Operations Engineer
Splunk Security Coe
Updated on 9/22/2023
Splunk

5,001-10,000 employees

Data management & visualization platform
Company Overview
Splunk's mission is to address the challenges and opportunities of managing massive streams of machine-generated big data. Splunk is the leading software platform for machine data that enables customers to gain real-time Operational Intelligence.
Locations
Remote
Experience Level
Entry
Junior
Mid
Senior
Expert
Desired Skills
AWS
JavaScript
Git
Linux/Unix
REST APIs
Python
Go
Communications
CategoriesNew
IT & Security
Software Engineering
Requirements
  • 2+ years of proven experience in Splunk and/or Splunk SOAR administration that supported cybersecurity or information technology teams
  • 2+ years of demonstrable experience in tool integrations, CI/CD and REST APIs as well as software development experience with Python, Golang, JavaScript, or similar
  • Fully proficient in git and version control systems, like GitLab and GitHub
  • Experience in Security Operations, SIEM, Incident Response, and Threat Intelligence
  • Skilled in Linux administration and Cloud Technologies, such as AWS
  • Excellent communication skills, both verbal and written; able to explain intricate technical topics to varying groups
Responsibilities
  • Ensure the steady-state operations of the Splunk products used by Splunk's in-house Security Operations team
  • Work closely with the Splunk Global Security (SGS) teams to improve existing automation and search initiatives that deliver resilient solutions
  • Tap into your expertise of all things Splunk to address issues
  • Build and improve custom data onboarding scripts and add-ons for internal corporate tools and services
  • Analyze internal metrics and workflows to reduce false positives and accurately focus engineering efforts
  • Develop repeatable processes to build playbooks in order to efficiently resolve any incidents that arise
  • Serve as initial support for internal customers and maintain high availability of playbooks
  • Implement validated security strategies related to our team's Linux-based and AWS-based infrastructure, Python code, and containerized services