Job DescriptionRole : Splunk ES
nExperience : 7 to 10 years
nLocation : chennai, Hyderabad, Bangalore, Mumbai, Indore
nResponsibilities:
n
n
Manage and administer Splunk Enterprise Security (ES), including Data Models, Correlation Searches, Notable Events, Threat Intelligence Framework, Asset & Identity, and Content Management.n
Design, develop, and tune security detection use cases aligned with the MITRE ATT&CK; framework using SPL and Splunk ES correlation searches.n
Implement and optimize Risk-Based Alerting (RBA), including risk rules, risk modifiers, and detection tuning to reduce false positives and improve alert fidelity.n
Onboard and normalize security data sources using CIM, troubleshoot data ingestion/parsing issues, and ensure data quality for security analytics.n
Collaborate with SOC & security teams to enhance detection coverage, validate use cases, and support incident investigations and continuous improvement of the Splunk security platform.n
📌 Splunk Karnataka (India)
🏢 Tata Consultancy Services
📍 India
Reply to this offer
Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.