Splunk SIEM Engineer
Tasks
- Build dashboards for SOC performance metrics
- Configure ES correlation searches
- Develop customize and tune detection use cases
- Ensure CIM compliance and consistent field extractions
- Ensure data onboarding and normalization
- Implement automation and enrichment using Adaptive Response
- Integrate Splunk ES with ITSM and security platforms
- Maintain Risk Based Alerting and notable events
- Maintain documentation for data sources use cases and workflows
- Manage Adaptive Response Actions
- Own and manage Splunk Enterprise Security platform
- Support SOC alert triage investigations and incident response
- Support audit compliance and governance reporting
- Translate SOC detection requirements into ES content
- Troubleshoot ingestion parsing and indexing issues
- Tune correlation searches to reduce false positives
Perks/Benefits
- N/A
Skills/Tech-stack
Adaptive Response Actions | Adaptive response | CIM | Correlation searches | Dashboards | Data models | Detection engineering | Enterprise Security | ITSM integration | Incident Response | Log Parsing | Log onboarding | Mitre Attack | Notable events | Performance Tuning | Risk-Based Alerting | Risk-based | SOAR | Security Automation | Security Log Parsing | Security incident | Security incident response | Splunk Enterprise | Splunk Enterprise Security | Splunk SPL | Splunk data models | Splunk indexing | Threat Intelligence | Threat intelligence enrichment
Education
N/A
Related jobs
-
Acceptance Testing | Configuration Management | Firewall Management | Incident Response | Lab testingHybrid work | Shift work flexibilitySenior-level Full TimeKuala Lumpur, Malaysia14h ago
-
Entry-level Full TimeIpoh, Perak, Malaysia1d ago
-
Network Security Engineer USD 103K-155KAWS | Access Control | Access Control Lists | Ansible | AuthenticationMid-level Full TimeKuala Lumpur, Federal Territory of Kuala …1d ago
-
AppSec Engineer – Vulnerability Operations Center USD 100K-154KAWS | Automation | Azure | Bash | CVEMid-level Full TimePSA | Kuala Lumpur - Menara …2d ago
-
Senior Incident Response Engineer USD 105K-157KAWS | Active Directory | Azure | CrowdStrike | Cybersecurity automationSenior-level Full TimeMalaysia, Kuala Lumpur4d ago
-
L2 SIEM Engineer USD 112K-172KAbusech | Bash | Event management | FortiSIEM | Incident ResponseOn-call rotation supportMid-level Full TimeMyKris Avenue Bukit Jalil, Malaysia9d ago
-
Senior Cyber Security Engineer USD 123K-166KAdvanced Analytics | Bash | Behavioral analytics | Cause analysis | Cloud SecuritySenior-level Full TimeRHB Complex - ITD, Level 7, …15d ago
-
Senior Cyber Security Engineer USD 117K-238KActive Directory | CrowdStrike Falcon | Cyber Kill Chain | DLP | Defender for EndpointAccommodation support | Inclusive workplace | On-site work environmentSenior-level Full TimeBatu Kawan, Penang, Malaysia21d ago
-
TISO Digital Forensic and Incident Response BRL 112K-127KChain of Custody | Cloud Forensics | Data exfiltration | Data exfiltration analysis | Digital forensicsProfessional developmentSenior-level Full TimeMAL-Cyberjaya, Malaysia22d ago
-
Systems Engineer (SecOps) - Malaysia CAD 107K-141KCloud Platforms | Cloud Security | Deception Technology | EDR | Early WarningMid-level Full TimeWilayah Persekutuan Kuala Lumpur, Malaysia23d ago
-
Alert triage | AlienVault | Compliance Support | Device administration | Escalation managementRenewable contract | Technical learning opportunitiesMid-level Full TimeKuala Lumpur, Federal Territory of Kuala …28d ago
-
Sr. Operational Technology Security Engineer USD 126K-200KAccess Control | Armis | Asset Inventory | Claroty | Configuration baselinesSenior-level Full TimeBatu Kawan, Penang, Malaysia29d ago
-
Senior IT Security Engineer USD 114K-174KAWS IAM | AWS Security | Authentication Protocols | Burp Suite | Cloud SecurityAdditional annual leave | Dental subsidy | Medical insurance | Optical Subsidy | Training opportunitiesSenior-level Full TimeBandar Sunway, Selangor, Malaysia1mo ago
-
SecOps (Security Operations) Engineer USD 90K-114KAccess Management | CASB | Cloud Security | DLP | EDRMid-level Full TimeKuala Lumpur1mo ago
-
Lead - Platform Engineer USD 119K-227KAPI Integration | Automation | Azure DevOps | Azure Sentinel | Cloud IdentityFlexible work | Health benefits | Professional development | Remote work | Team collaborationSenior-level Full TimeKuala Lumpur, Malaysia1mo ago
-
Expert IAM Engineer Okta CAD 128K-192KAPIs | Active Directory | Automation | Azure identity | Certificate authenticationCareer development opportunities | Flexible work hours | Global team collaborationSenior-level Full TimePort Klang, MY, 420001mo ago
-
Senior Technology Consultant (Malaysia) USD 160K-343KACL | API Integration | Cloud Security | Cybersecurity protocols | EDRCareer development | Health benefits | Inclusive culture | Work-life flexibilitySenior-level Full TimeKuala Lumpur, Selangor, Malaysia1mo ago
-
Senior Technology Consultant (Malaysia) USD 160K-343KAutomation (Ansible) | Automation Ansible Terraform | Automation Ansible Terraform Python PowerShell | Cloud Security | EDRHealth benefits | Inclusive work environment | Professional developmentSenior-level Full TimeKuala Lumpur, Selangor, Malaysia1mo ago
-
Senior-level Full TimeMalaysia (Selangor)1mo ago
-
Staff Threat Detection Engineer USD 104K-155KAWS | Active Directory | Automation Scripting | Azure | Cloud SecurityCareer growth potential | Diverse global team | Learning opportunities | Respectful environmentSenior-level Full TimeMalaysia, Kuala Lumpur1mo ago