Security Observability Engineer

Starr Insurance Companies$90K — $120K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 5-7 years of experience in security observability engineering
  • Strong expertise in Splunk and SIEM technologies
  • Proven track record in log ingestion and observability pipeline optimization
  • Experience in data security and safe data delivery practices
  • Knowledge of load balancing and high availability strategies for log infrastructure

Responsibilities

  • Lead the migration of log ingestion and observability pipelines
  • Optimize security observability processes and procedures
  • Ensure secure operation of log infrastructure
  • Develop and implement data reduction strategies
  • Enhance SIEM coverage for better security analytics

Benefits

  • Flexible work environment
  • Opportunities for professional development
  • Access to cutting-edge technologies
  • Collaborative team culture
  • Health and wellness initiatives
Full Job Description

Security Observability Engineer

Job Overview

We are seeking an experienced Security Observability Engineer to lead the migration, optimization, and secure operation of our log ingestion and observability pipelines. The role emphasizes secure data delivery, advanced SIEM coverage, Splunk expertise, data reduction strategies, and robust load balancing and high availability for log infrastructure.

Key Responsibilities

• End-to-End SIEM Pipeline Management & Optimization

• Lead the migration of log sources from Splunk ingestion to Cribl Stream/Edge

pipelines, ensuring load-balanced, fault-tolerant delivery and processing of security and IT logs.

• Architect and manage scalable, resilient pipelines—including design,

implementation, and operation of load balancing solutions (e.g., Cribl worker groups, external load balancers, or syslog load distribution) for high ingest volumes.

• Analyze, tune and securely onboard all log sources (firewalls, EDR, cloud,

authentication, proxies, etc.)—covering parsing, filtering, and data reduction techniques to minimize Splunk ingest/storage costs without sacrificing security coverage.

• Develop and maintain Cribl and Splunk configurations, including advanced

transformations, field normalization, masking, and enrichment for security analytics.

• Ensure optimal distribution of logging workload across Cribl worker nodes and

Splunk indexers to prevent bottlenecks, data loss, or single points of failure. • Security Event Visibility and SOC Enablement

• Collaborate with SOC, IR, and threat detection teams to ensure all security logs

reach the SIEM eRiciently and reliably, and logs are tuned for actionable detection. • Actively monitor, test, and remediate pipeline balancing and ingestion health to

maximize uptime and forensic visibility.

• Respond to and resolve SIEM and pipeline issues that impact security, detection, or

compliance visibility.

• Governance, Compliance & Documentation

• Apply and document security policies for log routing, load balancing, event

retention, and integrity—ensuring pipeline architecture meets audit, legal, and privacy requirements.

• Track and report ingest reduction, Splunk cost savings, pipeline health, and event

loss/drop rates across the load-balanced infrastructure.

• Maintain clear, up-to-date documentation of log flows, pipeline topology, load

balancing strategies, and operational procedures.

Required Skills & Qualications

• Extensive hands-on experience with Splunk SIEM engineering (indexers, search

heads, clustering, forwarders, CIM, performance/load optimization).

• 2+ years with Cribl Stream/Edge, including deployment and tuning of distributed,

load-balanced pipelines.

• Deep understanding of machine data transport (syslog, HEC, TCP, UDP), log

balancing strategies (syslog balancers, DNS round-robin, Cribl worker groups, etc.), and high-availability logging environments.

• Proven expertise onboarding, parsing, and tuning security log sources (firewalls,

cloud, EDR/XDR, IAM, authentication, and networking) for best possible coverage and SOC/IR support.

• Advanced Splunk SPL, data model, event parsing, and alert tuning skills; practical

SIEM optimization experience.

• Scripting/automation ability (Python, shell/CLI, or similar) for pipeline management

and validation.

• Strong troubleshooting, monitoring, and operational dashboard skills for both

pipeline and SIEM health.

Preferred Qualications

• Hands-on experience designing and operating clustered/HA Cribl and Splunk

deployments (worker groups, clustered indexers, resilient data forwarders, etc.). • Splunk ES or Cribl certifications.

Key Success Metrics

• No loss of security data or alert coverage during/after pipeline migration and

optimization.

• Documented, measurable reductions in Splunk ingest volume and

operational/storage cost.

• Consistently balanced log throughput and minimal risk of bottlenecks or

overloads—pipeline health and reliability metrics maintained above SLA. • Well-documented, adaptable pipeline and load balancing architecture.

The estimated salary range for this position is 90k-120k

About Starr Insurance Companies

Starr Insurance Companies Careers

There has never been a better time to join the global team of Starr Insurance Companies—the leading provider of insurance and investment solutions worldwide.

Work You’ll Do

Join Starr Insurance Companies' top-tier team to assist some of the most prestigious clients in navigating their risk management and insurance strategies. Transform the approach to global insurance solutions with the brightest minds at Starr Insurance Companies. This is where innovation meets industry expertise in a dynamic environment. Lead from a unique position in the marketplace, at the crossroads of deep industry knowledge and extensive insurance innovation. Engage with a worldwide network of professionals dedicated to redefining the future of insurance and risk management. Collaborate with a diverse and inclusive team, fostering a culture of professional growth and diversity training.

Introducing the Starr Insurance Companies Professional Growth Path

The team is committed to building a leading career development framework to help individuals master their professional journey within the insurance industry.

Do Innovative Work

Be part of a team that is at the forefront of industry innovation—delivering targeted solutions through a depth of expertise that is unmatched in the insurance sector.

Drive Innovation and Leadership

Develop and implement groundbreaking solutions on trusted platforms, enhancing Starr Insurance Companies' position as a leader in the insurance industry.

Be Part of a Great Team

Join a team that values diversity and leadership, working on a wide range of initiatives that harness the capabilities of Starr Insurance Companies' global presence.

Future-proof Your Career

Advance your career with limitless opportunities supported by unmatched training, development, and certification programs.

Explore

Discover how Starr Insurance Companies is leading the way in predictive analytics to revolutionize risk assessment and management solutions.

The Starr Insurance Companies Edge

With a commitment to innovation and leadership, Starr Insurance Companies helps clients tackle the challenges of today’s dynamic market. Clients globally turn to Starr Insurance Companies for strategic insights and solutions that drive growth and success in the insurance industry.

Stay Connected

Join the Team

Search open positions that match your skills and interests. Starr Insurance Companies seeks passionate, curious, and solution-driven team players. SEARCH STARR INSURANCE COMPANIES JOBS

Keep Up to Date

Stay informed with career tips, insider perspectives, and industry-leading insights you can put to use today—all from the professionals who work at Starr Insurance Companies.

READ CAREERS BLOG

Job Alert Emails

Customize your subscription to receive job alerts, the latest news, and insider tips tailored to your preferences. Explore the exciting and rewarding career opportunities that await at Starr Insurance Companies.
Learn more about Starr Insurance Companies

Similar Jobs

More Jobs at Starr Insurance Companies

More Information Technology Jobs

Find similar Security Observability Engineer jobs: