support it, and we thrive on it! Our People First Culture celebrates diversity, equity and inclusion not simply because it’s the right thing to do, but also because it’s the key to our success.

We are proud to foster an authentic and inclusive workplace For All. You are free and encouraged to bring your entire, unique self to work.

First American is an equal opportunity employer in every sense of the term.Based on eligibility, First American offers a comprehensive benefits package including medical, dental, vision, 401k, PTO / paid sick leave and other great benefits like an employee stock purchase plan.

6 days ago
Related jobs
Promoted
Buildertrend
Sparks, Nevada
Remote

Security Engineer or Cloud Engineer, with a focus on public cloud security and network security required. Excellent communication and interpersonal skills, with the ability to effectively communicate technical concepts to both technical and non-technical stakeholders. The Senior Cloud Network Securi...

Promoted
Motional
Las Vegas, Nevada

As a Senior Security Engineer, Identity & Access Management (IAM), you will be responsible for the design, development, implementation, integration, automation, and improvement of IAM at Motional. Bachelor's degree in Computer Science, Information Technology or Engineering disciplines or equivalent ...

Aegis Project Controls
Sun Valley, Nevada

AACEI PSP or PMI-SP certification(s) preferred. Headquartered in Silver Spring, MD, we employ driven professionals dedicated to keeping construction projects on time and within budget. Employees new to the industry learn the “Aegis way” and earn the opportunity to become trusted senior staff. With o...

MGM Resorts International
US, Nevada, United States of America

This position is based in the Las Vegas, NV area. The Senior Analyst IT Compliance is responsible for providing guidance and oversight in all regulatory areas that MGMRI IT must comply with. The Senior Analyst acts as the IT Compliance area's subject matter expert on onboarding and regulatory licens...

Arrow Electronics, Inc.
Nevada,NV,US
Remote

Knowledge of Private Cloud based secure deployments (Azure, AWS) as well as Cloud based application security. Demonstrable analytical and technical aptitudes with focus on the root cause of the issue. Actual compensation offer to candidate may vary from posted hiring range based upon geographic loca...

Splunk Inc
Nevada, United States
Remote

Kubernetes certifications or an interest in obtaining these certifications are a plus, such as those from the Cloud Native Computing Foundation; Certified Kubernetes Administrator (CKA), Certified Kubernetes Application Developer (CKAD), or Certified Kubernetes Security Specialist (CKS). Learn more ...

Enterprise Bank & Trust
Las Vegas, Nevada
Remote

VP, Financial Risk Management Officer (Remote eligible: AZ, KS, MO, NM, NV, TX). Voted a Best Bank to Work For by American Banker for multiple years, we offer our associates an array of benefits and the opportunity to chart their own career path with us. Knowledge of applicable federal and state law...

Splunk Inc
Nevada, United States
Remote

Splunk's Cloud group is looking for an experienced Cloud Software Engineer to join teams that are responsible for providing and maintaining an automated platform that enables internal and external customers to easily manage and modify Splunk Enterprise Cloud (SEC) environments. While customers love ...

Barr Engineering Co.
Reno, Nevada

Bachelor's degree in chemical, petrochemical, or mechanical engineering. The person in this position will provide leadership and work with multidisciplinary project teams, providing process engineering and technical expertise related to hydrocarbons and other flammable fluids. People report that the...

Ryder System, Inc.
Carson City, Nevada
Remote

Conduct security assessments that require expertise of our organization's applications using both Static Application Security Testing (SAST) and Dynamic Application Security Testing (DAST) methodologies. The Application Security Engineer must understand development, coding, security engineering, and...