We are seeking a skilled Splunk - Security Engineer to manage security monitoring using Splunk Enterprise Security and SOAR (XSOAR). The ideal candidate will handle log onboarding, create detection use cases, and configure XSOAR playbooks, with a solid foundation in Linux system administration.
Responsibilities
- Configure and optimize Splunk Enterprise Security for alerts, dashboards, and reports.
- Onboard new data sources and support log rotate and syslog configuration.
- Manage Splunk use case configuration and create detection logic.
- Write and maintain SOAR (XSOAR) playbooks to automate workflows.
- Support deployment and configuration of virtual appliances for security tools.
- Stand up and manage security servers and appliances.
Requirements
- 2-9 years of experience with Splunk Enterprise Security and detection engineering.
- Proficient in SPL, log onboarding, and SIEM management.
- Hands-on experience with XSOAR for playbook creation and management.
- Robust Linux admin skills including syslog, logrotate, and appliance configuration.
- Ability to detect and address missing data sources and tune detection logic.
Qualifications
Bachelor s degree in Information Technology, Computer Science, or related field.
Disclaimer: This job description has been sourced from a public domain and may have been modified by Naukri.com to improve clarity for our users. We encourage job seekers to verify all details directly with the employer via their official channels before applying.