Cribl Engineer

Systemtec

• $110K — $130K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • U.S. work authorization required; no sponsorship available.
  • 5+ years supporting large-scale IT environments or system deployments.
  • Hands-on experience with Cribl data modeling and log ingestion pipelines.
  • Strong understanding of enterprise security architecture and secure system design.
  • Experience with SIEM, XDR, vulnerability management, DLP, and endpoint security solutions.
  • Proficient in Python, Bash, or similar scripting languages for automation and tooling.
  • Solid knowledge of cybersecurity best practices and threat detection strategies.
  • Experience with securing Linux and Windows operating systems.

Responsibilities

  • Design and optimize Cribl pipelines and data models for security log ingestion.
  • Support deployment and operation of SIEM, XDR, and related security platforms.
  • Develop security automation and assist with Linux sensor deployments.
  • Collaborate with security architecture teams to ensure compliance with security objectives.
  • Conduct security monitoring, log analysis, and incident response activities.
  • Create technical documentation and participate in on-call rotations.

Benefits

  • Competitive compensation package.
  • Health, dental, disability, and life insurance coverage.
  • 401(k) plan with a company match.
  • Opportunities for remote work with a flexible schedule.
Full Job Description
Candidate will serve as a Data Modeling Security Engineer responsible for designing, implementing, and maintaining enterprise-scale Cribl data models and log ingestion pipelines. The role will also provide hands-on security engineering support across SIEM, XDR, vulnerability management, endpoint security, DLP, Linux sensors, and security automation.

Required Qualifications of the Cribl Engineer:
  • Applicants must be authorized to work for any employer in the U.S. We are unable to provide sponsorship or work with Third-Party agencies.
  • 5+ years of experience supporting large-scale IT environments, enterprise infrastructure, and/or system deployments.
  • Hands-on experience with Cribl data modeling, log ingestion, pipeline development, data transformation, and routing.
  • Strong understanding of enterprise security architecture, security engineering principles, and secure system design.
  • Experience implementing and supporting enterprise security platforms, including SIEM, XDR, vulnerability management, DLP, and endpoint security solutions.
  • Experience developing automation, integrations, and operational tooling using Python, Bash, or similar scripting languages.
  • Strong knowledge of cybersecurity best practices, threat detection, incident monitoring, and defensive security strategies.
  • Experience administering, hardening, and securing Linux and Windows operating systems.
  • Understanding of networking fundamentals, security protocols, authentication, and secure infrastructure configurations.
  • Bachelor's degree in Information Technology, Cybersecurity, Information Security, Computer Science, or a related field; eight years of relevant experience may substitute for the degree. Candidates must also have at least five years of experience supporting large IT environments and/or system deployments.

Preferred Skills/Experience of the Cribl Engineer:
  • Extensive hands-on experience designing and optimizing Cribl data models and production log pipelines.
  • SIEM administration, security analytics, data onboarding, and reporting experience.
  • Experience deploying and supporting Linux-based security sensors.
  • Familiarity with NIST CSF, CJIS, IRS 1075, and CMS MARS-E requirements.
  • CISSP and/or Security+ certification.

Responsibilities of the Cribl Engineer:
  • Design, implement, maintain, and optimize Cribl pipelines and data models for large-scale security log ingestion and telemetry management.
  • Support the planning, deployment, configuration, and operation of SIEM, XDR, vulnerability management, DLP, endpoint monitoring, and related security platforms.
  • Develop security automation and integrations while assisting with Linux sensor deployment, system hardening, and security configuration.
  • Work with security architecture and engineering teams to develop solutions aligned with organizational security objectives, regulatory requirements, and risk considerations.
  • Support threat detection and incident response through security monitoring, log analysis, troubleshooting, reporting, and implementation of appropriate countermeasures.
  • Create technical documentation, configuration standards, implementation procedures, and operational runbooks; participate in an on-call rotation as required.

Work Location: 100% Remote. EST hours.

Compensation / Benefits:
Full-Time Employment with SYSTEMTEC means competitive compensation, access to health, dental, disability, and life coverage, and 401(k) with match.

***Please note: SYSTEMTEC is not set up to employ workers in the states of California, New York, and New Jersey.***

Similar Jobs

More Jobs at Systemtec

More Information Technology Jobs

Find similar Cribl Engineer jobs: