Posted on: 07/07/2026
Role & responsibilities:
- Overall experience of at least 4-9 years as SIEM Splunk Enterprise Security administrator.
- Hands-on experience with Splunk enterprise security (SIEM), security tools and devices, operating systems, and/or networking devices desired.
- Proven skills and experience in Use case development, Log source integration, log source parsing.
- Experience working across diverse teams to facilitate solutions.
Demonstrates proven expertise as in administering Splunk Enterprise Security (SIEM) environment. Should have the following skills:
- Splunk Certified professional having at least Splunk Admin user certification level preferrable.
- Good experience in Splunk administration and troubleshooting.
- Experience in integration of Splunk with log sources of different types including but not limited to security devices, network devices, web applications, custom applications and so on.
- Experience in tuning and troubleshooting Splunk premium apps like Enterprise Security, Phantom and UBA.
- Comfortable in writing regular expression to extract fields from custom log sources.
- Expertise in developing custom use cases using Splunk search language to correlate and alert on logs from multiple sources.
- Hands-on experience in creating dashboard and reports using SPL queries and XML.
- Good knowledge of information security and IT operations domain.
- Proficiency in client and server operating systems including Linux and Windows.
- General networking and system troubleshooting skills (firewalls, routing, NAT, etc.).
- Ability to autonomously prioritize and successfully deliver across a portfolio of projects.
- Good consulting skills with ability to manage client expectations.
Did you find something suspicious?
Posted by
Posted in
CyberSecurity
Functional Area
Cyber Security
Job Code
1652089