Senior SIEM Deployment Engineer: Splunk & LogRhythm Expert

DS DeepSource

Riyadh

On-site

SAR 260,000 - 420,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

DS DeepSource seeks an experienced SIEM Deployment Engineer to lead or support Splunk/SIEM deployment across enterprise environments. You will plan, install, configure, and tune deployments, integrating diverse log sources and developing parsers, rules, dashboards, and reports.

You will collaborate with SOC teams to optimize threat detection, tune use cases, and reduce false positives, while documenting procedures and transferring knowledge to clients or internal teams.

Qualifications

  • Bachelor’s degree in Computer Science, Cybersecurity, or related field.
  • 8-10 years of experience in Splunk or SIEM deployment and cybersecurity.
  • Proven experience with LogRhythm SIEM deployment in enterprise environments.
  • Strong understanding of log analysis, incident response, and threat detection.
  • Familiarity with log source integration: Windows Event Logs, Syslog, NetFlow, etc.
  • Scripting experience (PowerShell, Python, etc.) is a plus.
  • Knowledge of cybersecurity frameworks (MITRE ATT&CK, NIST, etc.) is an advantage.
  • LogRhythm certifications (e.g., LogRhythm Deployment Fundamentals, LogRhythm Analyst) are a strong plus.

Responsibilities

  • Lead end-to-end deployment of Splunk or SIEM platform, including planning, architecture design, installation, configuration, and tuning.
  • Integrate log sources from various platforms (Windows, Linux, firewalls, routers, endpoint protection, etc.).
  • Develop custom parsers and log normalization rules.
  • Build correlation rules, alerts, dashboards, and reports based on customer requirements.
  • Conduct use case development, threat detection tuning, and optimization of false positives.
  • Collaborate with SOC teams to ensure effective threat monitoring and incident detection.
  • Document implementation procedures, configuration guides, and troubleshooting steps.
  • Provide knowledge transfer and training to internal teams or clients.
  • Ensure compliance with industry standards (e.g., NCA ECC, SAMA CSF, ISO 27001).

Skills

SIEM deployment
Splunk
Log analysis
Incident response
Threat detection
Scripting (PowerShell, Python)
Cybersecurity frameworks (MITRE ATT&CK
Log source integration

Education

Bachelor’s degree in Computer Science/Cybersecurity

Tools

Splunk
LogRhythm
Syslog
Windows Event Logs
NetFlow
PowerShell
Python

Job description

DS DeepSource seeks an experienced SIEM Deployment Engineer to lead or support Splunk/SIEM deployment across enterprise environments. You will plan, install, configure, and tune deployments, integrating diverse log sources and developing parsers, rules, dashboards, and reports.

You will collaborate with SOC teams to optimize threat detection, tune use cases, and reduce false positives, while documenting procedures and transferring knowledge to clients or internal teams.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Splunk/SIEM Administrator- Dubai, UAE
Senior Splunk/SIEM Administrator- Dubai, UAE

DS DeepSource • Riyadh

On-site
SAR 260,000 - 420,000
Senior Splunk Engineer - SIEM & Cloud Security Lead
Senior Splunk Engineer - SIEM & Cloud Security Lead

Itsecurityct • Saudi Arabia

On-site
SAR 120,000 - 150,000
Splunk Engineer – SIEM & Security Analytics Expert
Splunk Engineer – SIEM & Security Analytics Expert

exequt MENA • Riyadh

On-site
SAR 240,000 - 420,000
Performance-based compensation
Medical insurance (Golden Tier)
Ongoing training and mentorship
+2
Senior Splunk Operations Lead - SIEM & Security Analytics
Senior Splunk Operations Lead - SIEM & Security Analytics

Visible Stars • Riyadh

On-site
SAR 360,000 - 540,000
Sr. Splunk Engineer-KSA
Sr. Splunk Engineer-KSA

Itsecurityct • Saudi Arabia

On-site
SAR 120,000 - 150,000
MSS Lead Engineer
MSS Lead Engineer

cyberani solutions • Riyadh

On-site
SAR 180,000 - 300,000
Splunk Integration & Data Engineers
Splunk Integration & Data Engineers

Visible Stars Company • Riyadh

On-site
SAR 224,000 - 338,000
Senior Splunk Security Architect — AI-Driven SIEM & SOAR
Senior Splunk Security Architect — AI-Driven SIEM & SOAR

Cisco Systems, Inc. • Riyadh

On-site
SAR 300,000 - 520,000
Splunk Integration & Data Engineers
Splunk Integration & Data Engineers

Visible Stars, Inc. • Riyadh

On-site
SAR 300,000 - 500,000
Splunk Use Case Engineers
Splunk Use Case Engineers

Visible Stars, Inc. • Riyadh

On-site
SAR 180,000 - 240,000