Neos Consulting Group is seeking a Senior Cybersecurity Engineer/Architect - Splunk for a contract role with their client. The selected candidate will focus on implementing and maintaining security tools across the enterprise infrastructure, while ensuring compliance with security policies and frameworks.
Responsibilities:
- Implementing, configuring, and maintaining security tools and services across OAG’s enterprise infrastructure
- Conducting hands-on deployment of security technologies (e.g., CASB, endpoint detection, SIEM, DLP)
- Integrating security controls into IT systems
- Troubleshooting complex security issues across heterogeneous environments
- Collaborating with system administrators, developers, and project managers to ensure that security configurations align with organizational policies and compliance frameworks (e.g., CJIS, TAC 202, NIST 800-53)
- Supporting secure transitions for major IT projects, including modernization efforts and the phased decommissioning of the OAG’s legacy mainframe system, to ensure appropriate data protection and risk mitigation throughout the system’s lifecycle
Requirements:
- 5 Years – Required
- Expert-level proficiency in designing, engineering, and optimizing Splunk-based security solutions, including advanced SPL query development, dashboard/report creation, alerting, and reusable knowledge objects
- Onboarding and normalizing diverse data sources through field extractions, event types, tags, and custom source types; configuring Splunk for correlation searches, notable event frameworks, and risk-based alerting
- Integrating with enterprise security tools and IT infrastructure; performing SIEM tuning, threat detection engineering, SOC workflow integration, development of security policies, and hardening procedures
- Establishing baseline configurations to ensure consistent, compliant, and effective security operations
- 3 Years – Required
- Proven experience in information security architecture, enterprise cybersecurity operations, regulatory compliance, cloud security compliance, and formal risk assessments
- Strong background in Endpoint Detection & Response (EDR) platforms, including deployment, tuning, and threat investigation
- Proficiency in security assessment techniques, including vulnerability scanning, penetration testing, and remediation planning
- In-depth knowledge of cloud security principles and experience securing workloads in AWS and Microsoft Azure environments
- Experience in AWS and Azure cloud security and IT governance, risk, and compliance (GRC) advisory services, including control frameworks, ISPRB/IRM, data classification, and policy violation management
- Security exception handling, sensitive data handling (SDHA), data privacy and governance, Purview data classification, JIRA/ServiceNow, and internal/external audit support