Stratogent - Splunk Admin

4 days ago


Bengaluru Karnataka, India ConsultBae Full time

Role: Security Consultant

**Location**:

- Bangalore, 5 days, WFO

**Shift**:

- Rotational shift

**Roles and Responsibilities**:

- The primary responsibility is to work on the existing or new Incidents, Service Requests, and Tasks
- Triage the unresolved incidents or Requests to Leads
- Continually communicates with Leads and Customer
- Process
- Day to day Operational issues, requests and Project tasks
- Incident response and resolution within SLA's with excellent analytical and troubleshooting skills
- Providing all the necessary details to leads about the issue, steps taken, recommendation and any other relevant information
- Ticket Status Check and Update
- Respond to False Positive Alerts
- Incident Escalation and Progress Monitoring
- Create, review, update, and maintain Standard Operating Procedures.
- Prepare RCA for the escalated incidents.
- Perform the Shift handovers

Security Incident Response:

- Leads the escalation as a point for security incidents.
- Analyze & investigate cyber threats on a real-time/day-to-day basis, involving alerts review, log analysis, and event/incident correlations.
- Prepare Document and Maintain Procedures, Response Plan, Runbooks, and associated processes for continuous improvement.
- Assist Analyst for security event and initial incident response to detected threats.
- Regularly review and recommend changes to policies or controls as needed to enhance security.
- Identifies potential gaps and offers solutions to include internal team needs, product improvements and client security posture.
- Develop reporting with focused messages to enable the stakeholders to understand their and responsibilities.
- Train and mentor, the peers and juniors in the team.

SPLUNK
- Managing Splunk components such as indexer, forwarder, search head, etc
- Prepare Splunk dashboards.
- Install, Configure and Troubleshoot Universal forwarders.
- Triage of non-security alerts based on priority, problem identification and escalation.
- Escalate to designated contacts within Stratogent and Customer for issues outside SOPs, or when SOPs fail to resolve the issue.
- Work directly with delivery teams or customers to gather logging requirements.
- Convert Logging requirements into Splunk designs following best practices.
- Perform environment health checks.
- Update and / or create technical documentation.

**Must have skills**:

- Performing incident handling, evidence acquisition, endpoint and Network,and Security Incident management
- Must have worked on Splunk
- Customer-focused
- Excellent communication skills (reading, writing, speaking and listening)
- Highly self-motivated and directed.
- Excellent attention to detail.
- Flexibility and willingness to work on different and multiple technologies
- Ability to effectively prioritize, organize and execute tasks in a high-pressure environment

**Good to have skills**:

- Worked on any of the IAM and PAM tools.
- Certifications in Enterprise Admin or Cloud Admin of Splunk is an advantage
- Prior training and certification in communication is added advantage

**About the company: Stratogent**

Stratogent does IT and Cybersecurity operations.

We build and operate complex infrastructure - across on-premise, data centers, and clouds. We wrap any compute-storage-network platform with monitoring, automation and security services so customers can sleep while we cure failures and block threats.

If Google’s mission is to “organize the world’s information”, ours is to “operate the world’s infrastructure”. We aren’t quite there yet, so we focus on being the best at knowing and doing operations for mid-size, high-touch and high-change IT environments. Our customer base is made up of progressive companies who are flag bearers of new technology adoption and are risk-takers. We have participated in successful (and failed) projects and bring that accumulated experience to each of our clients.

Since 2008, we have acted as an extension of internal IT and Security teams and along the way achieved a community of highly satisfied clients who rave about our “no-fluff just stuff” style.


  • Splunk Admin

    2 weeks ago


    Bengaluru, Karnataka, India Cognizant Full time

    Splunk Admin Experience: 8 to 16 years Responsibility: Splunk Admin Primary & Mandatory Skill: Splunk Admin, Humio, MLTK, Docker/Kubernetes, Terraform, Python Client Round (Yes/ No): Yes Location Constraint if any: BLR Shift timing: UK shift JD: Basic Qualifications - 8+ years of relevant work experience. - Extensive working knowledge of Splunk...

