An application made for this job — a tailored resume and cover letter that speak straight to the posting.
NTT DATA Business Solutions in Cyberjaya is seeking a highly technical Splunk Enterprise Security (ES) Engineer to lead enterprise Splunk environments and SIEM capabilities. The role focuses on platform stability, data quality, and detection engineering within a SOC context.
The ideal candidate will manage production Splunk environments, implement data onboarding, CIM normalization, correlation searches, and Risk-Based Alerting, while collaborating with SOC analysts to improve threat detection
At NTT DATA Business Solutions, we drive innovation – from advisory and implementation to managed services and beyond, powered by a global team of over 18,500 experts representing over 90 nations in more than 30 countries. With SAP at our core and a powerful ecosystem of partners like Microsoft and ServiceNow, we continuously improve solutions and AI-driven technology to make them work for companies – and for their people.
We are part of NTT DATA, a $30+ billion business and technology services, AI and digital infrastructure leader. As a Global Top Employer, NTT DATA serves 75% of the Fortune Global 100 and, with experts in over 70 countries, co-innovates solutions that encourage experimentation and recognize great work.
With us, you have endless opportunities to think big, act bold and take ownership. Make this the place where you belong, learn, and build your network.
Make this the place where you grow.
We are seeking a highly technical Splunk Enterprise Security (ES) Engineer who possesses strong hands‑on expertise in both Splunk Enterprise and Splunk Enterprise Security (ES).
This role is ideal for candidates who have experience managing enterprise-scale Splunk environments and developing SIEM capabilities that support Security Operations Centre (SOC) teams. The successful candidate will act as the technical owner of the Splunk platform, driving platform stability, data quality, detection engineering, and continuous security monitoring improvements.
Candidates should possess hands‑on experience in:
Candidates should have proven hands‑on experience in developing and operating SIEM capabilities using Splunk Enterprise Security, including: