Splunk Content Developer

4 weeks ago


BangalorePuneHyderabad, India RapidBraiins Full time

Job Description :


Overview :


LTIMindtree Limited is an Indian multinational information technology services and consulting company. A subsidiary of Larsen & Toubro, the company was incorporated in 1996 and employs more than 90,000 people.


Job Description :


We are looking for a content development engineer or L2 level SOC SIEM engineer with hands-on experience in developing new rules, use cases based on various log sources including Cloud Security log sources and integrating various log sources with SIEM Platform.


Roles and Responsibilities :


- Creating and implementing new threat detection content, rules and use cases to deploy in SIEM platform with different data sets like Proxy, VPN, Firewall, DLP, etc.


- Assisting with process development and process improvement for Security Operations to include creation/modification of SOPs, Playbooks, and Work instructions.


- Developing custom content based on threat intelligence and threat hunting results.


- Identifying gaps in the existing security controls and develop/propose new security controls.


- SIEM Engineering and knowledge of integrating various log sources with any SIEM platform.


- Custom parsing of logs being ingested into the SIEM Platform


Job Requirements :


- 3+ years of experience working in the field of Content development and experience in delivering and/or building content on any of the SIEM tools like Splunk/Arcsight /QRadar/Nitro ESM/etc.


- Deep understanding of MITRE ATT&CK Framework.


- Experience in SOC Incident analysis with an exposure to information security technologies such as Firewall, VPN, Intrusion detection tools, Malware tools, Authentication tools, endpoint technologies, EDR and cloud security tools.


- Good understanding on networking concepts.


- Experience interpreting, searching, and manipulating data within enterprise logging solutions (e.g. SIEM, IT Service Management (ITSM) tools, workflow, and automation)


- In depth knowledge of security data logs and an ability to create new content on advanced security threats on a need basis as per Threat Intelligence.


- Ability to identify gaps in the existing security controls.


- Good experience in writing queries/rules/use cases for security analytics (ELK, Splunk or any other SIEM platform) and deployment of content.


- Experience on EDR tools like Crowdstrike and good understanding on TTPs like Process Injection.


- Excellent communication, listening & facilitation skills


- Ability to demonstrate an investigative mindset.


- Excellent problem-solving skills. Skills & Requirements Understanding of MITRE ATT&CK framework.


- Demonstrable experience in Use case /rule creation on any SIEM Platform.


- Chronicle Backstory/ YARA / Crowdstrike rules is a plus.

(ref:hirist.tech)
  • Splunk Developer

    4 weeks ago


    Bangalore Urban, India Tech Mahindra Full time

    Designation- Splunk developerLocation: Bangalore/ Pune/ Mumbai/ Hyderabad/ NoidaExperience (Splunk): 10-15Yrs.Job Description -Splunk developer to deliver our monitoring use cases. Define in Splunk the standard usage pattern to identify the violation in App/API usage patterns so that alarm can be triggered using Splunk;Agree on logics and develop those...


  • Pune, India JUARA IT SOLUTIONS Full time

    Job Title: Engineer - Splunk DevelopmentLocation: Bangalore, PuneType of Employment: Full TimeExperience: 3 to 10 YearsNotice Period: Immediate or Less than 30 DaysPosition Overview:The Splunk Developer will be responsible for developing and maintaining Splunk apps and add-ons to extend platform functionality and integrate with other systems. Proficiency in...


  • pune, India JUARA IT SOLUTIONS Full time

    Job Title: Engineer - Splunk Development Location: Bangalore, Pune Type of Employment: Full Time Experience: 3 to 10 Years Notice Period: Immediate or Less than 30 Days Position Overview: The Splunk Developer will be responsible for developing and maintaining Splunk apps and add-ons to extend platform functionality and integrate with other...


  • Pune, India JUARA IT SOLUTIONS Full time

    Job Title: Engineer - Splunk Development Location: Bangalore, Pune Type of Employment: Full Time Experience: 3 to 10 Years Notice Period: Immediate or Less than 30 Days Position Overview:The Splunk Developer will be responsible for developing and maintaining Splunk apps and add-ons to extend platform functionality and integrate with other systems....


  • Pune, India Dew Software Full time

    Dew Software, a trusted leader in the Digital Transformation space, is seeking a skilled Cyber Security Splunk Engineer to join their dynamic team. With a commitment to innovative solutions, Dew Software collaborates with Fortune 500 companies to help them achieve their strategic objectives. As the Cyber Security Splunk Engineer, you will play a pivotal role...


  • pune, India Dew Software Full time

    Dew Software, a trusted leader in the Digital Transformation space, is seeking a skilled Cyber Security Splunk Engineer to join their dynamic team. With a commitment to innovative solutions, Dew Software collaborates with Fortune 500 companies to help them achieve their strategic objectives. As the Cyber Security Splunk Engineer, you will play a pivotal role...


  • Pune, India Dew Software Full time

    Dew Software, a trusted leader in the Digital Transformation space, is seeking a skilled Cyber Security Splunk Engineer to join their dynamic team. With a commitment to innovative solutions, Dew Software collaborates with Fortune 500 companies to help them achieve their strategic objectives. As the Cyber Security Splunk Engineer, you will play a pivotal role...

