Sr. Engineer - Splunk | Hybrid, Bangalore

Optiv

Bengaluru

Hybrid

INR 4,500,000 - 7,500,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Optiv Bangalore is seeking a seasoned Senior SIEM Engineer to join our team on-site for Bangalore office operations. The role supports a 24/7 environment with shift rotation between days, mids, and nights to ensure continuous security coverage.

You will lead Splunk Enterprise Security implementations, craft complex searches, and mentor junior engineers while interfacing with customers, partners, and delivery teams. This position emphasizes collaboration and technical excellence.

Qualifications

  • 5+ years' experience managing SIEM systems.
  • 2-3 years' experience with networks and network architecture.
  • 1+ year writing SIEM content for Splunk.
  • Expert-level knowledge of Splunk Enterprise Security.
  • Experience building complex searches from disparate data sources.
  • Proficient with Unix/Linux systems.
  • Experience with Splunk CORE and Splunk Enterprise Security.
  • Shift flexibility with on-call support.

Responsibilities

  • Lead Splunk-related projects and prioritize client work and service tasks.
  • Collaborate with Management and Engineers to define internal processes.
  • Analyze and identify improvements in existing procedures and documentation.
  • Mentor junior engineers and help grow the team.
  • Develop training methods for Managed Services and their clients.
  • Explain how to use SIEM products to technical and non-technical staff.
  • Provide remote consulting to implement multiple vendors and technologies.

Skills

Splunk
SIEM
Regex
Unix/Linux
Threat detection
Dashboards
On-call
Security logging

Tools

Splunk Core
Splunk Enterprise Security
Windows/Linux
Regex tooling

Job description

This position is required to be on-site at our Bangalore office 3 day's per week

This team provides 24/7 support. This role requires shift flexibility, including the ability to rotate between days, mid's, and nights

At Optiv, were on a mission to help our clients make their businesses more secure. Were one of the fastest growing companies in a truly essential industry.

In your role at Optiv, youll be inspired by a team of the brightest business and technical minds in cyber security. We are passionate champions for our clients and know from experience that the best solutions for our clients’ needs come from working hard together. As part of our team, your voice matters, and you will do important work that has impact, on people, businesses and nations. Our industry and our company move fast, and you can be sure that you will always have room to learn and grow. We’re proud of our team and the important work we do to build confidence for a more connected world.

Our consultants are skilled technical and consultative resources expected to be strong in both technical and soft skills. A Consultant must be a proven self-starter with the ability to problem-solve, communicate, participate in diverse project teams from a technical perspective, and interface effectively with customers, vendor partners, and colleagues. Establish & maintain productive and respectful relationships with the delivery team, practice management, and client management team. In line with Optiv’s commitment to quality, you will confirm that work is of the highest quality as per Optiv’s quality standards, by reviewing the work provided by other members.

How you’ll make an impact
  • Help lead the Splunk team by prioritizing clients work requests, projects, and service tasks.
  • Work closely with Management, Service Delivery and Principal Engineers in defining processes and procedures for internal projects.
  • Analyzes and identifies areas of improvement with existing processes, procedures, and documentation.
  • Assist in team development by defining strategies and responsibilities to be successful and grow.
  • Develop internal training methods to support Managed Services and their clients.
  • Act as a point of escalation for Junior SIEM Engineers, as well as provide them with guidance and mentorship.
  • Assist with client activation and onboarding.
  • Explain and demonstrate how to use SIEM products to both technical and relatively non-technical personnel.
  • Provide remote consulting services via interactive client sessions to assist with implementation of multiple product vendors and technologies.
  • Implement and configure SIEM software and appliance-based products in Enterprise and Government environments.
  • Develop, deploy, and tune SIEM content and reporting.
  • Interacting appropriately and professionally with both customers and partners, when required.
  • Perform knowledge transfers and train clients regarding security and system configuration
  • The Senior SIEM Engineer will have no direct reports.
What we’re looking for
  • 5+ years professional experience managing and maintaining SIEM systems.
  • 2-3 years professional experience working with networks and network architecture.
  • 1+ year professional experience writing SIEM content specifically for Splunk.
  • Ability to deal confidently with complex technical problems.
  • Expert-level knowledge of Splunk Enterprise Security
  • Experience with building intricate searches from disparate data sources and joining them together.
  • Extensive experience using the Enterprise Security Asset & Identity and Threat Intelligence Framework within Splunk Enterprise Security
  • Proficient with managing Unix and Linux operating systems
  • Strong Experience with writing complex regular expression (Regex) to extract fields for data that is structured and unstructured.
  • Experience with extracting fields, multi-value fields, tags, field aliases, etc.
  • Well-versed in building threat detections (correlation rules) using security logs to detect malicious activity with high fidelity.
  • In-depth knowledge of security logging for Linux, Windows, major EDRs, Firewalls, & Active Directory
  • Experience with installing and configuring Splunk CORE and Splunk Enterprise Security
  • The ability to aggregate and analyze logs from various deployed security devices.
  • Experience with configuring and/or working with Splunk Search Head and/or Indexer Clusters.
  • Experience with creating custom applications, dashboards, reports, and alerts (not including the default ones that come with Splunk).
  • Shift flexibility, including the ability to provide on call support when needed.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Splunk Engineer
Splunk Engineer

EMBARKGCC SERVICES PRIVATE LIMITED • Bengaluru Urban

On-site
INR 900,000 - 1,400,000
Splunk Engineer
Splunk Engineer

JUARA IT SOLUTIONS • Chennai District

On-site
INR 900,000 - 1,800,000
Splunk certification support
Splunk SIEM Engineer (India)
Splunk SIEM Engineer (India)

Barclays • India

On-site
INR 1,800,000 - 2,600,000
Splunk Developer/ Splunk Consultant
Splunk Developer/ Splunk Consultant

Cosmonaut Technologies • Pune District

On-site
INR 1,800,000 - 2,800,000
Splunk Engineer / Senior Splunk Engineer
Splunk Engineer / Senior Splunk Engineer

Giesecke & Devrient GB Ltd. • Pune District

On-site
INR 1,200,000 - 2,000,000
Senior SIEM Engineer
Senior SIEM Engineer

Tekskills • Chennai District

On-site
INR 2,000,000 - 4,000,000
Security Analyst L3– SIEM (Splunk Administrator)
Security Analyst L3– SIEM (Splunk Administrator)

HR Path • Bengaluru

On-site
INR 800,000 - 1,200,000
Cyber Operate - NG SIEM Google SecOps - Senior Consultant
Cyber Operate - NG SIEM Google SecOps - Senior Consultant

Deloitte Development LLC • Bengaluru

On-site
INR 2,800,000 - 4,200,000
Senior SOC Analyst – Security Operations Centre
Senior SOC Analyst – Security Operations Centre

Lonvec Technologies Private Limited • Bengaluru

Hybrid
INR 1,800,000 - 2,800,000
Health insurance
SIEM Engineer - Contract
SIEM Engineer - Contract

Gravity Infosolutions, Inc. • India

On-site
INR 1,200,000 - 1,800,000