
Splunk Engineer
1 week ago
Company Overview:
Stratogent does IT and Cybersecurity operations.
We build and operate complex infrastructure across on-premise, data centers, and clouds. We wrap any compute-storage-network platform with monitoring, automation and security services so customers can sleep while we cure failures and block threats.
If Googles mission is to "organize the world's information", ours is to "operate the world's infrastructure". We aren't quite there yet, so we focus on being the best at knowing and doing operations for mid-size, high-touch and high-change IT environments. Our customer base is made up of progressive companies who are flag bearers of new technology adoption and are risk-takers. We have participated in successful (and failed) projects and bring that accumulated experience to each of our clients.
Since 2008, we have acted as an extension of internal IT and Security teams and along the way achieved a community of highly satisfied clients who rave about our "no-fluff just stuff" style.
Job description:
- The primary responsibility is to work on the existing or new Incidents, Service Requests, and Tasks
- Triage the unresolved incidents or Requests to Leads
Business Relationships:
- Continually communicates with Leads and Customers
Key Responsibilities
Process
- Day to day Operational issues, requests and Project tasks
- Incident response and resolution within SLA's with excellent analytical and troubleshooting skills
- Providing all the necessary details to leads about the issue, steps taken, recommendation and any other relevant information
- Ticket Status Check and Update
- Respond to False Positive Alerts
- Incident Escalation and Progress Monitoring
- Create, review, update, and maintain Standard Operating Procedures.
- Prepare RCA for the escalated incidents.
- Perform the Shift handovers
SPLUNK
- Configure and troubleshoot Splunk components such as indexer, forwarder, search head, etc
- Comfortable with Splunk queries to create Splunk dashboards.
- Configuring Splunk as per the Best Practices (apps, add-ons, searches, etc).
- Creates, modifies, and updates Security Information Event Management rules.
- Recognizes potential, successful and unsuccessful intrusion attempts and compromises thorough reviews and analyses of relevant event detail.
- Triage of non-security alerts based on priority, problem identification and escalation.
- Escalate to designated contacts within Stratogent and Customer for issues outside SOPs, or when SOPs fail to resolve the issue.
- Utilize Security Information and Event Management to monitor data flow between networks.
- Work directly with delivery teams or customers to gather logging requirements.
- Convert Logging requirements into Splunk designs following best practices.
- Perform environment health checks.
- Troubleshoot Issues
- Update and / or create technical documentation.
Security:
- Leads the escalation as a point for security incidents.
- Analyze & investigate cyber threats on a real-time/day-to-day basis, involving alerts review, log analysis, and event/incident correlations.
- Prepare Document and Maintain Procedures, Response Plan, Runbooks, and associated processes for continuous improvement.
- Assist L1/L2 for security event and initial incident response to detected threats.
- Regularly review and recommend changes to policies or controls as needed to enhance security.
- Identifies potential gaps and offers solutions to include internal team needs, product improvements and client security posture.
- Develop reporting with focused messages to enable the stakeholders to understand their and responsibilities.
- Train and mentor, the peers and juniors in the team.
Must-have Skills: Prior Working Experience
- Must have worked on Splunk
- Performing incident handling, evidence acquisition, endpoint and Network,and Security Incident management
- Customer-focused
- Excellent communication skills (reading, writing, speaking and listening)
- Highly self-motivated and directed.
- Excellent attention to detail.
- Flexibility and willingness to work on different and multiple technologies
- Ability to effectively prioritize, organize and execute tasks in a high-pressure environment
Good to have skills: Prior Work Experience
- Worked on any of the IAM and PAM tools.
- Certifications in Enterprise Admin or Cloud Admin of Splunk is an advantage
- Prior training and certification in communication is added advantage
KRA
- Adherence to ticket creation within SLA
- Adherence to SLA in incident/request handling
- Make the incident handling experience better for the customer (internal team/ external customer)
- High quality ticket updates
- Troubleshooting tasks with proper perspective
- Keep the Leads informed of task accomplishment, issues and status
- Training and mentoring peers and Juniors
Soft skills
- Excellent communication skills – Written and Verbal
- Enjoys sharing information with others
- Team player
- Passion for work
- Learning Orientation
-
Software Engineer
1 week ago
Bengaluru, Karnataka, India Splunk Full time ₹ 12,00,000 - ₹ 36,00,000 per yearJoin us as we pursue our disruptive new vision to make machine data accessible, usable and valuable to everyone. We are a company filled with people who are passionate about our product and seek to deliver the best experience for our customers. At Splunk, we're committed to our work, customers, having fun and most importantly to each other's success. Learn...
