CrawlJobs Logo

Cribl Engineer

boozallen.com Logo

Booz Allen Hamilton

Location Icon

Location:
United States , Fort Meade

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

77600.00 - 176000.00 USD / Year

Job Description:

Are you excited at the prospect of developing innovative solutions to enable secure and reliable operations of enterprise computer systems? Are you fascinated by the possibilities presented by engineering, designing, development, and implementation of enterprise network cyber defense capabilities to prevent sophisticated cyber threats? In an increasingly connected world, it is critical to understand the fundamentals of layered defense and zero trust technologies. As a Splunk and Cribl Engineer, you will prevent adversary network threats, identify advanced attack vectors, and thwart methods of exploitation. We have an opportunity for you to use your leadership, strategy, and analytical skills to improve Booz Allen’s delivery to our clients. You’ll work individually or in a small integrated team, and lead a task, project, or team. You will ensure project completion and provide guidance and direction to lower-level technicians, specialists, and managers. You’ll provide expertise in the engineering design, development, direction, and implementation of enterprise network cyber defense capabilities. You will apply familiarity with the utilization, configuration, and implementation of cyber defense capabilities, including web content filters, email security capabilities, Intrusion Detection System, Intrusion Prevention Systems, Host Based Security Systems, Security Incident and Event Management tools, Domain Name System security practices, advanced log analysis, network monitoring, network flow analysis, packet capture analysis, network proxies, firewalls, anti-virus capabilities, Linux or UNIX command line, and access control lists. Join our team, as we improve our ability to execute critical missions across the globe through cybersecurity.

Job Responsibility:

  • Prevent adversary network threats, identify advanced attack vectors, and thwart methods of exploitation
  • Use leadership, strategy, and analytical skills to improve delivery to clients
  • Work individually or in a small integrated team, and lead a task, project, or team
  • Ensure project completion and provide guidance and direction to lower-level technicians, specialists, and managers
  • Provide expertise in the engineering design, development, direction, and implementation of enterprise network cyber defense capabilities
  • Apply familiarity with the utilization, configuration, and implementation of cyber defense capabilities, including web content filters, email security capabilities, Intrusion Detection System, Intrusion Prevention Systems, Host Based Security Systems, Security Incident and Event Management tools, Domain Name System security practices, advanced log analysis, network monitoring, network flow analysis, packet capture analysis, network proxies, firewalls, anti-virus capabilities, Linux or UNIX command line, and access control lists

Requirements:

  • 1+ years of experience building data pipelines leveraging tools such as Cribl
  • Experience with Windows and Linux, including installing, configuring, or maintaining servers operating systems and applications
  • Experience working with STIGs, SCAP, and cybersecurity best practices
  • Secret clearance
  • HS diploma or GED

Nice to have:

  • Experience with Kubernetes
  • Experience with big data analytics, machine learning, artificial intelligence, or anomaly detection
  • Experience scripting in PowerShell and BASH command line interfaces or in Python or Perl scripting languages
  • Experience in a consulting or client-facing environment
  • Ability to automate security configurations of Linux and Windows systems, and recommend and implement remediations for non-compliant security controls
What we offer:
  • Health, life, disability, financial, and retirement benefits
  • Paid leave
  • Professional development
  • Tuition assistance
  • Work-life programs
  • Dependent care
  • Recognition awards program

Additional Information:

Job Posted:
February 17, 2026

Work Type:
Hybrid work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Cribl Engineer

Observability Engineer – Splunk Focus

Join our growing Monitoring team! As a Splunk Specialist, you will collaborate c...
Location
Location
Portugal , Lisbon
Salary
Salary:
Not provided
https://www.inetum.com Logo
Inetum
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Proven expertise in Splunk Enterprise
  • Strong experience with Splunk ITSI
  • Knowledge of Cribl
  • Ability to design and implement Splunk dashboards
  • Familiarity with automation tools (e.g., Ansible)
  • Experience working in multi-regional teams is a plus
Job Responsibility
Job Responsibility
  • Provide support for monitoring tools: Splunk (Enterprise & ITSI), OpenTelemetry, Cribl, SolarWinds, Dynatrace
  • Automate daily tasks using Ansible
  • Assist development and production teams in migrating to the new Splunk Enterprise and ITSI platforms
  • Build dashboards and define relevant metrics
  • Propose and implement improvements across tools, processes, and KPIs
  • Fulltime
Read More
Arrow Right
New

