Splunk SIEM Engineer

Resource Management Concepts, Inc.· Information Technology
Apply Now ↗
📍 Crane, Indiana, United StatesFull time💰 USD 95K–112K

About this role

Position Overview

Resource Management Concepts, Inc. (RMC) provides high-quality, professional services to government and commercial sectors. Our mission is to deliver exceptional management and technology solutions supporting the protection and preservation of the people and environment of the United States of America.

We are seeking a skilled Splunk SIEM Engineer to lead the evolution of our Splunk environment into a fully operational, enterprise-grade Security Information and Event Management (SIEM) platform. This role will be responsible for both the build-out and ongoing operations of the platform, ensuring it delivers reliable, actionable security insights and supports evolving cybersecurity initiatives. This is a hybrid position that requires regular onsite presence in Crane, Indiana.

Key Responsibilities

  • Lead the transformation of the Splunk environment into a fully functional SIEM platform
  • Manage and optimize the data ingestion pipeline:
    • Audit existing data sources for relevance and efficiency
    • Eliminate unnecessary data ingestion to control licensing costs
    • Onboard and integrate new data sources
  • Parse, normalize, and map ingested data to the Splunk Common Information Model (CIM)
  • Configure, maintain, and optimize Splunk Enterprise Security (ES)
  • Configure, maintain, and optimize Splunk security orchestration, automation, and response platform (SOAR)
  • Develop and maintain correlation searches, detections, and use cases
  • Create and tune alerts to improve fidelity and reduce false positives
  • Build dashboards and visualizations for operational awareness and trend analysis
  • Monitor overall platform health and performance
  • Perform system upgrades, patching, and capacity planning
  • Manage intra Splunk certificates
  • Manage the lifecycle of security content:
    • Continuously refine detections and correlation rules
    • Enhance visibility and detection coverage based on emerging threats
  • Ensure consistent SIEM operations regardless of hosting environment or infrastructure ownership
  • Support ongoing security operations and future cybersecurity initiatives

Required Qualifications

  • A SecurityX, CASP, or equivalent DoD 8140 IAT-3 certification is required.
  • Security Clearance: An interim DoD Secret security clearance or higher is required to start. Applicant selected may be subject to a security investigation and must meet eligibility requirements for access to classified information.
  • Hands-on experience with Splunk Enterprise and Splunk Enterprise Security (ES)
  • Strong understanding of SIEM architecture, design, and operations
  • Experience with log ingestion, parsing, normalization, and CIM mapping
  • Proficiency in developing correlation searches, alerts, and dashboards
  • Experience tuning SIEM content to reduce false positives and improve detection accuracy
  • Familiarity with data onboarding strategies and license optimization
  • Knowledge of cybersecurity principles, threat detection, and incident response
  • Experience with system administration tasks including patching, upgrades, and performance monitoring

Preferred Qualifications

  • Experience operating Splunk in distributed or multi-tenant environments
  • Knowledge of data pipelines and log forwarding technologies (e.g., syslog, APIs, forwarders)
  • Familiarity with frameworks such as MITRE ATT&CK
  • Experience supporting Zero Trust or advanced security architectures
  • Preferred certifications (e.g., Splunk Certified Admin, Splunk ES Certified, Security+)

At RMC, we're committed to your career growth! RMC differentiates itself from other firms through its investment in our employees. We invest our resources to train, certify, educate, and build our employees. RMC can offer you a great place to work with a small company feel and give you the experience, tuition assistance, and certifications that will take your career to the next level. This includes a competitive paid vacation package with 11 paid federal holidays. We also offer high-quality, low-deductible healthcare plans, pet insurance, and a competitive 401K package.

Salary at RMC is determined by various factors, including but not limited to location, a candidate's specific combination of education, knowledge, skills, competencies, and experience, as well as contract-specific requirements. The current salary range for this position will be $95,000 to $112,000 (annually).

#LI-MB1 #IND123

Frequently Asked Questions

What is the salary for the Splunk SIEM Engineer role at Resource Management Concepts, Inc.?
The listed salary for this Splunk SIEM Engineer position at Resource Management Concepts, Inc. is USD 95K–112K. This is an Full time role.
Where is the Splunk SIEM Engineer position at Resource Management Concepts, Inc. located?
This Splunk SIEM Engineer role at Resource Management Concepts, Inc. is based in Crane, Indiana, United States. The position is listed as on-site or hybrid. Check the full job description or apply directly to confirm the work arrangement.
Is the Splunk SIEM Engineer role at Resource Management Concepts, Inc. full-time or part-time?
This is listed as a Full time position. It is posted as a Splunk SIEM Engineer role in the Information Technology department at Resource Management Concepts, Inc..
Which team or department does the Splunk SIEM Engineer at Resource Management Concepts, Inc. belong to?
This Splunk SIEM Engineer position is part of the Information Technology department at Resource Management Concepts, Inc.. See the full job description for more information about the team structure and responsibilities.
How do I apply for the Splunk SIEM Engineer position at Resource Management Concepts, Inc.?
Click the "Apply Now" button on this page. You will be redirected to Resource Management Concepts, Inc.'s official application portal hosted on workable where you can submit your application directly.
When was the Splunk SIEM Engineer job at Resource Management Concepts, Inc. posted?
This Splunk SIEM Engineer position at Resource Management Concepts, Inc. was posted on Aug 5, 2026. Apply as soon as possible — early applications are often reviewed first.
Splunk SIEM Engineer
Resource Management Concepts, Inc. · 💰 USD 95K–112K
Apply for this role ↗

You'll be redirected to Resource Management Concepts, Inc.'s official application page on workable.