Splunk / Cribl Engineer - Cybersecurity Engineering (Hybrid) at AbbVie
North Chicago, IL
—
Jul 30, 2026
North Chicago, IL
Sep 24, 2026
What this job asks for AI summary
A Data Engineer role embedded within AbbVie's Cyber Security Engineering team, focused on building and optimizing data pipelines, data models, and SIEM infrastructure to support security analytics. The position involves ingesting and normalizing security telemetry, managing data warehousing solutions, and developing automation and reporting tooling — primarily centered on Splunk and related observability and streaming technologies.
Mid level · 5+ years · Bachelor's required · Full-time
“or” means any one of them counts — you don't need all of them.
Posted 2 times — it's one opening, so apply once.
We read this from the posting text with AI. Skim the description below before ruling yourself out.
How this req sits in the market our data
Rare in this occupation — lead with these, and say what you built with them.
Most people in this occupation already list these. Still required — just not what gets you shortlisted.
What the occupation pays Median $142,568 (middle half $111,775–$173,013).
Estimated from BLS employment for this occupation and area, per-skill prevalence across our listing corpus, and published wage benchmarks — as of Aug 2, 2026. It is a model, not a headcount.
Why we read it this way (6)
The role sits squarely between data engineering (15-1243) and security analysis (15-1212). The primary day-to-day work — building pipelines, data models, and SIEM infrastructure — aligns more closely with database/data architecture, but the security context (SIEM, threat telemetry, cybersecurity team) makes 15-1212 a credible alternative.
The degree requirement is a Bachelor's with 5 years' experience OR a Master's with 4 years' experience. The minimum hard gate is a Bachelor's degree; the experience minimum is set to 5 years (the lower bound of the Bachelor's path).
Splunk appears both as a named platform (Splunk Enterprise, SPL) and implicitly through the Splunk certification preference. These are captured as separate skills to reflect the distinct required competencies (administration vs. query language).
The scripting languages (Python, PowerShell, Go) are listed under Preferred and framed as a group of alternatives; Python is used as the primary name with the others in alternatives.
ELK and Exabeam are listed as examples of prior SIEM ETL experience under Preferred; they are captured as preferred with alternatives reflecting the posting's 'etc.' framing.
Cloud certifications (AWS Solutions Architect, Azure Data Engineer Associate, Cloud Professional Data Engineer) appear only under Preferred/Additional Information; AWS and Azure are captured as preferred skills reflecting that cloud platform familiarity is desired but not required.
Read the full posting
The employer publishes the full description on their own site — read it there ↗. Or sign in to read it here — it's free, and it also lets you track this application.