Cybersecurity Engineer

The Cribl Engineer role involves designing and optimizing Cribl solutions for da...
Location
Location
Romania , Bucuresti
Salary
Salary:
Not provided
nttdata.com Logo
NTT DATA
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in Computer Science, Information Technology, or a related field
  • Minimum 1-3 years of experience working with Cribl Stream and Edge: IT and OT environments
  • Strong expertise in Linux (Debian/Ubuntu)
  • Strong expertise in data pipelines, log management, and observability platforms (e.g., Splunk, Elastic)
  • Proficiency in scripting languages such as Java Script
  • Experience with containerized environments (e.g., Docker, Kubernetes)
  • Knowledge of cloud platforms (e.g., AWS, Azure, GCP) and related infrastructure
  • Solid understanding of networking concepts and data routing
  • Cribl Certified Engineer: Admin level
  • Experience with infrastructure as code (IaC) tools (e.g., Terraform, Ansible)
Job Responsibility
Job Responsibility
  • Design, build, and maintain Cribl Stream and Edge pipelines to optimize data flow, filtering, transformation, and enrichment of log and metric data from various sources, including SIEM, APM, and infrastructure tools
  • Integrate Cribl with platforms such as Splunk, Elastic, and Sentinel to support enterprise log management and observability objectives
  • Monitor pipeline performance, troubleshooting issues, and fine-tune configurations to maintain data quality, flow integrity, and system efficiency
  • Implement best practices for data reduction, parsing, and routing to control ingestion volume and manage data costs
  • Develop and maintain automation scripts (Python, JavaScript, or similar) to streamline Cribl deployments, configurations, and updates, ensuring alignment with Infrastructure as Code (IaC) standards
  • Apply strong troubleshooting skills to identify and resolve data processing or integration issues in real-time
  • Collaborate with security, infrastructure, and operations teams to align Cribl configurations with business needs, regulatory requirements, and data governance standards
  • Ensure Cribl pipelines adhere to internal security policies and industry compliance requirements, with continuous monitoring for data privacy and security
  • Provide technical guidance and documentation to support teams and stakeholders, promoting best practices in log management and data processing
  • Work independently or within a team to manage Cribl projects from design to deployment while staying current with Cribl platform enhancements and features
What we offer
What we offer
  • Smooth integration and a supportive mentor
  • Choose from Remote, Hybrid or Office work opportunities
  • Projects have different working hours to suit your needs
  • Sponsored certifications, trainings and top e-learning platforms
  • Private Health Insurance
  • Individual coaching sessions or accredited Coaching School
  • Epic parties or themed events
Read More
Arrow Right

Senior Product Manager – Security Data Integrations and Management

We are seeking a skilled, experienced Sales Engineering Director to manage a div...
Location
Location
United States
Salary
Salary:
182000.00 - 219000.00 USD / Year
https://corelight.com/ Logo
Corelight
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5-7 years of Product Management experience in security, observability, or data pipeline technologies
  • Strong knowledge of SIEMs, log analytics, and security data platforms (such as Splunk, Elastic, CrowdStrike)
  • Experience w/ Zeek, Suricata, and/or YARA is a plus
  • Experience with log routing and transformation, including tools such as vector.dev, Cribl, logstash, and Fluentd
  • Knowledge of network security, threat detection, compliance logging, and SIEM ingestion requirements
  • Ability to collaborate with engineering teams, security professionals, and customers to drive impactful solutions
Job Responsibility
Job Responsibility
  • Drive product planning, requirements gathering, and prioritization for the overall sensor management solution including device management and SIEM integrations while balancing customer needs with technical feasibility
  • Define and track key metrics to measure the success of SIEM integrations and drive data-informed decisions
  • Collaborate with engineering to ensure robust data manipulation capabilities for log enrichment, filtering, and transformation
  • Work with customers to understand pain points in security device management, log management, compliance, and security data pipelines
  • Ensure seamless integration with structured formats like JSON, and mappings to common schemas such as CIM, ECS, and OCSF
  • Partner with security and DevOps teams to align with SIEM ingestion best practices, detection rules, and compliance frameworks
What we offer
What we offer
  • Equity and additional benefits will also be awarded
  • Fulltime
Read More
Arrow Right

