Sr Splunk UBA Engineer - ONSITE Job at Simple Solutions, Miami, FL

NVZHNnA5MVFUdmpuOWJ1Q0Jac0dQMVQ0TlE9PQ==
  • Simple Solutions
  • Miami, FL

Job Description

Job Title: Splunk UBA Engineer

3-6 months

onsite - St, Doral, FL 33172, USA

***  MUST HAVE SECRET CLEARANCE***

We are seeking an experienced and analytical Splunk UBA Engineer to implement, optimize, and maintain our User Behavior Analytics (UBA) platform. In this role, you will use behavioral modeling and machine learning capabilities in Splunk UBA to identify insider threats, compromised accounts, data exfiltration, and other advanced attack techniques. You will work closely with SOC analysts, engineers, and data owners to turn user activity data into actionable intelligence and risk-based threat detections.

Key Responsibilities • Deploy, configure, and maintain the Splunk UBA platform, including data ingestion, normalization, and threat model tuning.

• Deploy UBA cluster designing the build

• Ingest and map logs from various sources (e.g., Active Directory, VPN, firewalls, proxy, endpoint, etc.) into UBA.

• Develop and refine behavioral baselines and anomaly detection models to identify suspicious or malicious activity.

• Tune and customize threat models to align with organizational risks and reduce false positives.

• Collaborate with the SOC and threat detection teams to operationalize UBA detectionsthrough risk scoring, notable events, and incident response workflows.

• Build and maintain dashboards, entity timelines, and investigative tools within UBA to support threat hunting and investigations.

• Integrate UBA output with Splunk Enterprise Security (ES) or SOAR platforms for automated response and triage.

• Continuously evaluate new data sources, use cases, and detection strategies to enhance UBA capabilities.

• Document procedures, configurations, and threat model customizations.

Qualifications

Required: • 2–4 years of experience in security engineering, threat detection, or security analytics.

• Hands-on experience with Splunk UBA and a strong understanding of behavior-based threat detection.

• Proficiency in log analysis and understanding of common data sources (AD, EDR, firewalls, VPN, etc.).

• Knowledge of machine learning basics, anomaly detection, and risk-based scoring concepts.

• Strong grasp of attack vectors such as lateral movement, privilege escalation, and insider threats.

• Ability to write clear documentation and communicate findings effectively. Preferred:

• Experience with Splunk Enterprise Security (ES) and/or SOAR integrations.

• Familiarity with MITRE ATT&CK and threat detection frameworks.

• Background in scripting (Python, PowerShell) and API-based data integrations.

• Splunk certifications such as Splunk Core Certified Power User or Splunk UBA Certified Admin.

arning-based anomaly detection and predictive analytics.

Job Tags

Contract work,

Similar Jobs

Family Service Rochester

Social Worker - Mental Health and Homelessness Job at Family Service Rochester

 ...in our Guiding Partners to Solutions (GPS) team, focusing on Mental Health and Homelessness. As a social worker specializing in mental health...  ...plans in collaboration with other service providers. Advocating for individuals needs within the community and with service... 

Rittenhouse Markets

Supermarket Front End Shift Supervisor Job at Rittenhouse Markets

Rittenhouse Market is seeking qualified applicants to join our team of Front End Shift Supervisors. Provide shift leadership to ensure smooth operation of the Front End Team and accurate cash handling . Ensure a positive guest experience by providing courteous, friendly...

Goodyear Tire & Rubber Company

Part Time Lube and Tire Automotive Technician - Johnson County, KS Job at Goodyear Tire & Rubber Company

 ...career? You have what we've been looking for! This location is closed on Sundays Goodyear owns and operates more than 580 tire and auto service centers nationwide. We offer a fun, fast paced work environment, with competitive base pay. Our comprehensive benefit... 

Degenkolb Engineers

Entry-Level Structural Engineer | Designer Job at Degenkolb Engineers

 ...variety ofpractice areassuch as healthcare, education, science and technology,forensics, construction engineering, and federal buildings. We...  ...Position Description : We review candidates for this entry-level structural engineering position throughout the year in all... 

THE BELT RAILWAY COMPANY

Terminal Manager Job at THE BELT RAILWAY COMPANY

Job Description The Terminal Manager manages all rail operations in the terminal and ensures that a high quality of safe, on-time service is mirrored throughout the staff. A successful candidate needs excellent customer service skills, leadership skills, communication...