Splunk Automation and Integration Engineer

RTP, North Carolina

Zachary Piper Logo

Job Id:
170738

Job Category:

Job Location:
RTP, North Carolina

Security Clearance:
Secret

Business Unit:
Zachary Piper

Division:
Not Defined

Position Owner:
Kelsey Hunter

Piper Companies is hiring a Splunk Automation and Integration Engineer for a leading government-focused cybersecurity and defense technology organization in Research Triangle Park (RTP), NC. This contract opportunity will serve as the SOC's "glue engineering" function, focusing on Splunk engineering, security platform integrations, threat intelligence operationalization, Python-based automation, and the connection of security tools, threat intelligence, data sources, and workflows to create a more automated, reliable, and efficient security operations environment. Candidates must hold an active Secret Clearance and be available to work onsite in RTP, NC. 

 

 

Responsibilities of the Splunk Automation and Integration Engineer: 

 

  • Engineer and maintain integrations between security platforms including OpenCTI, Splunk, and TheHive. 
  • Develop and support security automation and SOAR-style workflows to improve SOC investigation, triage, escalation, and response processes. 
  • Build and maintain Splunk applications, dashboards, alerts, saved searches, and data models. 
  • Integrate security tools, telemetry sources, and threat intelligence feeds into Splunk. 
  • Develop Python-based automation to reduce manual SOC tasks and improve operational efficiency. 
  • Design and support SOC data integrity monitoring programs to ensure telemetry accuracy, completeness, and usability. 
  • Validate field extractions, index data, KVStore values, and search performance across Splunk environments. 
  • Create alerting and reporting mechanisms to identify data quality issues impacting detection, threat hunting, incident response, and compliance efforts. 
  • Collaborate with SOC Analysts, Detection Engineers, Threat Intelligence teams, and platform owners to improve security operations workflows. 

 

 

Requirements of the Splunk Automation and Integration Engineer: 

 

  • Active Secret Clearance (Required) 
  • Experience as a SOC Analyst who transitioned into a Security Engineering, Splunk Engineering, or Security Integration role strongly preferred. 
  • Strong hands-on experience with Splunk Enterprise and SPL. 
  • Experience integrating security tools, threat intelligence platforms, and telemetry sources into Splunk. 
  • Python scripting and automation experience. 
  • Experience with API integrations and security platform interoperability. 
  • Familiarity with OpenCTI, TheHive, SOAR technologies, or similar security platforms preferred. 
  • Experience developing custom Splunk applications, dashboards, alerts, and reporting solutions preferred. 
  • Onsite availability in RTP, NC Location 

 

 

Compensation for the Splunk Automation and Integration Engineer: 

 

  • $70 - $90+/hour  
  • Full Comprehensive Benefits: Health, Vision, Dental, PTO, Paid Holiday and Sick Leave if Required by Law 

 

Keywords: 

 

Security Engineer, SOC Engineer, Security Automation Engineer, Splunk Engineer, Splunk Enterprise, SPL, Secret Clearance, Cybersecurity Engineer, SOC Analyst, Security Integration Engineer, OpenCTI, TheHive, Python Automation, SOAR, Threat Intelligence, Detection Engineering, Incident Response, Security Operations Center, API Integrations, Data Integrity Monitoring, RTP NC, Research Triangle Park, CyberDIA, Security Telemetry, Security Platforms. 

 

 

#LI- KH1 

#ONSITE 

 

This Job opens 07/29/26 and will be open 30 days after this job posting. 

 

Apply For This Position

Personal Information

Required
Required
Required
Required
Required
Required
Required

Additional Details

Required
Required
Required

Voluntary Self-identification Form

Required
Required
Required

Veteran Status *

Discharge Date:

Resume Upload

Please note only files with .pdf, .docx, or .doc file extensions are accepted.

Currently selected file:

Don't have a resume?