SOC Splunk Consultant

KPMG Assurance and Consulting Services LLP

Mumbai

On-site

INR 900,000 - 1,500,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

KPMG Assurance and Consulting Services LLP in Mumbai seeks a dedicated SOC Analyst with 4 years of hands-on Splunk experience to monitor security events, investigate incidents, and drive rapid containment.

You will triage alerts, perform log analysis across endpoints, servers, and cloud, and refine Splunk searches, dashboards, and correlation rules while collaborating with IT, Network, and Security teams to strengthen defenses.

Qualifications

  • Hands-on experience with Splunk for log analysis, dashboards, and alerting.
  • Strong understanding of SOC operations and SIEM tools.
  • Knowledge of incident response processes and procedures.
  • Familiarity with network protocols (TCP/IP, DNS, HTTP/HTTPS) and security controls.
  • Basic cybersecurity frameworks and best practices.

Responsibilities

  • Monitor and analyze security alerts and events using Splunk SIEM.
  • Perform incident triage, investigation, and escalation in line with SOC procedures.
  • Respond to security incidents such as phishing, malware infections, unauthorized access, and suspicious activities.
  • Conduct log analysis across endpoints, servers, network devices, and cloud environments.
  • Develop and fine-tune Splunk searches, dashboards, alerts, and correlation rules.
  • Participate in threat hunting activities to proactively identify hidden threats.
  • Support the incident response lifecycle (Detection, Analysis, Containment, Eradication, Recovery).
  • Document incidents, findings, and remediation actions in detail.
  • Collaborate with IT, Network, Security Engineering for issue resolution.
  • Stay updated with latest cybersecurity threats, vulnerabilities, and attack techniques.

Skills

Splunk
SOC operations
Incident response
Log analysis
Python / PowerShell
MITRE ATT&CK
EDR/XDR
SOAR tools
Network protocols

Education

Bachelor’s degree in Cybersecurity, IT, CS
Minimum 4 years in SOC/ Security Operations

Tools

Splunk

Job description

Role Summary

We are seeking a dedicated SOC Analyst with 4 years of experience and hands-on expertise in Splunk for security monitoring and incident response. The role involves real-time analysis of security events, incident investigation, and proactive threat detection to safeguard the organizations IT environment.

Key Responsibilities

  • Monitor and analyze security alerts and events using Splunk SIEM.
  • Perform incident triage, investigation, and escalation in line with SOC procedures.
  • Respond to security incidents such as phishing attacks, malware infections, unauthorized access, and suspicious activities.
  • Conduct log analysis across multiple systems including endpoints, servers, network devices, and cloud environments.
  • Develop and fine-tune Splunk searches, dashboards, alerts, and correlation rules.
  • Participate in threat hunting activities to proactively identify hidden threats.
  • Support the incident response lifecycle (Detection, Analysis, Containment, Eradication, Recovery).
  • Document incidents, findings, and remediation actions in detail.
  • Collaborate with internal teams (IT, Network, Security Engineering) for issue resolution.
  • Stay updated with the latest cybersecurity threats, vulnerabilities, and attack techniques.

Required Skills

  • Hands-on experience with Splunk (log analysis, dashboards, alerting, SPL queries).
  • Strong understanding of SOC operations and SIEM tools.
  • Knowledge of incident response processes and procedures.
  • Familiarity with:
    • Network protocols (TCP/IP, DNS, HTTP/HTTPS)
    • Firewalls, IDS/IPS, endpoint security tools
  • Basic understanding of cybersecurity frameworks and best practices.
  • Ability to analyze large volumes of logs and identify anomalies.
  • Strong analytical and problem-solving skills.

Preferred Skills

  • Experience with threat hunting techniques.
  • Knowledge of MITRE ATT&CK framework.
  • Exposure to EDR/XDR tools (e.g., Microsoft Defender, CrowdStrike).
  • Basic scripting knowledge (Python / PowerShell) is a plus.
  • Familiarity with SOAR tools and automation.

Qualifications

  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or related field.
  • Minimum 4 years of experience in SOC / Security Operations.

Certifications (Preferred)

  • CompTIA Security+
  • Splunk Certifications (Core Certified User / Power User)
  • Any other cybersecurity certification is an advantage

Key Competencies

  • Strong attention to detail and analytical mindset
  • Ability to work in a 24/7 shift environment (is required)
  • Good communication and documentation skillsAbility to handle high-pressure situations and prioritize tasks
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Operation Manager - SIEM ( Splunk) - Theat Hunting / CTI
Security Operation Manager - SIEM ( Splunk) - Theat Hunting / CTI

KPMG Assurance and Consulting Services LLP • Mumbai

On-site
INR 3,500,000 - 6,000,000
SOC Manager-Security Operations Centre
SOC Manager-Security Operations Centre

Lonvec Technologies Private Limited • Bengaluru

Hybrid
INR 1,100,000 - 1,900,000
Senior Security Operations Center (SOC) Analyst
Senior Security Operations Center (SOC) Analyst

Intuitive Apps • Mumbai

On-site
INR 1,500,000 - 2,300,000
Sr. Security Operations Analyst
Sr. Security Operations Analyst

Simfluent • Dadri

On-site
INR 1,200,000 - 1,800,000
Junior Engineer
Junior Engineer

Lyric Exponentials India Private Limited • Hyderabad

Hybrid
INR 1,000,000 - 1,500,000
Soc Analyst
Soc Analyst

Incedo • Gurugram District

On-site
INR 1,800,000 - 2,400,000
24x7 Rotational Shift
Willingness to work on weekends/holid-
Senior Security Engineer
Senior Security Engineer

UST • Bengaluru

On-site
INR 1,800,000 - 2,400,000
L2 SOC Analyst
L2 SOC Analyst

UST • Bengaluru

On-site
INR 1,400,000 - 2,200,000
Soc Engineer
Soc Engineer

Parkar Global Technologies • Ahmedabad District

On-site
INR 1,200,000 - 1,900,000
SIEM Engineer - Contract
SIEM Engineer - Contract

Gravity Infosolutions, Inc. • India

On-site
INR 1,200,000 - 1,800,000