
Siem Splunk Engineer
6 days ago
Perform SIEM health check
- Monitor SIEM Server Storage, CPU and Memory Usage and perform necessary action.
- Perform SIEM version upgrade
- Update splunk configurations based on security advisory
- SIEM Infra Tuning and Performance Optimization
**1. Splunk Platform Management**:
- Deploy, configure, and maintain **Splunk Enterprise / Splunk Cloud**.
- Manage **indexers, forwarders, search heads**, and other components.
- Ensure **high availability**, performance tuning, and scalability of the Splunk infrastructure.
**2. Data Ingestion & Parsing**:
- Onboard and normalize **log data**from various sources (firewalls, servers, endpoints, cloud, etc.).
- Create and maintain **data inputs, field extractions**, and **source types**.
- Implement **Common Information Model (CIM)**for standardized field mapping.
**3. Security Monitoring & Use Case Development**:
- Design and develop **security use cases**and **correlation rules**.
- Create **real-time alerts**, **dashboards**, and **reports**to detect suspicious activity.
- Continuously **fine-tune and optimize**detections to reduce false positives.
**4. Threat Detection & Incident Response**:
- Work with SOC teams to support **incident detection, investigation, and response**.
- Assist in **triaging alerts**and performing **root cause analysis**using Splunk queries.
- Enable **threat hunting**by developing custom SPL (Search Processing Language) queries.
**5. Dashboarding & Reporting**:
- Develop custom **visualizations**, **dashboards**, and **executive reports**for stakeholders.
- Provide insights into **security posture**, **compliance**, and **incident trends**.
**6. Integration with Security Tools**:
- Integrate Splunk with other security tools and technologies (e.g., **Firewalls, EDR, IAM, Threat Intel Platforms, SOAR**).
- Support automated workflows with **Splunk SOAR (formerly Phantom)**for faster response.
-
Splunk Engineer
2 weeks ago
Singapore PERSOLKELLY SINGAPORE PTE. LTD. Full timeRoles & ResponsibilitiesOur client is a highly reputed MNC.Responsibilities:SIEM Infrastructure administration· Perform SIEM health check· Monitor SIEM Server Storage, CPU and Memory Usage and perform necessary action.· Perform SIEM version upgrade· Update splunk configurations based on security advisory· SIEM Infra Tuning and Performance Optimizationo...
-
Splunk Admin
1 week ago
Singapore PersolApac Full time**SIEM Infrastructure administration** - Perform SIEM health check - Monitor SIEM Server Storage, CPU and Memory Usage and perform necessary action. - Perform SIEM version upgrade - Update splunk configurations based on security advisory - SIEM Infra Tuning and Performance Optimization - Monitor SIEM data sources proactively to identify issues in the...
-
Splunk Engineer
4 days ago
Singapore INFINITY CYBERSEC PTE. LTD. Full time**Responsibilities**: - Manage multiple assignments, changing priorities, and work independently with little oversight - Build, implement, and administer Splunk in Windows and Linux environments - Provide overall engineering and design support for a distributed Splunk environment consisting of heavy forwarders, indexers, and search head servers, spanning...
-
Splunk Engineer
3 days ago
Singapore ITCAN Pte Ltd Full timeProficient in deploying, configuring, and managing Splunk Enterprise and Splunk Cloud. Expertise in SIEM Solutions, log analysis, incident detection, and response. - Configuring Multiple data sources using Heavy Forwarders, Universal Forwarders, HTTP event Collector, Splunk DB Connect, Splunk with ServiceNow, AWS, Cisco devices, etc. Windows and Linux boxes...
-
Technical Architect
2 weeks ago
Singapore VUI SYSTEMS PTE. LTD. Full time**Key Responsibilities**: - Design and architect Splunk-based SIEM solutions to meet organizational security requirements. - Lead the deployment and configuration of Splunk Enterprise and Splunk Enterprise Security (ES). - Develop and maintain Splunk architecture documentation including data flow diagrams, integration points, and system dependencies. -...
-
SIEM Engineer
7 days ago
Singapore Ensign InfoSecurity Full timeDirect message the job poster from Ensign InfoSecurity Join Us - Ensign InfoSecurity | Conquer the Unknown | IHRP-CP Key Responsibilities Carry out maintenance, support and operation of the project's security solution platforms. Maintain understanding of the architecture and work with security team to understand the use case and playbooks to be created....
-
Splunk engineer
7 days ago
Singapore ITCAN PTE. LIMITED Full timeRoles & ResponsibilitiesScope of RE for the project.Implement and enable applications for Splunk APM (Application Performance Monitoring), RUM (Real User Monitoring), and Synthetic monitoring. Onboard new applications and services to the Splunk monitoring platforms, APM, RUM, and Synthetic. Maintain Splunk Observability tools...
-
SIEM Security Specialist
1 week ago
Singapore beBeeSiem Full timeJob Title: Siem Security SpecialistWe are seeking a skilled SIEM security specialist to join our team. The ideal candidate will have experience in SIEM infrastructure administration, data onboarding, use case development, and troubleshooting.ResponsibilitiesPerform regular SIEM health checks to ensure optimal performanceMonitor SIEM server storage, CPU, and...
-
Data Analyst
7 days ago
Singapore SAGL CONSULTING PTE. LTD. Full time**Job Summary**: **Key Responsibilities**: - Analyze and interpret security event data from SIEM platforms (e.g., Splunk, QRadar, ArcSight, etc.) - Develop and maintain parsers, regex rules, and data normalization scripts - Understand and work with SIEM data models to improve log ingestion and correlation logic - Write Python or shell scripts to automate...
-
Apac Gss Security Solutions Engineer
7 days ago
Singapore Splunk Full timeJoin our innovative mission at Splunk to make machine data accessible, usable, and valuable to everyone. We're not just a company, we're a community of passionate individuals dedicated to our product, delivering unparalleled experiences for our customers. At Splunk, commitment to our work, customers, fun, and, most importantly, to each other's success is...