Posted on: 30/07/2026
Role & responsibilities :
- Overall experience 6-10 years, including SIEM Splunk Enterprise Security administrator, Splunk Enterprise, Splunk Enterprise Security and Splunk ITSI.
- Experience in managing, supporting, deploying and documenting monitoring solutions.
- Experience with Splunk data, use case, deployment, Splunk reporting, Splunk knowledge objects, Splunk searching & optimization, and knowledge of OpenSearch and migration from Splunk to OpenSearch.
- Excellent communication and analytical skills with ability to present technical details to the stakeholders in technical and non-technical backgrounds.
- Very good experience in migration of Splunk indices and dashboards to OpenSearch/ElasticSearch.
- Experience administering and/or developing for an enterprise level implementation of Splunk and OpenSearch (clustered architecture).
- Education : Bachelors degree in information security, Computer Science, or a related field, and a masters in business management is preferred.
Preferred candidate profile :
- Resource will be responsible for End2End Splunk Infrastructure Migration from Physical to Virtual.
- Deploy, Configure, & Manage Splunk Infrastructure (Indexers, Forwarders, Search Heads, Clustering etc.).
- Onboard & Parse New Data Sources into Splunk from Various Platforms (Linux, Windows, Cloud Services, Network Devices, etc.).
- Create & Manage Splunk Knowledge Objects : Dashboards, Alerts, Reports, Saved Searches.
- Manage User Roles, Authentication (e.g., LDAP, SSO), & Access Control.
Did you find something suspicious?
Posted by
Posted in
CyberSecurity
Functional Area
Cyber Security
Job Code
1658980