-
Software Engineer – Fullstack
1 week ago
Bengaluru, Karnataka, India Splunk Full time ₹ 15,00,000 - ₹ 25,00,000 per yearSplunk Enterprise Security (ES) is a sophisticated SIEM built atop Splunk's data platform with lots of moving parts. We help thousands of customers as they identify and protect their assets from cyber threats, all over the world. On any given day, our software needs to handle thousands of users, petabytes of data, and unique usage patterns across different...
-
Splunk Engineer
4 weeks ago
Bengaluru, Karnataka, India Capgemini Engineering Full timeRole : Splunk EngineerAbout the RoleThe ideal candidate will be responsible for managing and optimizing Splunk infrastructure, ensuring efficient deployment and maintenance across various platforms.Responsibilities- Worked on Setup Indexer, Search Head, Deployment Server, Heavy Forwarder and Universal forwarder.- Standardized Splunk Forwarder Deployments,...
-
Splunk Engineer
4 weeks ago
Bengaluru, Karnataka, India Capgemini Engineering Full timeRole : Splunk Engineer About the Role The ideal candidate will be responsible for managing and optimizing Splunk infrastructure, ensuring efficient deployment and maintenance across various platforms. Responsibilities Worked on Setup Indexer, Search Head, Deployment Server, Heavy Forwarder and Universal forwarder. Standardized Splunk Forwarder...
-
Splunk Engineer
1 week ago
Bengaluru, Karnataka, India Takeda Full time ₹ 12,00,000 - ₹ 36,00,000 per yearBy clicking the "Apply" button, I understand that my employment application process with Takeda will commence and that the information I provide in my application will be processed in line with Takeda's Privacy Notice and Terms of Use. I further attest that all information I submit in my employment application is true to the best of my knowledge.Job...
-
Senior Software Engineer – Fullstack
6 days ago
Bengaluru, Karnataka, India Splunk Full time ₹ 12,00,000 - ₹ 36,00,000 per yearJoin us as we pursue our new vision to make machine data accessible, usable, and valuable to everyone. We are a company filled with people who are passionate about our product and seek to deliver the best experience for our customers. At Cisco, we're committed to our work, customers, having fun, and most importantly to each other's success. Learn more about...
-
Splunk Admin- Infrastructure Engineer
5 hours ago
Bengaluru, Karnataka, India NatWest Group Full time ₹ 15,00,000 - ₹ 25,00,000 per yearJoin us as an Infrastructure EngineerYou'll engineer infrastructure technology for public and private cloud environments, complying with security, resilience, sustainability, and operational requirements with observability and guardrails built inYou'll also use automation to provide testing and a route to live for the product, working with customers to help...
-
Splunk Admin- Infrastructure Engineer
4 hours ago
Bengaluru, Karnataka, India RBS Full time ₹ 15,00,000 - ₹ 25,00,000 per yearJoin us as an Infrastructure EngineerYou'll engineer infrastructure technology for public and private cloud environments, complying with security, resilience, sustainability, and operational requirements with observability and guardrails built inYou'll also use automation to provide testing and a route to live for the product, working with customers to help...
-
Splunk Developer
6 days ago
Bengaluru, Karnataka, India MedRec Technologies Full time ₹ 6,00,000 - ₹ 10,00,000 per yearDevelop, maintain, and automate operational and executive-level reports and dashboards.Gather reporting requirements by working closely with business stakeholders.Analyze root trends and present actionable insights to support strategic initiatives.Ensure root accuracy and consistency across all reporting outputs.collaborate with IT and root engineering teams...
-
Software Engineer
4 weeks ago
Bengaluru, Karnataka, India Peoplefy Full timeSr. Software Engineer - Splunk AdminLocation : Pune, Noida, Bangalore, HyderabadExperience : 6 -11 YearsEmployment Type : Full-timeJob Overview : We are seeking a highly skilled and experienced Sr. Software Engineer - Splunk Admin with 6-11 years of dedicated experience to manage and optimize our critical Splunk Enterprise infrastructure. The ideal candidate...