Joint Operations Cyber Analytics Platform Architect

For an organization to transform in today’s digital world, it needs to properly ...
Location
Location
United States , Fort Meade
Salary
Salary:
99000.00 - 225000.00 USD / Year
boozallen.com Logo
Booz Allen Hamilton
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 8+ years of experience in defensive cyber operations, cybersecurity engineering, or security platform architecture
  • 5+ years of experience designing security data pipeline architectures, including log collection, normalization, enrichment and routing
  • 3+ years of experience with SIEM platforms such as Splunk, Elastic Security, Microsoft Sentinel, or Google Chronicle
  • 3+ years of experience working with stream processing and data brokering tools such as Apache Kafka, Logstash, Fluentd, or Cribl
  • Experience with data lake and analytics platforms such as Databricks, Apace Iceberg, or Snowflake
  • Experience architecting detection engineering pipelines, threat hunting workflows, and automated response capabilities and integrating EDR or NDR solutions using tools such as CrowdStrike, Corelight, or Trelix
  • Experience deploying platforms across cloud, on-premises, and disconnected environments using container orchestration such as Kubernetes or Red Hat OpenShift and applying Zero Trust principles and DoD cybersecurity frameworks
  • Secret clearance
  • HS diploma or GED
  • DoD 8140 Certifications such as Security+, CISSP, CASP or CCSP Certification
Job Responsibility
Job Responsibility
  • Lead the design of data architecture solutions for cloud computing, managed services, and service-oriented architectures
  • Resolve routine data architecture-related issues in collaboration with business analysts and technology teams
  • Work with project staff to make decisions and recommendations on future data architecture development
  • Analyze data architecture-related business needs
What we offer
What we offer
  • Health, life, disability, financial, and retirement benefits
  • Paid leave
  • Professional development
  • Tuition assistance
  • Work-life programs
  • Dependent care
  • Recognition awards program
Read More
Arrow Right

Cyber Security Engineer

Join Citi's forward-thinking security organization as a Cyber Security Engineer,...
Location
Location
Hungary , Budapest
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Harden Linux systems following CIS and internal security baselines
  • Manage and configure forward and reverse proxies: Blue Coat, Zscaler ZIA/ZPA, HAProxy, NGINX, Squid, Apache
  • implement and tune WAF and L7 security controls (F5 ASM, HAProxy, Cloudflare WAF)
  • administrate load balancers such as F5 BIG-IP, Citrix ADC, or HAProxy enterprise variants
  • Maintain, build, design virtualization technologies including VMware ESXi and Containerization & Orchestration: Deploy, manage, and secure containerized applications, with practical experience in container orchestration platforms such as OpenShift
  • Build automation with Ansible, Terraform, Python, Bash, and Git, applying IaC standards
  • Integrate, maintain, and monitor SIEM pipelines for Splunk, CRIBL, XSOAR Stack
  • Manage log enrichment, parsing, and transport via syslog or derivatives
  • 5+ years in cybersecurity or network security engineering and implementation, hands-on experience with automation tools Ansible, Bash and Python scripting
  • Familiar how to work with large scale enterprise networks and procedures during research/design and implementation phases
Job Responsibility
Job Responsibility
  • Design and implement robust security solutions that safeguard the organization against evolving cyber risks
  • Designing, implementing, and maintaining firewalls and related security solutions in scale
What we offer
What we offer
  • Cafeteria Program
  • Home Office Allowance (for colleagues working in hybrid work models)
  • Paid Parental Leave Program (maternity and paternity leave)
  • Private Medical Care Program and onsite medical rooms at our offices
  • Pension Plan Contribution to voluntary pension fund
  • Group Life Insurance
  • Employee Assistance Program
  • Access to a wide variety of learning and development programs, online course libraries and upskilling platforms, such as Udemy and Degreed
  • Flexible work arrangements to support you in managing work - life balance
  • Career progression opportunities across geographies and business lines
  • Fulltime
Read More
Arrow Right

Splunk Admin

The Enterprise SIEM data engineering team is responsible for adhering to the Sec...
Location
Location
Canada , Toronto
Salary
Salary:
113000.00 USD / Year
realign-llc.com Logo
Realign
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • DATABASE ADMINISTRATOR
Job Responsibility
Job Responsibility
  • Adhering to the Security Logging and Monitoring standard for the bank
  • Governance, compliances, Access control, Automation, and data onboarding of different technologies
  • Provide expert knowledge of Splunk platform engineering 'hands on' for the proposal, data onboarding, and automation
  • Collaborate with other engineering teams
  • Be up to date with the latest SIEM (Splunk & Azure Sentinel) security technologies and architecture
  • Responsible for solutions in areas such as, but not limited to: Enterprise Splunk suite of applications, ITSI, UBA, CRIBL
  • Microsoft Security Solutions (Sentinel, etc.)
  • Virtualization and Cloud (Azure, Google, AWS)
  • Advanced Security Technologies (Monitoring toolset.)
  • Lead a team, drive deliverables, work with leadership on strategy, architect, engineer, design, build, support, and document solutions in these areas of Security Engineering
  • Fulltime
Read More
Arrow Right

