What are the responsibilities and job description for the Staff Security Logging Engineer - Must have experience with CribI Suite & Splunk position at Conexess Group?
Title: Staff Security Logging Engineer - Certified CribI Engineer & Splunk
Location: 100% **Must be 70 miles from Dallas, TX or Kansas City, KS/MO**
Description & Requirements:
We’re more than a technology company, we’re a force for good in financial services. We’re redefining how community banks and credit unions connect with the people they serve. Our mission is rooted in people inspired innovation, empowering financial institutions to deliver seamless, secure, and human centered experiences. We deliver cutting-edge solutions that are paving the way for the next generation of digital banking and payments, but our true impact begins with our associates. If you're ready to help transform an industry and grow with a company that values purpose, collaboration, and excellence then we’d love to meet you.
As a deeply skilled engineer at the intersection of security and big data, you possess an architectural mindset and a passion for pipeline optimization. You are a Subject Matter Expert in the Splunk and Cribl ecosystems, with a proven track record of managing massive data flows into SIEM, SOAR, and cloud-native data lakes. You thrive in complex enterprise environments where self-motivation and technical leadership are essential for success.
This is a remote position, and candidates must live within approximately a 70-mile radius of our office locations in Dallas, TX; Kansas City, KS/MO
The working hours will flexibly be 8am-5pm based on time zone.
This position is ineligible for immigration sponsorship and support. Please do not apply if at any time you will need immigration support now or in the future (i.e., H-1B, STEM OPT Training Plans, etc.).
All positions, regardless of location, may require an onsite interview or in-person onboarding requirement to verify your identity.
What you’ll be responsible for:
- Design and implementation of enterprise logging and data solutions.
- Identifying suboptimal configurations and defining resolution strategies for enterprise logging and data platforms.
- Ensuring license, ingest, and cost prevention strategies are developed and applied to all applicable platforms.
- Assist with the development and creation of platform roadmaps and lifecycle strategies.
- Pipeline Architecture: Design, build, and maintain scalable data pipelines to ingest, parse, and normalize security telemetry from diverse sources (Cloud, Endpoint, Network, Identity).
- Data Lifecycle Management: Implement data retention, archiving, and tiering strategies to balance compliance requirements with storage costs.
- Health & Performance Monitoring: Develop dashboards and alerts to monitor the latency, throughput, and "heartbeat" of log sources to ensure zero data loss.
- Stakeholder Collaboration: Partner with Incident Response (IR) and Detection Engineering teams to ensure they have the right data, in the right format, at the right time.
- Contributes to threat prevention by researching, recommending, developing, and implementing changes to security tools across host, network, and cloud environments.
- Provides complex troubleshooting and support for cybersecurity-related issues.
- Leads and completes assigned cybersecurity-related projects.
- Develops and implements standards to apply cybersecurity controls consistent with approved policies.
- Leads documentation and process improvement efforts.
- Resolves escalated security cases.
- Provides assistance and guidance to less experienced team members.
- Performs other duties as assigned.
- Minimum of nine years’ experience insecurity data observability and management supporting security operations center (SOC) teams or similar.
- Certified Cribl Engineer - Willing to look at equivalant enterprise experience.
- Minimum two years’ experience as a Cribl administrator/engineer.
- Demonstrable experience with Splunk at an engineering level.
- Demonstrable experience with major SIEM/SOAR platforms.
- At least one professional level cybersecurity data management certification, or similar.
- Experience in highly regulated environments, or knowledge of PCI-DSS, HIPAA, or GDPR mandates.