{bc}
linkedin

Splunk Security Infrastructure Engineer

Linnk Group
Doha, QAT
Full-time
Entry
Onsite
Discovered 2 weeks ago
Splunk EnterpriseSplunk CloudSplunk administrationSIEM engineeringSearch Head and Indexer ClustersData source onboarding
Free

Job Fit Check

Base Career helps you apply smarter for this job.

?%
Ready to Scan

Key skills for this role

Splunk EnterpriseSplunk CloudSplunk administration
Smart Apply

Full Job Posting

Role Overview

The Splunk Security Infrastructure Engineer, also described as a Splunk Administrator, manages and supports Splunk environments within the Security Operations team.

The role is the primary technical ownership function for the Splunk platform and focuses on availability, data integrity, and SIEM performance.

Location

  • The stated location is Doha, Qatar.

Contract

  • The contract is for 12 months and is yearly renewable.

Key Responsibilities

  • Perform day-to-day Splunk administration and engineering across Splunk Enterprise and Splunk Cloud.
  • Onboard data sources and manage Search Head and Indexer Clusters.
  • Perform upgrades, configuration, troubleshooting, and optimization.
  • Handle parsing, regular expressions, field extractions, data models, and normalization.
  • Ensure data is CIM-compliant and support Splunk Enterprise Security and security monitoring.
  • Maintain high availability, data integrity, and peak performance of the SIEM ecosystem.

Requirements

  • 3–5 years of hands-on experience in Splunk administration, SIEM engineering, or Security Operations.
  • Strong hands-on experience with Splunk clustering, onboarding, upgrades, and troubleshooting.
  • At least one Splunk Administration certification is mandatory.
  • Good communication and problem-solving skills.

Academic and Professional Qualifications

  • Bachelor's degree in Computer Science, Computer Engineering, Information Technology, Cybersecurity, or an equivalent qualification.
  • Splunk Core Certified Power User certification is required.
  • Splunk Enterprise Certified Admin certification is required.
  • Splunk Enterprise Security Certified Admin and Splunk SOAR Certified Automation Developer certifications are preferred.
  • CompTIA Security+, CySA+, CEH, CISSP, or GCI certifications are preferred.

Apply for this job in 1 click

Skip the repetitive application forms

Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.

Sarah M.James T.Maya R.

Trusted by over 500,000 job seekers on Base Career

Start Free Today

More from this employer

More jobs at Linnk Group