Enable job alerts via email!

Splunk Detection Specialist | Spécialiste en détection Splunk

Hitachi Cyber

Canada

Remote

CAD 70,000 - 90,000

Full time

Today
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

Join a leading cybersecurity firm as an Information Security Specialist focusing on Splunk. You'll monitor threats, manage incidents, and enhance the security posture of the organization. This role offers professional growth and a supportive environment with flexible work arrangements.

Benefits

Flexible work arrangements
Remote work options
Training programs
Mentorship opportunities

Qualifications

  • 3+ years of experience in information security, with at least 1 year of hands-on experience using Splunk.
  • Familiarity with network protocols and security tools.

Responsibilities

  • Utilize Splunk to monitor and respond to security alerts.
  • Develop and maintain detection rules and dashboards within Splunk.
  • Document and manage security incidents from detection to resolution.

Skills

Incident Detection
Threat Analysis
Automation
Splunk
Cybersecurity Concepts

Education

Diploma in Information Security
Computer Science

Tools

Splunk Enterprise Security
Splunk Core
Splunk SOAR
Python
PowerShell

Job description

Join the dynamic and innovative team at Hitachi Systems Security as a Information Security Specialist - Splunk and take your cybersecurity career to new heights.

What can be your next challenge?

Reporting to the Team Lead ISS, the information Security Specialist – Splunk will play a vital role in ensuring the organization's IT infrastructure and data remain secure by leveraging Splunk for security monitoring, threat detection, and incident response. This individual will be responsible for managing and optimizing Splunk Enterprise Security (ES) and other related security technologies to safeguard our assets. The role includes proactive threat hunting, analysis, and responding to cybersecurity incidents.

Here’s an overview of your main responsibilities:

  • Monitoring & Incident Response: Utilize Splunk to monitor, investigate, and respond to security alerts, ensuring rapid identification and mitigation of threats.
  • Threat Detection: Develop and maintain detection rules, use cases, and dashboards within Splunk for effective identification of security incidents and vulnerabilities.
  • Log Management & Analysis: Collect, aggregate, and analyze logs from various sources using Splunk to identify potential risks and suspicious behavior.
  • Configuration & Optimization: Configure and tune Splunk for optimal performance and accurate threat detection. Regularly update filters and correlation rules to minimize false positives.
  • Threat Intelligence: Integrate threat intelligence feeds into Splunk to enhance detection capabilities and stay ahead of emerging threats.
  • Incident Management: Document, track, and manage security incidents from detection to resolution, providing detailed root cause analysis and recommending preventive measures.
  • Automation: Implement automation of incident response and investigation tasks using Splunk's automation and orchestration capabilities.
  • Reporting & Documentation: Generate detailed reports on security incidents, including impact assessment and remediation actions. Maintain up-to-date documentation of procedures and best practices.
  • Security Awareness: Work with other teams to improve overall security posture by providing insights and guidance on threat mitigation.
  • Compliance: Ensure adherence to security standards, policies, and regulatory requirements (e.g., GDPR, HIPAA, NIST).

We would like to meet you if you have:

  • Diploma in Information Security, Computer Science, or a related field (or equivalent experience).
  • 3+ years of experience in information security, with at least 1 year of hands-on experience using Splunk.
  • Experience with incident detection, threat analysis, and response using SIEM platforms.
  • Familiarity with network protocols, security tools, and cybersecurity concepts.
  • Expertise in Splunk Enterprise Security (ES), Splunk Core, and Splunk SOAR (Security Orchestration, Automation, and Response).
  • Strong knowledge of creating Splunk dashboards, alerts, and correlation rules.
  • Proficiency with SPL (Search Processing Language) for data analysis and queries.
  • Experience with scripting (e.g., Python, PowerShell) for automation.
  • Familiarity with other security tools and platforms, such as firewalls, IDS/IPS, and endpoint protection.
  • Relevant certifications like Splunk Core Certified User, Splunk Certified Power User, CompTIA Security+, CISSP, or equivalent.

Collaborate with a diverse and talented team in a supportive and inclusive environment that fosters continuous learning and growth. With our commitment to ongoing professional development, you'll have access to training programs, certifications, and mentorship opportunities to enhance your skills and advance your career.

At Hitachi Systems Security, we believe in work-life balance and offer flexible work arrangements and remote work to support your personal and professional commitments. Experience the excitement of being part of a company that values innovation, teamwork, and making a real impact in the world of cybersecurity.

Come join us and be a vital force in securing the digital future. Apply today and embark on a rewarding journey with Hitachi Systems Security.

******************************************************************************************************

  • Expertise dans Splunk Enterprise Security (ES), Splunk Core, et Splunk SOAR (Security Orchestration, Automation, and Response).
Seniority level
  • Seniority level
    Mid-Senior level
Employment type
  • Employment type
    Full-time
Job function
  • Job function
    Analyst, Information Technology, and Strategy/Planning
  • Industries
    IT Services and IT Consulting and Computer and Network Security

Referrals increase your chances of interviewing at Hitachi Cyber by 2x

Get notified about new Security Professional jobs in Canada.

Senior Manager, Infrastructure & Security
Offensive Security Manager, Offensive Security

Canada CA$95,000.00-CA$169,900.00 2 weeks ago

Canada CA$70,000.00-CA$90,000.00 1 week ago

Security Engineer - Identity and Access Management (Remote - Canada)

Greater Montreal Metropolitan Area 2 days ago

Lead Security Consultant - Offensive Security

Greater Montreal Metropolitan Area 4 days ago

Assessor qualified security assessor (QSA)
Security Engineer - Identity and Access Management (Remote - Canada)

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.