L

Splunk Security Infrastructure Engineer

Linnk Group

Doha, Doha Municipality, Qatar · Full Time

Be the first to apply

Experience
3–5 yrs
Salary
Openings
1
Posted
18 jam yang lalu
Work mode
In office
Education
Bachelor's degree
Resume
Required to apply

Where you'll work

Sign in to tell us what does and doesn't work for you here — it sharpens every match we show you.

Job description

Job Overview

We are seeking a skilled Splunk Security Infrastructure Engineer to oversee and support Splunk platforms within the Security Operations team based in Doha, Qatar. This role involves hands-on administration of Splunk Enterprise and Splunk Cloud environments, ensuring optimal functionality, data reliability, and availability of the Security Information and Event Management (SIEM) system.

Primary Responsibilities

  • Daily administration and engineering tasks of the Splunk platform.
  • Integration and onboarding of new data sources into Splunk.
  • Management of Search Head and Indexer clusters.
  • Execution of Splunk upgrades, configuration modifications, troubleshooting issues, and performance enhancement.
  • Implementing parsing, regular expressions, field extractions, data modeling, and data normalization techniques.
  • Ensuring that data adheres to Common Information Model (CIM) compliance standards.
  • Providing support for Splunk Enterprise Security and related security monitoring activities.

Candidate Requirements

  • Between three to five years of practical experience in Splunk administration, Security Information and Event Management (SIEM) engineering, or Security Operations.
  • Proven expertise in Splunk clustering, data onboarding, upgrades, and troubleshooting procedures.
  • Possession of at least one official Splunk Administration certification is compulsory.
  • Strong communication skills coupled with efficient problem-solving capabilities.

Education and Certifications

  • Bachelor's degree in Computer Science, Computer Engineering, Information Technology, Cybersecurity or an equivalent field.
  • Mandatory certifications: Splunk Core Certified Power User, Splunk Enterprise Certified Administrator.
  • Preferred certifications: Splunk Enterprise Security Certified Administrator, Splunk SOAR Certified Automation Developer.
  • Additional desirable security certifications include: CompTIA Security+, CySA+, Certified Ethical Hacker (CEH), CISSP, or GIAC Certified Incident Handler (GCI).

Minimum education

Bachelor's Degree

Industry

Cybersecurity

Tools & software

Splunk Enterprise required

How they work

Communication Problem Solving

Leave it if you'd like a reply — we won't use it for anything else.

Click to browse, drag & drop, or paste a screenshot

PNG, JPG, GIF, MP4, WebM, MOV · Max 20MB each · Up to 5 files

🤖
Online · instant AI help
Broxer