Analyst/Sr. Analyst - Splunk Content Developer – Deloitte Support Services India Private Limited
Work you’ll do
The Cybersecurity Engineer runs/supports GEMS (Global Event Monitoring Services) and are the point of contact for all security related threats and issues. This role is responsible for development of Threat and Incident based High-Fedility Security Splunk use-cases and visuals.
- Contribute to potential use-case ideation projects as per threat landscape and priority TTPs.
- Provide knowledge of recognizing and onboarding new data sources into Splunk to support use-case as well as dashboards development to fulfill stakeholder requirements.
- Provide skillful knowledge within a Linux environment, editing and maintaining Splunk configuration files and apps.
- Work with other Cybersecurity Engineering team members and interact with end users to gather requirements, perform troubleshooting, and aid with the creation of Splunk search queries and dashboards as required.
- Interact with senior management and stakeholders, as necessary.
- Troubleshoot performance alerts from the Splunk infrastructure.
- Document and update the Team’s process and Content Development Process.
- Actively seek to improve and develop new content based upon observed security activity
- Provide excellent customer service.
Qualifications:
· Bachelor’s degree in Computer Science or Business Administration, or relevant educational or professional experience.
Skills/abilities:
· 3-6 years of security experience including Splunk Content Development.
- Creating Alerts, Dashboards and reports in Splunk Tool.
- Experience in requirement gathering and documentation.
- Experience in Log parsing, lookups, calculated fields extractions using regular expression(regex).
- Experience in search optimization and filtering out False positives
- Good command in SPL
- Sound judgment skills and ability to manage escalations.
- Excellent interpersonal and organizational skills.
- Experience with writing correlated searches
Good To Have:
- Knowledge on MITRE or any equivalent Security framework
- Knowledge on Detection Engineering
- Knowledge on Splunk Enterprise Security
- Knowledge on Splunk Essentials App
- Versed in Machine Learning Tool Kit (MLTK)/Statistical Analysis to write content
- Splunk Core Power User Certification
- Potential to detect threat and develop threat aligned content.
- Experience with Data Models
- Knowledge and experience in GIT.
Location: Hyderabad, India
How you’ll grow
At Deloitte, our professional development plan focuses on helping people at every level of their career to help them to identify and use their strengths to do their best work every day. From entry-level employees to senior leaders, we believe there’s always room to learn. We offer opportunities to help sharpen skills in addition to hands-on experience in the global, fast-changing business world. From on-the-job learning experiences to formal development programs, our professionals have a variety of opportunities to continue to grow throughout their career.
Benefits
At Deloitte, we know that great people make a great organization. We value our people and offer employees a broad range of benefits.
Deloitte’s culture
Our positive and supportive culture encourages our people to do their best work every day. We celebrate individuals by recognizing their uniqueness and offering them the flexibility to make daily choices that can help them to be healthy, centered, confident, and aware. We offer well-being programs and are continuously looking for new ways to maintain a culture where our people excel and lead healthy, happy lives.
Corporate citizenship
Deloitte is led by a purpose: to make an impact that matters. This purpose defines who we are and extends to relationships with our clients, our people and our communities. We believe that business has the power to inspire and transform. We focus on education, giving, skill-based volunteerism, and leadership to help drive positive social impact in our communities.
Recruiter tips
We want job seekers exploring opportunities at Deloitte to feel prepared and confident. To help you with your interview, we suggest that you do your research: know some background about the organization and the business area you’re applying to.