{bc}
linkedin

Senior Splunk SIEM Engineer -Managed Services Consultant

FNRCO
Jeddah, KSA
Full-time
Mid-Senior
Onsite
Discovered 1 weeks ago
Splunk Enterprise administrationSplunk Enterprise SecuritySplunk UBA administrationSIEM content developmentLog-source onboarding and troubleshootingCorrelation rules
Free

Job Fit Check

Base Career helps you apply smarter for this job.

?%
Ready to Scan

Key skills for this role

Splunk Enterprise administrationSplunk Enterprise SecuritySplunk UBA administration
Smart Apply

Full Job Posting

Role Responsibilities

  • Administer Splunk Enterprise deployments, users, licenses, upgrades, patches, configurations, reports, backups, and recovery.
  • Onboard new log sources and troubleshoot sources that are not sending logs to Splunk.
  • Develop Splunk Enterprise Security use cases and SIEM content, including correlation rules, reports, templates, and queries.
  • Manage SIEM support tickets and review configurations for improvement opportunities.
  • Develop dashboards, alerts, reports, custom correlation rules, and parsing rules for non-standard logs.
  • Support Kingdom regulatory audits by providing relevant evidence from the SIEM solution.
  • Configure threat feeds, IoCs, Sigma rules, and advisories from regulators and recognized organizations.
  • Administer Splunk UBA, including data ingestion, health monitoring, backups, and failovers.

Requirements

  • At least five years of relevant experience is required.
  • Experience administering Splunk Enterprise environments is required.
  • Experience developing security use cases and SIEM content with Splunk Enterprise Security is required.

Apply for this job in 1 click

Skip the repetitive application forms

Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.

Sarah M.James T.Maya R.

Trusted by over 500,000 job seekers on Base Career

Start Free Today

More from this employer

More jobs at FNRCO