  • Splunk Engineer

    4 weeks ago


    pune, India Peoplefy Full time

    Exciting Opportunity with a Product Based Company - Pune!M ust have:·Splunk Development – 80-90 %, Admin – 10-20% (Pure developer is also fine, Admin exp is good to have)·OSS exp – intermediate level·Design and develop efficient Splunk dashboards, reports and alerts·Developing custom scripts e.g. Python, Java, Perl, or Unix shell (any)·Can review...

  • Software Engineer

    1 week ago


    Hyderabad, India Splunk Inc Full time

    Join us as we pursue our ground-breaking new vision to make machine data accessible, usable and valuable to everyone. We are a company filled with people who are passionate about our product and seek to deliver the best experience for our customers. At Splunk, we’re committed to our work, customers, having fun and most importantly to each other’s...

  • Splunk Engineer

    4 weeks ago


    Pune, India Peoplefy Full time

    Exciting Opportunity with a Product Based Company - Pune! Must have: ·Splunk Development – 80-90 %, Admin – 10-20% (Pure developer is also fine, Admin exp is good to have) ·OSS exp – intermediate level ·Design and develop efficient Splunk dashboards, reports and alerts ·Developing custom scripts e.g. Python, Java, Perl, or Unix shell (any) ·Can...

  • Software Engineer

    1 week ago


    hyderabad, India Splunk Inc Full time

    Join us as we pursue our ground-breaking new vision to make machine data accessible, usable and valuable to everyone. We are a company filled with people who are passionate about our product and seek to deliver the best experience for our customers. At Splunk, we’re committed to our work, customers, having fun and most importantly to each other’s...

  • Software Engineer

    2 weeks ago


    Hyderabad, India Splunk Inc Full time

    Join us as we pursue our ground-breaking new vision to make machine data accessible, usable and valuable to everyone. We are a company filled with people who are passionate about our product and seek to deliver the best experience for our customers. At Splunk, we’re committed to our work, customers, having fun and most importantly to each other’s...

  • Splunk Engineer

    4 weeks ago


    Pune, India Peoplefy Full time

    Exciting Opportunity with a Product Based Company - Pune!Must have:·Splunk Development – 80-90 %, Admin – 10-20% (Pure developer is also fine, Admin exp is good to have)·OSS exp – intermediate level·Design and develop efficient Splunk dashboards, reports and alerts·Developing custom scripts e.g. Python, Java, Perl, or Unix shell (any)·Can review...

  • Splunk Engineer

    4 weeks ago


    Pune, India Peoplefy Full time

    Exciting Opportunity with a Product Based Company - Pune!Must have:·Splunk Development – 80-90 %, Admin – 10-20% (Pure developer is also fine, Admin exp is good to have)·OSS exp – intermediate level·Design and develop efficient Splunk dashboards, reports and alerts·Developing custom scripts e.g. Python, Java, Perl, or Unix shell (any)·Can review...


  • Hyderabad, Telangana, India Wipro Limited Full time

    Overview: Principal Responsibilities - Involved in the architectural design/detailed solution design, deployment, maintenance, and service improvement of network management tools infrastructure, focus on Splunk Search head/indexer/deployment server and so on. - Provide support and consultancy to other Telecoms teams like Networking, Voice, Security, Trade...


  • Hyderabad, India Splunk Inc Full time

    Join us as we pursue our innovative vision to make machine data accessible, usable, and valuable to everyone. We are a company filled with people who are passionate about our product and seek to deliver the best experience for our customers. At Splunk, we’re committed to our work, our customers, having fun, and most meaningfully, to each other’s...


  • Hyderabad, Telangana, India Wipro Limited Full time

    Hyderabad, India - Tech Hiring - 3057597 **Job Description**: - Principal Responsibilities - Involved in the architectural design/detailed solution design, deployment, maintenance, and service improvement of network management tools infrastructure, focus on Splunk Search head/indexer/deployment server and so on. - Provide support and consultancy to other...


  • Hyderabad, India Splunk Inc Full time

    Join us as we pursue our exciting new vision to make machine data accessible, usable, and valuable to everyone. We are a company filled with people passionate about our product and seeking to deliver the best experience for our customers. At Splunk, we’re committed to our work, customers, having fun and most importantly to each other’s success. Learn...

  • Splunk SME

    4 weeks ago


    bangalore, India Wipro Full time

    We @Wipro are looking for People with the below skills. Please share your CV if you have the skill and are interested. Skills: Splunk Enterprise / Splunk ITSI / Splunk (Design, Deployment & Development) Exp: 7 to 15 years Job location: Bangalore/Chennai/ Greater Noida/Pune/Hyderabad Design of Splunk platform with multiple data sources Migration / upgrade...


  • bangalore, India CGI Full time

    Position Description: Slunk Developer/Engineer with 4 to 6 years hands on experience.Prerequisite – Splunk Certified DeveloperRequired Primary Skills:Proven experience as a Splunk Developer or similar role.Proficiency in Splunk platform components, SPL, and data visualization.Strong scripting skills (e.g., Python, Bash) for data processing and...