Splunk Security Engineer - REF3556C

Budapest, Hungary

Deutsche Telekom IT Solutions

Deutsche Telekom TSI Hungary Kft., Deutsche Telekom ITTC Hungary Kft.

View all jobs at Deutsche Telekom IT Solutions

Apply now Apply later

Company Description

The largest ICT employer in Hungary, Deutsche Telekom IT Solutions (formerly IT-Services Hungary, ITSH) is a subsidiary of the Deutsche Telekom Group. Established in 2006, the company provides a wide portfolio of IT and telecommunications services with more than 5000 employees. ITSH was awarded with the Best in Educational Cooperation prize by HIPA in 2019, acknowledged as one of the most attractive workplaces by PwC Hungary’s independent survey in 2021 and rewarded with the title of the Most Ethical Multinational Company in 2019. The company continuously develops its four sites in Budapest, Debrecen, Pécs and Szeged and is looking for skilled IT professionals to join its team.

Job Description

  • Work with other members of the SOC and provide support in engineering related topics, i.e.: use-case development, maintenance, log parsing 
  • Possesses high quality knowledge about IT security tools, eg.: SIEM, SOAR, EDR 
  • Delivers complex changes on solutions which are part of the requested solution 
  • Optimizes in-place security solutions in the context of his/her specified task group 
  • Diagnoses complex issues 
  • Provides Colleagues with professional guidance, approves execution plans by SOC Colleagues 
  • Do lab testing of emerging cyber security technologies 
  • Develops technical documentation and operation manuals 
  • Works as a project resource, supports planning and execution of projects 

Qualifications

  • Experience with performing systems administration, including performing installation, configuration, monitoring system performance and availability, upgrades and troubleshooting of Splunk
  • Experience in working in a Splunk clustered environment
  • Splunk forwarder deployment, configuration and maintenance on all Windows and Linux platforms
  • Knowledge of CIM 
  • Onboarding of new data sources into Splunk 
  • Analyse the data for anomalies 
  • Build new dashboards or enhance existing dashboards
  • Create alerts and trigger actions (send email, run script)
  • Utilize expertise in Splunk SPL language, Splunk Dashboards, Reports, Lookup Tables, and Summary Indexes.
  • Design and implement threat detection, automate incident response processes, integration of various security tools with SIEM and SOAR platforms via APIs.
  • Requires proficiency within a Windows and Linux environment, editing and maintaining Splunk configuration files and apps.
  • Familiarity with network topology, UDP, TCP, Proxys, Firewalls, Routers and Switches.
  • Scripting Experience (Python, etc)
  • Knowledge and Experience in GIT
  • Troubleshoots and debugs issues that arise.
  • Reliable English communication skills (both written and verbal)

PREFERRED QUALIFICATIONS

  • Splunk certification (e.g., Splunk Certified Power User, Splunk Certified Admin, etc ).
  • Experience with SIEM (Security Information and Event Management) systems.

Additional Information

* Please be informed that our remote working possibility is only available within Hungary due to European taxation regulation.

* Please be informed that our remote working possibility is only available within Hungary due to European taxation regulation.

Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  0  0  0

Tags: APIs EDR Firewalls Incident response Linux Monitoring Python Scripting SIEM SOAR SOC Splunk Threat detection Windows

Region: Europe
Country: Hungary

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.