Cribl Engineer

SYSTEMTEC•Columbia, SC
•Remote

About The Position

SYSTEMTEC is seeking a Cribl Engineer for a remote opportunity for candidates working EST hours. Candidate will serve as a Data Modeling Security Engineer responsible for designing, implementing, and maintaining enterprise-scale Cribl data models and log ingestion pipelines. The role will also provide hands-on security engineering support across SIEM, XDR, vulnerability management, endpoint security, DLP, Linux sensors, and security automation.

Requirements

  • Applicants must be authorized to work for any employer in the U.S. We are unable to provide sponsorship or work with Third-Party agencies.
  • 5+ years of experience supporting large-scale IT environments, enterprise infrastructure, and/or system deployments.
  • Hands-on experience with Cribl data modeling, log ingestion, pipeline development, data transformation, and routing.
  • Strong understanding of enterprise security architecture, security engineering principles, and secure system design.
  • Experience implementing and supporting enterprise security platforms, including SIEM, XDR, vulnerability management, DLP, and endpoint security solutions.
  • Experience developing automation, integrations, and operational tooling using Python, Bash, or similar scripting languages.
  • Strong knowledge of cybersecurity best practices, threat detection, incident monitoring, and defensive security strategies.
  • Experience administering, hardening, and securing Linux and Windows operating systems.
  • Understanding of networking fundamentals, security protocols, authentication, and secure infrastructure configurations.
  • Bachelor's degree in Information Technology, Cybersecurity, Information Security, Computer Science, or a related field; eight years of relevant experience may substitute for the degree.
  • Candidates must also have at least five years of experience supporting large IT environments and/or system deployments.

Nice To Haves

  • Extensive hands-on experience designing and optimizing Cribl data models and production log pipelines.
  • SIEM administration, security analytics, data onboarding, and reporting experience.
  • Experience deploying and supporting Linux-based security sensors.
  • Familiarity with NIST CSF, CJIS, IRS 1075, and CMS MARS-E requirements.
  • CISSP and/or Security+ certification.

Responsibilities

  • Design, implement, maintain, and optimize Cribl pipelines and data models for large-scale security log ingestion and telemetry management.
  • Support the planning, deployment, configuration, and operation of SIEM, XDR, vulnerability management, DLP, endpoint monitoring, and related security platforms.
  • Develop security automation and integrations while assisting with Linux sensor deployment, system hardening, and security configuration.
  • Work with security architecture and engineering teams to develop solutions aligned with organizational security objectives, regulatory requirements, and risk considerations.
  • Support threat detection and incident response through security monitoring, log analysis, troubleshooting, reporting, and implementation of appropriate countermeasures.
  • Create technical documentation, configuration standards, implementation procedures, and operational runbooks; participate in an on-call rotation as required.

Benefits

  • health coverage
  • dental coverage
  • disability coverage
  • life coverage
  • 401(k) with match
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service