Splunk ES Consultant
Location: Remote
Compensation: To Be Discussed
Reviewed: Fri, Jun 26, 2026
This job expires in: 22 days
Job Summary
Working remotely on a contract basis, the Splunk ES Consultant will develop custom detection content, build and maintain Splunk Apps, and optimize data flow while collaborating with client security teams.
Key responsibilities
- Develop custom detection content, including correlation searches and alerts, to identify threat activity
- Onboard new data sources and ensure normalization to the Common Information Model (CIM)
- Support and optimize large distributed clustered Splunk environments and document key engineering decisions
Required qualifications
- Several years of hands-on Splunk experience with ES implementation and content development
- Strong proficiency in SPL and regular expressions
- Experience scripting in Python, Perl, or Bash
- Solid understanding of CIM and data onboarding at scale
- Experience supporting clustered Splunk environments in SOC or NOC settings
COMPLETE JOB DESCRIPTION
The job description is available to subscribers. Subscribe today to get the full benefits of a premium membership with Virtual Vocations. We offer the largest remote database online...