Senior Splunk Engineer
Company
EPAM Systems
Location
Ozorków, Poland
Type
Full Time
Job Description
EPAM seeks a skilled and driven Splunk Engineer to manage, optimize, and migrate Splunk SIEM environments.
This position is essential for improving SIEM capabilities and ensuring the SOC runs smoothly for our clients. The ideal candidate will have substantial experience in Splunk configuration, engineering, data integration, and troubleshooting to help us achieve our objectives. The Splunk Engineer will participate in an SIEM engineering practice focused on migrationprojects for our customers.
#LI-DNI#EasyApply
Responsibilities
- SIEM & SOAR Configuration: Set up SIEM and SOAR solutions to ensure they work smoothly with various security tools, systems, and data sources. Perform testing and validation for both SIEM and SOAR
- Use Cases Development & Implementation: Create detection use cases and implement SIEM detection rules. Develop remediation use cases for SOAR
- Splunk Architecture: Design, implement, and maintain scalable Splunk environments, including clustered deployments, to enhance performance and reliability
- Migration Oversight: Plan and execute Splunk migrations to minimise downtime and ensure compliance with organisational standards
- Log Sources Integration & Threat Hunting: Integrate log sourceswithSIEM and optimiselog ingestion and processing. Perform threat hunting,data enrichment, and threat intelligencefeeds onboarding and utilise them for automated responses
- Documentation & Reporting: Generate reports for technical and non-technical staff and stakeholders
- Relentless Improvement: Stay up-to-date with SIEM technologies and identify opportunities for continuous improvement
Want more jobs like this?
Get jobs in Ozorkรณw, Poland delivered to your inbox every week.
- Minimum of 3 years in a SOC environment as a Splunk SIEM Engineer, with proven expertise in managing large-scale Splunk deployments
- Basic knowledge of at least one cloud platform (GCP, Azure, AWS)
- Technical knowledge of Internet security,Network protocols, and related technologies, including IDS/IPS, firewalls, content filtering, NetworkBehaviour Analysis tools, Anti-malware and packet inspection
- Basic understanding of Windows, Linux, DB, network device monitoring and logging techniques
- Basic understanding of host and network security hardening and common security risk management concepts
- Proficiency in scripting and automation (e.g., Python, PowerShell),developing API integrations with SIEM/SOAR
- Familiarity with attack frameworks and knowledge bases, such as the MITRE ATT&CK framework, CAPEC, etc
- Experience with leveraging AI assistance in daily security operations
- Splunk certifications (e.g., Splunk Core Certified Power User, Splunk Enterprise Security Certified Admin)
- Experience with one or more SIRP/SOAR tools (Google SecOps SOAR, TheHive, Cortex,Splunk Phantom, Demisto/XSOAR, Resilient, etc)
- Knowledge of Splunk Search Processing Language (SPL), Splunk Common Information Model (CIM), YARA-L 2.0, Unified Data Model (UDM), and Kusto Query Language (KQL)
- We gather like-minded people:
- Engineering community of industry professionals
- Friendly team and enjoyable working environment
- Flexible schedule and opportunity to work remotely within Poland
- Chance to work abroad for up to 60 days annually
- Relocation within our 50+ offices
- We provide growth opportunities:
- Outstanding career roadmap
- Leadership development, career advising, soft skills, and well-being programs
- Certification (GCP, Azure, AWS)
- Unlimited access to LinkedIn Learning, Get Abstract, O'Reilly, Cloud Guru
- Language classes in English and Polish for foreigners
- We cover it all:
- Stable income (Employment Contract or B2B)
- Participation in the Employee Stock Purchase Plan
- Benefits package (health insurance, multisport, shopping vouchers)
- Strategically located offices featuring entertainment and relaxation zones, table tennis and football, free snacks, fantastic coffee, and more
- Referral bonuses
- Corporate, social and well-being events
- Please, note:
- The set of bonuses might vary based on the role you apply for - specifics will be discussed with our recruiter during the general interview
- We will reach out to selected candidates exclusively
Date Posted
12/19/2024
Views
0
Similar Jobs
Senior Software Engineer IV (Java/GO) - OpenX
Views in the last 30 days - 0
OpenX is a company focused on maximizing the economic potential of digital media companies through advanced ad marketplaces and technologies They are ...
View DetailsSenior UI/UX Designer (Gaming) - Innovecs
Views in the last 30 days - 0
Innovecs Games a division of Innovecs is seeking a UIUX Designer to join their dynamic team The successful candidate will play a crucial role in shapi...
View DetailsMiddle Manual QA Engineer - Innovecs
Views in the last 30 days - 0
Innovecs Games is seeking a QA Detective with a keen eye for detail and a passion for optimizing games The role offers flexible hours competitive comp...
View DetailsSenior Software Engineer - Back-end (Core Services) - Formstack
Views in the last 30 days - 0
Formstack is seeking a Senior Backend Software Engineer to join their remotefirst team The role involves designing and implementing scalable distribut...
View DetailsSenior Full-Stack Engineer (Node.js) - Innovecs
Views in the last 30 days - 0
Innovecs a global digital services company is seeking a passionate FullStack Software Engineer The role involves developing both frontend and backend ...
View DetailsSenior Software Engineer - Front-end (Core Services) - Formstack
Views in the last 30 days - 0
Formstack is seeking a Senior Frontend Engineer to join their remotefirst team The ideal candidate will have a passion for problemsolving proficiency ...
View Details