We use cookies. Find out more about it here. By continuing to browse this site you are agreeing to our use of cookies.
#alert
Back to search results
New

Splunk SOAR Developer

Genesis10
life insurance, 401(k)
United States, Illinois, Chicago
Feb 13, 2026

Genesis10 is currently seeking a Splunk SOAR Developer with our client in the financial industry located in Chicago, IL and Denver, CO. This is a 12+ month contract position.

Responsibilities:

  • Design & implement playbooks for phishing, malware triage, threat client enrichment, VIP account protections, user lockouts, EDR containment, firewall updates, cloud response, and ticket lifecycle automation
  • Develop custom Splunk SOAR apps (integrations) using Python to interact with REST APIs, webhooks, OAuth2 flows, and vendor SDKs (e.g., EDR, email security, IAM, cloud, firewalls)
  • Harden and scale automations: add idempotency, robust error handling, retries/backoff, caching, and distributed execution; reduce runtime and failures
  • Own integration health: monitor connectors, troubleshoot failures, resolve API changes/rate limits, and maintain credentials/key vault hygiene
  • Partner with SOC/IR: capture requirements, translate manual runbooks into automations, run UAT, measure impact, and iterate
  • Data handling: parse/transform JSON, enrich IOCs, normalize artifacts/containers, write result cards and evidence to Splunk ES/notebooks/tickets
  • Quality & governance: version control (Git), code reviews, CI/CD for playbook promotion across dev/test/prod; maintain documentation and runbooks
  • Metrics & reporting: define KPIs (MTTD/MTTR reduction, automation coverage, savings hours, error rate), publish dashboards, and drive continuous improvement
  • Security best practices: least privilege for service accounts, secrets management, audit logging, and change control (CAB) for highimpact workflows
  • Support: participate in an oncall or pager rotation (if required) for critical automations experience


Requirements:

  • 5-7 years' developing in Splunk SOAR (Phantom) with a portfolio of production playbooks and custom apps
  • Advanced Python (3.x): requests, async patterns, exception handling, data parsing, unit testing, packaging
  • Strong knowledge of security operations and common use cases: phishing, EDR triage/containment, sandboxing, TI enrichment, IAM actions, cloud remediation, firewall rules
  • Handson experience integrating with several of: CrowdStrike, Defender, Carbon Black, Okta/Azure AD, Proofpoint/M365, Palo Alto/Fortinet, VirusTotal, Recorded Future, ServiceNow/Jira, AWS/Azure/GCP
  • Proficiency with REST APIs (auth, pagination, rate limits), JSON, and Postman/Swagger
  • Git workflows; promoting artifacts across environments with approvals and rollback plans
  • Understanding of Splunk ES, notable events, adaptive responses, and alert pipelines
  • Excellent documentation, stakeholder communication, and requirements gathering

Pay range: $70.25 - $78.25

Only candidates available and ready to work directly as Genesis10 employees will be considered for this position.

If you have the described qualifications and are interested in this exciting opportunity, please apply!

About Genesis10:

Ranked a Top Staffing Firm in the U.S. by Staffing Industry Analysts for six consecutive years, Genesis10 puts thousands of consultants and employees to work across the United States every year in contract, contract-for-hire, and permanent placement roles. With more than 300 active clients, Genesis10 provides access to many of the Fortune 100 firms and a variety of mid-market organizations across the full spectrum of industry verticals.

For contract roles, Genesis10 offers the benefits listed below. If this is a perm-placement opportunity, our recruiter can talk you through the unique benefits offered for that particular client. Benefits of Working with Genesis10:

* Access to hundreds of clients, most who have been working with Genesis10 for 5-20+ years.
* The opportunity to have a career-home in Genesis10; many of our consultants have been working exclusively with Genesis10 for years.
* Access to an experienced, caring recruiting team (more than 7 years of experience, on average.)
* Behavioral Health Platform
* Medical, Dental, Vision
* Health Savings Account
* Voluntary Hospital Indemnity (Critical Illness & Accident)
* Voluntary Term Life Insurance
* 401K
* Sick Pay (for applicable states/municipalities)
* Commuter Benefits (Dallas, NYC, SF and Illinois)


For multiple years running, Genesis10 has been recognized as a Top Staffing Firm in the U.S., as a Best Company for Work-Life Balance, as a Best Company for Career Growth, for Diversity, and for Leadership, amongst others. To learn more and to view all our available career opportunities, please visit us at our website.

Genesis10 is an Equal Opportunity Employer. Candidates will receive consideration without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.

Applied = 0

(web-54bd5f4dd9-d2dbq)