Splunk ES Engineer – SIEM & SOC Detection Expert

NTT DATA Business Solutions

Malaysia

Hybrid

MYR 120,000 - 180,000

Full time

11 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Health Insurance
Dental
Medical checkup
Optical

Job summary

NTT DATA Business Solutions is seeking a highly technical Splunk Enterprise Security Engineer to own the Splunk ES platform across an enterprise environment. You will drive platform stability, data quality, detection engineering and continuous monitoring improvements with a SOC-focused mindset.

Ideal candidates will have hands-on experience administering Splunk ES, correlating searches, risk-based alerting, and dashboards, plus experience onboarding data sources and integrating with ITSM tools.

Qualifications

  • Strong hands-on experience administering Splunk Enterprise and Splunk ES in enterprise environments.
  • Experience deploying, configuring, maintaining, troubleshooting Splunk infrastructure (Search Heads, Indexers, Heavy Forwarders, Universal Forwarders, Deployment Servers).
  • Experience upgrading, migrations, health checks, performance tuning, capacity optimization of Splunk platforms.
  • Proficiency with CIM compliance, data models, and SPL for dashboards and KPI reporting.
  • Experience on-boarding security data sources and integrating with ITSM/security tools.

Responsibilities

  • Own and manage Splunk Enterprise Security platform availability and performance.
  • Configure ES components (Correlation Searches, RBA, Adaptive Response, Dashboards, KPIs).
  • Develop, tune, and operationalize SOC detection use cases (auth attacks, privilege misuse, malware, lateral movement).
  • Provide guidance and training to SOC analysts on Splunk ES usage.
  • Automate enrichment and integrations with SOAR and ticketing tools.

Skills

Splunk ES
Splunk Admin
SOC collaboration
Threat detection
Data onboarding

Tools

Splunk Enterprise
Splunk ES

Job description

NTT DATA Business Solutions is seeking a highly technical Splunk Enterprise Security Engineer to own the Splunk ES platform across an enterprise environment. You will drive platform stability, data quality, detection engineering and continuous monitoring improvements with a SOC-focused mindset.

Ideal candidates will have hands-on experience administering Splunk ES, correlating searches, risk-based alerting, and dashboards, plus experience onboarding data sources and integrating with ITSM tools.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Splunk ES Platform Lead & Detection Engineer
Splunk ES Platform Lead & Detection Engineer

NTT DATA Business Solutions • Cyberjaya

On-site
MYR 150,000 - 210,000
Splunk Enterprise Security Engineer
Splunk Enterprise Security Engineer

NTT DATA Business Solutions • Malaysia

Hybrid
MYR 120,000 - 180,000
Health Insurance
Dental
Medical checkup
+1
Splunk Enterprise Security Engineer
Splunk Enterprise Security Engineer

NTT DATA Business Solutions • Cyberjaya

On-site
MYR 150,000 - 210,000
SIEM Engineer - Detection Strategy & Cloud SOC Lead
SIEM Engineer - Detection Strategy & Cloud SOC Lead

Ensign InfoSecurity • Selangor

On-site
MYR 120,000 - 180,000
SIEM Engineer
SIEM Engineer

Ensign InfoSecurity • Selangor

On-site
MYR 120,000 - 180,000
Senior Threat Hunter & Detection Engineer Lead
Senior Threat Hunter & Detection Engineer Lead

Logicalis • Kuala Lumpur

On-site
MYR 180,000 - 300,000
SOC Specialist
SOC Specialist

Pride Global • Cyberjaya

On-site
MYR 120,000 - 180,000
SOC Analyst – Splunk SIEM & Threat Hunting Expert
SOC Analyst – Splunk SIEM & Threat Hunting Expert

Lavu Tech Solutions • Kuala Lumpur

On-site
MYR 70,000 - 120,000
Senior SOC Analyst
Senior SOC Analyst

Pride Global • Selangor

On-site
MYR 120,000 - 180,000
L2 SOC Analyst / Engineer
L2 SOC Analyst / Engineer

Insyghts Security Sdn Bhd • Iskandar Puteri

On-site
MYR 60,000 - 100,000