FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in administering and engineering Splunk, along with proficiency in developing scripts and integrations using Python, Bash, and PowerShell. Capable of managing SIEM tools, optimizing data sources, and ensuring compliance through effective documentation and access control.
Highest-signal resume keywords
Splunk AdministrationSPL Query DevelopmentPython ScriptingAzure Cloud ManagementAWS Cloud Management
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
SIEM ManagementCorrelation Rule OptimizationDashboard DevelopmentData Source OnboardingRegex ParsingIncident ResolutionChange ManagementPerformance ImprovementKnowledge Object ManagementProgram Metrics Development
Soft Skills
CommunicationMentoringCollaborationTraining
Tools & Technologies
SplunkServiceNowAzureAWSLinuxWindows
Certifications & Qualifications
Splunk Core Certified AdminAzure AZ-900: Microsoft Azure FundamentalsAWS Cloud Practitioner
Industry Keywords
Cybersecurity OperationsData-Ingestion ProceduresAccess ControlsComplianceWorkflow Automation
Tech Stack
Tools & technologiesAWSAzureCloudCyber SecurityLinuxPythonServiceNowSplunk
About the role
Key responsibilities & impact- Administer, install, configure, and maintain Splunk cloud, on-premises, and other SIEM/log management tools
- Develop, audit, and optimize correlation rules and collaborate with ESOC to create detections
- Build and maintain dashboards, reports, alerts, and visualizations
- Create and optimize SPL queries and manage knowledge objects
- Onboard and manage data sources including syslog, HEC, forwarders, and APIs
- Manage deployment servers and forwarders
- Maintain inputs, reporting, and alerting across Azure and AWS environments
- Improve system performance and propose platform enhancements
- Develop scripts and integrations using Python, Bash, and PowerShell
- Use workflow automation tools with ServiceNow and other security/infrastructure platforms
- Use regex for parsing, extraction, and automation
- Document data-ingestion procedures and maintain access controls for compliance
- Create configuration standards, policies, and procedures
- Develop program metrics to measure monitoring effectiveness
- Resolve incidents and issues and integrate changes through change-management processes
- Train and mentor ESOC members on SIEM capabilities and best practices
- Interface with analysts and business stakeholders to ensure tools, dashboards, and applications meet requirements
- Communicate with teams and clients
- Work across Linux and Windows platforms
- Apply networking, workflow, and IT-reporting knowledge
Requirements
What you’ll need- Bachelor’s Degree and 5+ years cybersecurity operation related experience or software analyst/programming related experience, or master’s degree and 3+ years related experience
- An additional 4 years of experience may be considered in lieu of a degree
- Demonstrated experience administering and engineering Splunk
- Must obtain the Splunk Core Certified Admin certification within the first 3 months of employment
- Must obtain the Azure AZ-900: Microsoft Azure Fundamentals certification within 6 months of employment
- Must obtain the AWS Cloud Practitioner certification within 9 months of employment
- Availability to work flexible hours and be available for on call during rotations
- Must be a US Citizen
Benefits
Comp & perks- Flexible hours
- On-call availability during rotations
