Siem Splunk Engineer

6 days ago


Singapore JANUARY CONSULTANCY SERVICES PTE. LTD. Full time

Perform SIEM health check
- Monitor SIEM Server Storage, CPU and Memory Usage and perform necessary action.
- Perform SIEM version upgrade
- Update splunk configurations based on security advisory
- SIEM Infra Tuning and Performance Optimization

**1. Splunk Platform Management**:

- Deploy, configure, and maintain **Splunk Enterprise / Splunk Cloud**.
- Manage **indexers, forwarders, search heads**, and other components.
- Ensure **high availability**, performance tuning, and scalability of the Splunk infrastructure.

**2. Data Ingestion & Parsing**:

- Onboard and normalize **log data**from various sources (firewalls, servers, endpoints, cloud, etc.).
- Create and maintain **data inputs, field extractions**, and **source types**.
- Implement **Common Information Model (CIM)**for standardized field mapping.

**3. Security Monitoring & Use Case Development**:

- Design and develop **security use cases**and **correlation rules**.
- Create **real-time alerts**, **dashboards**, and **reports**to detect suspicious activity.
- Continuously **fine-tune and optimize**detections to reduce false positives.

**4. Threat Detection & Incident Response**:

- Work with SOC teams to support **incident detection, investigation, and response**.
- Assist in **triaging alerts**and performing **root cause analysis**using Splunk queries.
- Enable **threat hunting**by developing custom SPL (Search Processing Language) queries.

**5. Dashboarding & Reporting**:

- Develop custom **visualizations**, **dashboards**, and **executive reports**for stakeholders.
- Provide insights into **security posture**, **compliance**, and **incident trends**.

**6. Integration with Security Tools**:

- Integrate Splunk with other security tools and technologies (e.g., **Firewalls, EDR, IAM, Threat Intel Platforms, SOAR**).
- Support automated workflows with **Splunk SOAR (formerly Phantom)**for faster response.


  • Splunk Engineer

    2 weeks ago


    Singapore PERSOLKELLY SINGAPORE PTE. LTD. Full time

    Roles & ResponsibilitiesOur client is a highly reputed MNC.Responsibilities:SIEM Infrastructure administration· Perform SIEM health check· Monitor SIEM Server Storage, CPU and Memory Usage and perform necessary action.· Perform SIEM version upgrade· Update splunk configurations based on security advisory· SIEM Infra Tuning and Performance Optimizationo...

  • Splunk Admin

    1 week ago


    Singapore PersolApac Full time

    **SIEM Infrastructure administration** - Perform SIEM health check - Monitor SIEM Server Storage, CPU and Memory Usage and perform necessary action. - Perform SIEM version upgrade - Update splunk configurations based on security advisory - SIEM Infra Tuning and Performance Optimization - Monitor SIEM data sources proactively to identify issues in the...

  • Splunk Engineer

    4 days ago


    Singapore INFINITY CYBERSEC PTE. LTD. Full time

    **Responsibilities**: - Manage multiple assignments, changing priorities, and work independently with little oversight - Build, implement, and administer Splunk in Windows and Linux environments - Provide overall engineering and design support for a distributed Splunk environment consisting of heavy forwarders, indexers, and search head servers, spanning...

  • Splunk Engineer

    3 days ago


    Singapore ITCAN Pte Ltd Full time

    Proficient in deploying, configuring, and managing Splunk Enterprise and Splunk Cloud. Expertise in SIEM Solutions, log analysis, incident detection, and response. - Configuring Multiple data sources using Heavy Forwarders, Universal Forwarders, HTTP event Collector, Splunk DB Connect, Splunk with ServiceNow, AWS, Cisco devices, etc. Windows and Linux boxes...

  • Technical Architect

    2 weeks ago


    Singapore VUI SYSTEMS PTE. LTD. Full time

    **Key Responsibilities**: - Design and architect Splunk-based SIEM solutions to meet organizational security requirements. - Lead the deployment and configuration of Splunk Enterprise and Splunk Enterprise Security (ES). - Develop and maintain Splunk architecture documentation including data flow diagrams, integration points, and system dependencies. -...

  • SIEM Engineer

    7 days ago


    Singapore Ensign InfoSecurity Full time

    Direct message the job poster from Ensign InfoSecurity Join Us - Ensign InfoSecurity | Conquer the Unknown | IHRP-CP Key Responsibilities Carry out maintenance, support and operation of the project's security solution platforms. Maintain understanding of the architecture and work with security team to understand the use case and playbooks to be created....

  • Splunk engineer

    7 days ago


    Singapore ITCAN PTE. LIMITED Full time

    Roles & ResponsibilitiesScope of RE for the project.Implement and enable applications for Splunk APM (Application Performance Monitoring), RUM (Real User Monitoring), and Synthetic monitoring. Onboard new applications and services to the Splunk monitoring platforms, APM, RUM, and Synthetic. Maintain Splunk Observability tools...


  • Singapore beBeeSiem Full time

    Job Title: Siem Security SpecialistWe are seeking a skilled SIEM security specialist to join our team. The ideal candidate will have experience in SIEM infrastructure administration, data onboarding, use case development, and troubleshooting.ResponsibilitiesPerform regular SIEM health checks to ensure optimal performanceMonitor SIEM server storage, CPU, and...

  • Data Analyst

    7 days ago


    Singapore SAGL CONSULTING PTE. LTD. Full time

    **Job Summary**: **Key Responsibilities**: - Analyze and interpret security event data from SIEM platforms (e.g., Splunk, QRadar, ArcSight, etc.) - Develop and maintain parsers, regex rules, and data normalization scripts - Understand and work with SIEM data models to improve log ingestion and correlation logic - Write Python or shell scripts to automate...


  • Singapore Splunk Full time

    Join our innovative mission at Splunk to make machine data accessible, usable, and valuable to everyone. We're not just a company, we're a community of passionate individuals dedicated to our product, delivering unparalleled experiences for our customers. At Splunk, commitment to our work, customers, fun, and, most importantly, to each other's success is...