Splunk / Cribl Engineer, Cybersecurity Engineering

AbbVie

Confirmed live yesterday High trust
Hybrid

Quick summary

Work type
Hybrid
Location
Chicago, IL
Salary
$84,500–$162,000 / yr
Posted
42 days ago
Freshness
Confirmed live yesterday
Closes
Jul 31, 2126

Market check

Salary context

Below market

How this pay compares to similar roles

Similar $161k
This role $123k
$70k most similar roles pay here $217k

This role pays less than 85% of similar roles. Most pay $137,650–$185,000 — the shaded band above. At the midpoint, this role pays about $123k versus about $161k for comparable roles.

Based on 240 similar postings.

Employer

About AbbVie

AbbVie is a global biopharmaceutical company focused on discovering and delivering innovative medicines and solutions in immunology, oncology, neuroscience, and eye care. Its products include Humira, Skyrizi, and Rinvoq.

AbbVie currently has 297 open roles on FindRole.

Listed pay typically runs $109,500–$208,500 across 271 roles with salary data.

Most-posted roles

View all roles at AbbVie

At a glance

TL;DR · Splunk / Cribl Engineer, Cybersecurity Engineering

As part of the Cyber Security Engineering team, the Splunk / Cribl Engineer - Cybersecurity Engineering (Hybrid) serves as a Data Engineer focused on expanding data capabilities to protect the business. This role involves designing and implementing robust streaming and batch data pipelines using message brokers, while performing data transformation, normalization, and modeling to create structured datasets from unstructured logs. The engineer will manage end-to-end data lineage, integrate disparate security telemetry into SIEM platforms, and develop automated metrics for the security operations team. Key technical requirements include proficiency in Splunk’s Search Processing Language (SPL), regular expressions, and parsing techniques. Candidates should possess experience with CI/CD pipelines, Git, and database management systems. The role addresses the challenge of managing large-scale security data to provide actionable insights and optimized storage for long-term analytics and threat hunting.

What you'll do

  • Design and implement robust streaming and batch data pipelines using message brokers for SIEM and analytics engines.
  • Route, filter, and normalize unstructured logs into structured datasets before ingestion into the SIEM.
  • Build scalable data models and enhance standard schemas within data warehousing solutions to optimize storage and queries.
  • Verify data integrity and manage end-to-end data lineage across distributed systems and message topics.
  • Integrate disparate security telemetry sources into the SIEM, data warehouses, and other repositories via APIs and coding.
  • Execute testing plans, debug pipeline routing issues, and document data flows and integration protocols.
  • Manage the cataloging, caching, and retrieval of telemetry within the SIEM and associated data lakes.
  • Develop automated systems for metrics aggregation and reporting to provide actionable insights for security operations.

What we're looking for

  • Bachelor's Degree with 5 years of experience or a Master's Degree with 4 years of experience.
  • Experience writing and optimizing Splunk Search Processing Language (SPL).
  • Proven ability to administer Splunk Enterprise and onboard data sources.
  • Skills in developing data models, dictionaries, and reports within a SIEM platform.
  • Experience building and configuring data pipelines and using regular expressions to parse unstructured data.
  • Knowledge of database management systems, query languages, table relationships, and views.
  • Experience with CI/CD Pipelines, Git, and database or system integration technologies.
  • Splunk, Cribl, or Cloud certifications (preferred); experience with Agile, Python, PowerShell, Go, and ETL in a SIEM environment (preferred).

More like this

Similar roles

Lead Cribl and Splunk Logging Engineer

Prudential Financial

Newark, NJ 91 days ago $133,600$220,400
Splunk Cribl Stream SIEM Log Management Data Pipelines Data Parsing Event Correlation Data Ingestion Dashboarding

SIEM Data Engineer

State Street

Quincy, MA 23 days ago $90,000$157,500
Splunk Databricks Cribl Stream Python SQL Spark SQL SPL Shell PowerShell SIEM Kafka Fluent Bit Fluentd REST APIs JSON XML CSV Syslog Data Engineering
5+ yrs exp Hybrid

Senior SIEM Data Engineer

State Street

Quincy, MA 42 days ago
Splunk Databricks Cribl Stream Python SQL Spark SQL PySpark Shell PowerShell CI/CD Infrastructure-as-Code DataOps DevSecOps Kafka Fluent Bit Fluentd REST APIs Syslog
8+ yrs exp Hybrid

Cybersecurity Engineer

Visa

Austin, TX 180 days ago $123,700$191,300
SSDLC SAST DAST SCA CI/CD OWASP Top 10 OWASP API Top 10 CWE Top 25 Java Python C#/.NET PowerShell Veracode Checkmarx Sonatype Acunetix Burp Suite TeamCity Jenkins Windows Server Linux Apache Nginx
2+ yrs exp Hybrid

Cybersecurity Engineer

Booz Allen Hamilton

Charleston, SC 23 days ago $69,400$158,000
Cybersecurity Network Security Vulnerability Assessment Big Data Analytics Information Assurance Security+ Event Correlation Cyber Defense IAM IAT IASAE
10+ yrs exp

AI Cybersecurity Engineer

Invenergy

Chicago, IL 10 days ago $137,000$160,000
AI Machine Learning LLM Cybersecurity Engineering Detection Engineering SIEM Python PowerShell MLOps NIST CSF MITRE ATLAS OWASP AI/LLM Top 10 Security Automation
7+ yrs exp