Senior Splunk SIEM Engineer -Managed Services Consultant

🏢 fnrco
📍 Saudi ArabiaFull-timeOn-site
📅 Posted: Today🔄 Updated: Today
CV%
✨ AI Summary
The Senior Splunk SIEM Engineer - Managed Services Consultant is responsible for the administration and management of Splunk Enterprise and Splunk UBA environments within a managed services context. Key responsibilities include deploying solutions, managing users and licenses, performing upgrades and patches, adding/deleting log sources, and ensuring backup and recovery operations. The role involves developing security use cases, constructing SIEM content like correlation rules and reports, and troubleshooting issues with log sources. A significant part of the job is continuous review and development of use cases, dashboards, alerts, and reports, as well as creating custom correlation rules and parsing rules for non-standard logs. The engineer will also configure threat feeds and support regulatory audits by providing evidence from the SIEM solution.
Required Skills
Other
CIM-compliant dataSplunk Enterprisethreat feedsSplunk UBAcustom correlation rulesparsing rulescorrelation rules
Engineering, Construction & Trades
Troubleshooting
Information Technology
OT SecurityMonitoring
Business, Sales & Management
HR Management
Requirements
Requires 5+ years of experience in Splunk Enterprise administration, including deployment, user management, upgrades, log source management, configuration, and backup/recovery. Experience in onboarding new log sources, developing security use cases with Splunk Enterprise Security, and constructing SIEM content (correlation rules, reports, queries) is essential. Experience with Splunk UBA administration, including CIM-compliant data ingestion and health management, is also required. The role involves troubleshooting log sources, reviewing configurations for enhancements, developing use cases, dashboards, alerts, and custom correlation rules. Additionally, supporting regulatory audits and configuring threat feeds/Sigma rules are key responsibilities.
Description
Job Description:5yrs + exp is required. Administration of Splunk Enterprise environment (eg: deployment of solution, user management, managing the licenses, upgrades and patch deployment, addition or deletion of log sources, configuration, management, change management, report management, manage backup and recovery etc.)Onboarding new log sources.Security Use case development using Splunk Enterprise Security, Construction of SIEM content required to produce Content Outputs (e.g., correlation rules, reports, report templates, queries)Manage support tickets with SIEM support, as necessary.Track log sources and perform troubleshooting if the log source is not sending logs to Splunk.Periodically review existing Splunk Configurations and propose any new enhancements as applicable.Continuously review and develop use-cases, dashboards, alerts and reports.Create and add custom correlation rules for devices based on business requirements.Support the audits conducted by the regulators in the Kingdom and provide the relevant evidence from SIEM solution.Develop parsing rules for non-standard logsConfigure threat feeds/IoC's/Sigma rules/advisories provided by the regulators, if any, as well as global recognized organizations.Administration for Splunk UBA environment.Ingesting CIM-compliant data, raw events, and HR data from the Splunk Platform into Splunk UBA.Managing UBA health using the Splunk UBA Monitoring App and performing backups/failovers
✨ Premium Match Details
Deep-dive CV analysis, customized Cover Letters, and Interview prep!
📊 Match Analysis
Insights against your active CV
📊
Personalized Match Analysis
Upload your CV to see exact matching percentages, detailed skills mapping, and gap analysis for this role.
🎯 Overalli74%
⚡ Skillsi85%
View Breakdown
Ontology Match: 85.0
Matched:✓ Requirements Matching✓ Ontology Skills Mapping
📜 Eligibilityi49%
View Breakdown
Local: 19600%
🏗️ Career Fiti91%
View Breakdown
Seniority: 91.0
📋 Requirementsi67%
View Breakdown
Domain: 67.0
🔥 Motivationi78%
View Breakdown
Title Fit: 78.00