Splunk Enterprise & Soar Administrator

 

Description:

We are hiring a Splunk Enterprise & SOAR Administrator to manage and enhance our internal Splunk Security Infrastructure and SOAR platform. The ideal candidate will have hands-on expertise in Splunk ES, SOAR, Python, and custom dashboard/playbook development.

🎯Key Responsibilities:
▪️ Administer Splunk log ingestion, normalization, and Enterprise Security (ES).
▪️Develop custom dashboards, lookups, risk scoring, and correlation searches.
▪️Integrate business-critical data sources and translate SOC needs into technical solutions.
▪️Build custom Splunk apps, add-ons, and automation playbooks using Python and SimpleXML.
▪️Administer and optimize Splunk SOAR & PostgresDB clusters.
▪️Enhance incident triage workflows and develop AI-integrated automation.
▪️Drive use case creation, content development, and alert optimization.

🎯Must-Have Certifications
▪️Active Splunk Enterprise Certified Architect
▪️Splunk SOAR Administrator Certification

🎯Must-Have Skills:
▪️Bachelor’s degree in relevant field
▪️5+ years Splunk Administration experience
▪️Strong in Python, SPL, dashboard/report development, and data modeling
▪️Experience in SOAR playbooks, security automation, and incident response workflows
▪️Background in Cyber Security Operations Center (CSOC)

🎯Preferred:
▪️Splunk Core Certified Consultant
▪️Web dev skills: JavaScript, CSS, SimpleXML

 

Organization Triacitsolutions.com
Industry IT / Telecom / Software Jobs
Occupational Category Splunk Enterprise
Job Location Dubai,UAE
Shift Type Morning
Job Type Full Time
Gender No Preference
Career Level Experienced Professional
Experience 5 Years
Posted at 2025-06-12 11:37 am
Expires on 2025-09-10