Cribl Engineer
Columbia, SC - USA
Job Summary
SYSTEMTECis seeking a Cribl Engineer for a remote opportunity for candidates working EST hours. Candidate will serve as a Data Modeling Security Engineer responsible for designing implementing and maintaining enterprise-scale Cribl data models and log ingestion pipelines. The role will also provide hands-on security engineering support across SIEM XDR vulnerability management endpoint security DLP Linux sensors and security automation.
Required Qualifications of the Cribl Engineer:
- Applicants must be authorized to work for any employer in the U.S. We are unable to provide sponsorship or work with Third-Party agencies.
- 5 years of experience supporting large-scale IT environments enterprise infrastructure and/or system deployments.
- Hands-on experience withCribl data modeling log ingestion pipeline development data transformation and routing.
- Strong understanding of enterprise security architecture security engineering principles and secure system design.
- Experience implementing and supporting enterprise security platforms including SIEM XDR vulnerability management DLP and endpoint security solutions.
- Experience developing automation integrations and operational tooling usingPython Bash or similar scripting languages.
- Strong knowledge of cybersecurity best practices threat detection incident monitoring and defensive security strategies.
- Experience administering hardening and securingLinux and Windowsoperating systems.
- Understanding of networking fundamentals security protocols authentication and secure infrastructure configurations.
- Bachelors degree in Information Technology Cybersecurity Information Security Computer Science or a related field;eight years of relevant experience may substitute for the degree. Candidates must also have at least five years of experience supporting large IT environments and/or system deployments.
Preferred Skills/Experience of the Cribl Engineer:
- Extensive hands-on experience designing and optimizing Cribl data models and production log pipelines.
- SIEM administration security analytics data onboarding and reporting experience.
- Experience deploying and supporting Linux-based security sensors.
- Familiarity with NIST CSF CJIS IRS 1075 and CMS MARS-E requirements.
- CISSP and/or Security certification.
Responsibilities of the Cribl Engineer:
- Design implement maintain and optimize Cribl pipelines and data models for large-scale security log ingestion and telemetry management.
- Support the planning deployment configuration and operation of SIEM XDR vulnerability management DLP endpoint monitoring and related security platforms.
- Develop security automation and integrations while assisting with Linux sensor deployment system hardening and security configuration.
- Work with security architecture and engineering teams to develop solutions aligned with organizational security objectives regulatory requirements and risk considerations.
- Support threat detection and incident response through security monitoring log analysis troubleshooting reporting and implementation of appropriate countermeasures.
- Create technical documentation configuration standards implementation procedures and operational runbooks; participate in an on-call rotation as required.
Work Location: 100% Remote. EST hours.
Compensation / Benefits:
Full-Time Employment with SYSTEMTEC means competitive compensation access to health dental disability and life coverage and 401(k) with match.
***Please note:SYSTEMTEC is not set up to employ workers in the states of California New York and New Jersey.***
Required Experience:
IC