  • Splunk Itsi Admin

    2 days ago


    Bengaluru, Karnataka, India Tata Consultancy Services Full time

    **Must Have**: - Splunk ITSI is must with 3+ years of hands-on experience with "Splunk Admin Certification." - Create a deployment strategy & Deploying Splunk to new environment. - Managing Configuration effectively and Splunk Core & ITSI Upgrade - Excellent in writing SPL, defining KPIs & ITSI services to monitor the infrastructure. - Good in SNOW...

  • Splunk Admin

    4 days ago


    Bengaluru, Karnataka, India SSquad Global Full time

    **Responsibilities**: - Support, maintain, and expand Splunk infrastructure in a highly resilient configuration - Standardized Splunk agent deployment, configuration and maintenance across a variety of platforms - Troubleshoot Splunk server and agent problems and issues - Support Splunk developers and users in designing and maintaining production-quality...

  • Splunk Admin

    1 week ago


    Bengaluru, Karnataka, India SSquad Global Full time

    We are seeking a highly skilled and motivated Splunk Administrator to join our team in Bangalore. security and environment monitoring capabilities using the Splunk platform. You will be working closely with cross-functional teams, including compliance, engineering, and operations, to ensure seamless integration and optimal performance of Splunk within our IT...


  • Bengaluru, Karnataka, India Sopra Steria Full time

    Splunk Administrator Full-time **Company Description**: **About Sopra Steria** Sopra Steria, a major Tech player in Europe with 50,000 employees in nearly 30 countries, is recognised for its consulting, digital services and solutions. It helps its clients drive their digital transformation and obtain tangible and sustainable benefits. The Group provides...


  • Bengaluru, Karnataka, India Sopra Steria Full time

    **Company Description** About Sopra Steria** Sopra Steria, a major Tech player in Europe with 50,000 employees in nearly 30 countries, is recognised for its consulting, digital services and solutions. It helps its clients drive their digital transformation and obtain tangible and sustainable benefits. The Group provides end-to-end solutions to make large...

  • Splunk

    2 weeks ago


    Bengaluru, India SolutionTechHr Full time

    1. Onboarding log sources into Splunk. 2. Splunk Administration 3. Splunk reporting and dashboard creation. 4. Data Analytics using Splunk. **Relevant Experience required**: 1. At least 2 years hands on experience in Splunk Admin role and log source onboarding 2. Good to have Cyber Security experience. 3. Good to have experience in Python. **Salary**:...

  • Splunk Architect,

    2 weeks ago


    Bengaluru, Karnataka, India deltaclass technology solutions Full time ₹ 8,00,000 - ₹ 24,00,000 per year

    Currently we are looking for Splunk Architect Responsibilities Role :Splunk Architect Exp :6 to 8 Yrs Location: Bangalore,Hyderabad Notice: Immediate to 15 Days JD: Mandatory Skills: Splunk Architect,Splunk Enterprise Certified Architect,Splunk Certified Admin certification,data ingestion,Python, Bash, or Power Shell. 6–8 years of experience working with...


  • Bengaluru, India Grackle Business Solutions Pvt Ltd Full time

    Required Skills & Qualifications :- 7+ years of experience as a Splunk Administrator/Developer in large-scale or clustered environments.- Strong expertise in Splunk architecture, clustering, upgrades, scaling, and tuning.- Proven hands-on experience with advanced SPL for dashboards, alerts, and reports.- Experience with Agile/Scrum methodologies.- Knowledge...


  • Bengaluru, India Capgemini Full time

    **Job Description**: - Must have Splunk admin OR development knowledge OR experience on Splunk Enterprise Security - Creative and analytical problem solving skills individually and in a group environment - Good knowledge and experience of Security Monitoring tools - Good knowledge and experience of Cyber Incident Response - Good knowledge and experience of...