L
Splunk Security Infrastructure Engineer
Doha, Doha Municipality, Qatar · Full Time
Be the first to apply
- Experience
- 3–5 yrs
- Salary
- —
- Openings
- 1
- Posted
- 18 hours ago
- Work mode
- In office
- Education
- Bachelor's degree
- Resume
- Required to apply
Where you'll work
Sign in to tell us what does and doesn't work for you here — it sharpens every match we show you.
Job description
Job Overview
We are seeking a skilled Splunk Security Infrastructure Engineer to oversee and support Splunk platforms within the Security Operations team based in Doha, Qatar. This role involves hands-on administration of Splunk Enterprise and Splunk Cloud environments, ensuring optimal functionality, data reliability, and availability of the Security Information and Event Management (SIEM) system.
Primary Responsibilities
- Daily administration and engineering tasks of the Splunk platform.
- Integration and onboarding of new data sources into Splunk.
- Management of Search Head and Indexer clusters.
- Execution of Splunk upgrades, configuration modifications, troubleshooting issues, and performance enhancement.
- Implementing parsing, regular expressions, field extractions, data modeling, and data normalization techniques.
- Ensuring that data adheres to Common Information Model (CIM) compliance standards.
- Providing support for Splunk Enterprise Security and related security monitoring activities.
Candidate Requirements
- Between three to five years of practical experience in Splunk administration, Security Information and Event Management (SIEM) engineering, or Security Operations.
- Proven expertise in Splunk clustering, data onboarding, upgrades, and troubleshooting procedures.
- Possession of at least one official Splunk Administration certification is compulsory.
- Strong communication skills coupled with efficient problem-solving capabilities.
Education and Certifications
- Bachelor's degree in Computer Science, Computer Engineering, Information Technology, Cybersecurity or an equivalent field.
- Mandatory certifications: Splunk Core Certified Power User, Splunk Enterprise Certified Administrator.
- Preferred certifications: Splunk Enterprise Security Certified Administrator, Splunk SOAR Certified Automation Developer.
- Additional desirable security certifications include: CompTIA Security+, CySA+, Certified Ethical Hacker (CEH), CISSP, or GIAC Certified Incident Handler (GCI).
Minimum education
Bachelor's Degree
Industry
CybersecurityTools & software
Splunk Enterprise
required
How they work
Communication
Problem Solving