6 to 8 Years Relevant Experience
- Proven experience as a Splunk Developer with a focus on Splunk Enterprise Security.
- In-depth knowledge of Splunk architecture, data models, and search processing language (SPL).
- Experience with developing and maintaining Splunk apps, add-ons, and integrations.
Good-to-Have
- Strong understanding of cybersecurity concepts and best practices.
- Splunk certifications, including Splunk Certified Developer, are highly desirable.
- Ability to work collaboratively in a team environment and communicate effectively with technical and non-technical stakeholders.
- Familiarity with scripting languages such as Python or PowerShell for automation.
Responsibility of / Expectations from the Role
- 1Design and implement custom Splunk applications, dashboards, and searches to meet specific security and operational requirements.
- Collaborate with security and IT teams to understand data sources, parsing requirements, and integration points for effective Splunk deployment.
- Develop and maintain Splunk queries, reports, and alerts to identify and respond to security incidents in a timely manner.
- Work on data normalization, parsing, and transformation to ensure accurate and meaningful data representation within Splunk.
- Collaborate with system architects and administrators to optimize Splunk performance and ensure scalability.
- Stay informed about the latest security threats and vulnerabilities to continuously enhance and update Splunk solutions.
- Provide expertise and support in troubleshooting and resolving issues related to Splunk configurations and deployments.
- Create and maintain documentation for Splunk configurations, customizations, and best practices.