Senior Systems Operations Engineer

This is an individual contributor role within the CTO ITSO Application Support o...
Location
Location
India , Bengaluru
Salary
Salary:
Not provided
https://www.wellsfargo.com/ Logo
Wells Fargo
Expiration Date
April 29, 2026
Flip Icon
Requirements
Requirements
  • 4+ years of Systems Engineering, Technology Architecture experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education
  • Hands‑on experience supporting enterprise application platforms in the areas of monitoring, scheduling, or observability (e.g., Autosys, Grafana, Splunk, Cribl, ThousandEyes, or equivalent)
  • Strong understanding of ITIL processes, including incident, problem, and change management
  • Experience working in a CTO, ITSO, or large‑scale enterprise application support environment
  • Proven ability to triage complex production issues, perform root cause analysis, and drive issues to closure
  • Solid understanding of SRE and reliability engineering concepts, including observability, error budgets, and automation
  • Ability to operate independently with a strong ownership and accountability mindset
  • Effective communication skills to work across global teams and time zones
Job Responsibility
Job Responsibility
  • Provide hands‑on production support for enterprise monitoring, scheduling, and observability platforms in line with ITIL service operations
  • Ensure platforms meet defined availability, reliability, and performance objectives, excluding approved maintenance windows
  • Drive incident management activities including triage, escalation, coordination, remediation, and post‑incident reviews
  • Contribute to problem management by identifying recurring issues and driving root‑cause fixes
  • Execute change management activities such as patching, upgrades, configuration changes, and platform enhancements following standard controls
  • Proactively monitor platform health and identify risks to stability, capacity, or performance
  • Apply an SRE mindset by identifying opportunities for automation, self‑service, and toil reduction
  • Strengthen observability practices through effective use of metrics, logs, dashboards, alerts, and synthetic monitoring
  • Create, maintain, and enhance runbooks and playbooks to improve mean time to detect (MTTD) and mean time to restore (MTTR)
  • Participate in on‑call rotations and provide timely response and ownership during production incidents
  • Fulltime
Read More
Arrow Right
New

Cybersecurity Engineer

The Security Engineering team is responsible for testing, designing and implemen...
Location
Location
Romania , Bucharest
Salary
Salary:
Not provided
nttdata.com Logo
NTT DATA
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Several years of experience in the Information Security space
  • Strong experience in CrowdStrike (at least one of these tools: EDR, CSPM, Next-Gen SIEM, Identity protection)
  • Knowledge of Qualys (at least one of these tools: VMDR, Container Security, Policy Audit)
  • Knowledge of Proofpoint, Cosmos, Cribl, Clutch, Zscaler, TheHive (Automation tools)
  • Strong experience with security strategy
  • Strong experience in migrating enterprise companies from traditional data center infrastructure, application and data designs to hybrid or fully-cloud enabled practices
  • Strong experience with cloud provider ecosystems, including Amazon AWS, Microsoft Azure, and OpenStack
  • Strong experience with a broad range of security technologies, including NextGen Firewalls, DLP, NAC, IDS/ IPS, IdAM, Certificate Management, SIEM, Endpoint Protection, Anti-malware, vulnerability management
  • Strong experience with multiple relational database platforms, including MSSQL, Oracle, MySQL
  • Strong oral, written, and presentation abilities
Job Responsibility
Job Responsibility
  • Work closely with enterprise architects, other functional-area architects, engineering, and security specialists to ensure adequate security solutions and controls are in place
  • Assess and understand NTT DATA Services’ current security posture and future architecture, providing a viable solution path to bridge the gap
  • Assess and understand the current and planned security posture for platforms (e.g. servers, databases, web servers), providing recommendations for improvement and risk reduction
  • Provide security subject matter expertise on cloud control implementation for enterprise-scale projects
  • Serve as a security expert in application development, database design, network and/or platform (operating system) efforts
  • Design security configuration standards, procedures, and guidelines for platforms
  • Design and implement mechanisms for assessing bi-modal compliance with the standards, procedures, and guidelines
  • Identify and execute on opportunities to automate cloud security controls
  • Design and build controls to address security risks and events as identified
  • Define clear, concise, and executable standard operating procedures and documentation for any implemented solutions for formal operational handoff
What we offer
What we offer
  • Comprehensive, locally competitive benefits package
Read More
Arrow Right