Posted:3 months ago| Platform:
Work from Office
Full Time
We are looking for a Splunk Security Engineer to manage and optimize our Splunk platform. In this role, you will be responsible for integrating various data sources, parsing, creating content using SPL queries, and working with Splunk add-ons. 2. Responsibilities Manage and optimize the Splunk platform for security operations and analysis. Integrate and parse data from various sources, including SentinelOne, Mimecast, Zscaler, Firewalls, Cloudflare WAF, Peoplesoft, Oracle Fusion, and other business applications. Develop and write SPL queries to create custom content and dashboards for security monitoring and incident response. Work with Splunk add-ons and the Common Information Model (CIM) to enhance data normalization and reporting. Maintain and optimize Splunk infrastructure for high availability and efficient performance. Provide actionable insights through dashboards and visualizations to strengthen the organizations security posture. Collaborate with cross-functional teams to ensure data accuracy and completeness in the security analytics platform. Troubleshoot, analyze, and resolve issues related to Splunk data ingestion, performance, and query efficiency. 3. Qualifications Bachelors or master’s degree in computer science, or equivalent experience in related field. 5-10 years professional experience managing and maintaining Splunk Proven experience in Splunk platform administration and Splunk Enterprise Security (ES). Strong knowledge of Search Processing Language (SPL) and experience creating custom content and queries. Experience working with Splunk add-ons (TAs) and Common Information Model (CIM) for data normalization. Familiarity with security technologies, including endpoint protection (e.g., SentinelOne), network security tools (e.g., firewalls, VPNs), and cloud-based platforms. Strong analytical and troubleshooting skills for optimizing the Splunk environment and security monitoring. 4. Certifications Splunk Enterprise Certified Admin Splunk Core Certified Power User or other Splunk certifications.
Upload Resume
Drag or click to upload
Your data is secure with us, protected by advanced encryption.
Bengaluru
12.0 - 16.0 Lacs P.A.
Bengaluru
12.0 - 17.0 Lacs P.A.
Bengaluru
30.0 - 35.0 Lacs P.A.
Bengaluru
35.0 - 60.0 Lacs P.A.
Mumbai, Bengaluru
20.0 - 35.0 Lacs P.A.