Back to jobs
FS
Hiring companyFishNet Security

Verified today

Senior SIEM Engineer - Splunk

Bangalore, Karnataka Full-time Hybrid

About the role

Optiv's cybersecurity consulting team seeks a Senior SIEM Engineer to lead Splunk operations and support clients in making their businesses more secure. Day-to-day work includes prioritizing client requests, configuring and tuning SIEM software in enterprise and government environments, developing threat detections and dashboards, mentoring junior engineers, and providing remote consulting and training. The role is based in Bangalore, Karnataka and follows a hybrid model requiring three days per week on-site, with 24/7 shift flexibility including rotation between days, mids, and nights.

What you’ll do

  • Help lead the Splunk team by prioritizing clients' work requests, projects, and service tasks
  • Work closely with Management, Service Delivery, and Principal Engineers to define processes and procedures for internal projects
  • Analyze and identify areas of improvement with existing processes, procedures, and documentation
  • Assist in team development by defining strategies and responsibilities for success and growth
  • Develop internal training methods to support Managed Services and their clients
  • Act as a point of escalation for Junior SIEM Engineers and provide guidance and mentorship
  • Implement and configure SIEM software and appliance-based products in Enterprise and Government environments
  • Develop, deploy, and tune SIEM content and reporting, including custom applications, dashboards, reports, and alerts

What you’ll bring

  • 5+ years professional experience managing and maintaining SIEM systems
  • 2-3 years professional experience working with networks and network architecture
  • 1+ year professional experience writing SIEM content specifically for Splunk
  • Expert-level knowledge of Splunk Enterprise Security
  • Proficient with managing Unix and Linux operating systems
  • Strong experience writing complex regular expressions (Regex) to extract fields from structured and unstructured data
  • In-depth knowledge of security logging for Linux, Windows, major EDRs, Firewalls, and Active Directory
  • Experience installing and configuring Splunk CORE and Splunk Enterprise Security

Skills

Splunk Enterprise SecuritySIEMSplunk CORESplunk Search HeadIndexer ClustersUnixLinuxRegular Expression (Regex)

Benefits

  • Work/life balance
  • Professional training resources
  • Volunteer opportunities through Optiv Chips In
  • Technology necessary to productively work remotely/from home where applicable