Quick Overview
Work Type
Hybrid
Schedule
Full Time
Level
Mid Senior
Job Description
Role : Splunk ES
Experience : 7 to 10 years
Location : chennai, Hyderabad, Bangalore, Mumbai, Indore
Responsibilities:
- Manage and administer Splunk Enterprise Security (ES), including Data Models, Correlation Searches, Notable Events, Threat Intelligence Framework, Asset & Identity, and Content Management.
- Design, develop, and tune security detection use cases aligned with the MITRE ATT&CK framework using SPL and Splunk ES correlation searches.
- Implement and optimize Risk-Based Alerting (RBA), including risk rules, risk modifiers, and detection tuning to reduce false positives and improve alert fidelity.
- Onboard and normalize security data sources using CIM, troubleshoot data ingestion/parsing issues, and ensure data quality for security analytics.
- Collaborate with SOC & security teams to enhance detection coverage, validate use cases, and support incident investigations and continuous improvement of the Splunk security platform.
Skills
Splunk
Continuous Improvement
Similar jobs
Baufinanzierungsberater / Bankkaufmann (m/w/d) Geschäftsstelle Dortmund
Baufi24 Baufinanzierung GmbH · Dortmund, Germany
2 minutes agoBaufinanzierungsberater / Bankkaufmann (m/w/d) Geschäftsstelle Mönchengladbach
Baufi24 Baufinanzierung GmbH · Mönchengladbach, Germany
2 minutes agoBaufinanzierungsberater / Bankkaufmann (m/w/d) Geschäftsstelle Leipzig
Baufi24 Baufinanzierung GmbH · Leipzig, Germany
2 minutes agoBaufinanzierungsberater / Bankkaufmann (m/w/d) Geschäftsstelle Lingen (Ems)
Baufi24 Baufinanzierung GmbH · Lingen (Ems), Germany
2 minutes agoSenior Adviseur Integrale Beveiliging
Ministerie van Defensie · Nederland, Netherlands
2 minutes ago€5.9k - €7.6k/moPrincipal Cyber Engineer
ManTech International · Chantilly, United States
3 minutes ago