drjobs SIEM / Splunk Administrator & Platform Engineer

SIEM / Splunk Administrator & Platform Engineer

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Warsaw - Poland

Monthly Salary drjobs

Not Disclosed

drjobs

Salary Not Disclosed

Vacancy

1 Vacancy

Job Description

Job Description & Summary

Our Internal Business Application Centre (IBACentre) team offers you the opportunity to support our core business functions by implementing applications that enable more efficient work and the delivery of top-notch services. Our team focuses on managing core and global business applications ensuring their continuous operation handling customer relationships and incidents with precision.

We are looking for:

SIEM / Splunk Administrator & Platform Engineer

Join our Global Cyber Logging - Platform Operation team as a pivotal player in managing the centralized data management and analytics platform using Splunk. Your role is crucial in ensuring the integrity security and performance of our logging infrastructure while driving continual improvement and innovation. Applicants should have at least 1 year experience in Splunk Enterprise / SIEM administration & management and a good understanding of networking & Linux.

Your future role:

SIEM Platform Management & Administration:

  • Monitoring administration and optimization of the Splunk Enterprise platform to ensure efficient log management and effective security information and event management (SIEM).
  • Conduct regular Splunk Infra & Ingestion health checks and monitoring to keep the environment robust and healthy for our stakeholders.
  • Monitor & Keep the Splunk Enterprise instances in good health to serve our customers by keeping platform up & running 24/7.

Troubleshooting & Problem Solving:

  • Actively identify issues using Monitoring investigate the rootcause troubleshoot and fix the Splunk platform issues & problems related to log source outages parsing errors time discrepancies user problems and more.
  • Conduct Root Cause Analysis (RCA) to systematically address recurring issues and streamline problem mitigation.

SIEM Configuration Management & End-user Support:

  • Support the deployment and configuration of Splunk solutions at enterprise level ensuring seamless log integration and issue resolution.
  • Manage end-user service requests oversee Splunk access control and enforce access restrictions to maintain secure and efficient user management.
  • Ensure optimal platform performance through regular consolidation cleanup and configuration adjustments.

Innovation Analytics & Continuous Improvement:

  • Enhance Splunk operations by implementing innovative solutions that improve efficiencies and automate processes while integrating emerging technologies to optimize performance.
  • Leverage machine learning and AI to deliver advanced analytics insights predictive models and strategic data-driven visualizations for informed decision-making.

Migration & Collaborations:

  • Handle SIEM server offboarding and migration managing Cloud/On-prem Splunk forwarders (UF/HF) and log source migration projects.
  • Foster collaboration with multiple global teams like cybersecurity IT and business units while streamlining processes and documentation to boost efficiency & platform stability.

Apply if you have:

  • Demonstrated knowledge in SIEM solutions and data analytics tools particularly SPLUNK
  • Good understanding of networking principles traffic analysis and operating systems (Windows & Unix/Linux). TCP/IP and DNS resolution
  • Proficient with traffic analysis & Tshoot tools Wireshark TCPdump Name lookup...etc
  • Strong competence in Linux/UNIX environments including scripting skills with Regular Expressions
  • Hands-on experience in deploying and operating Splunk / other SIEM solutions is crucial. Splunk certifications are highly desirable
  • Understanding of security domain applications and their integration within SIEM frameworks to support robust cybersecurity operations
  • Strong written and verbal communication skills in English.

By joining us you gain:

  • Work flexibility - hybrid working model flexible start of the day workation sabbatical leave
  • Development and upskilling - our full support during onboarding process mentoring from experienced colleagues training sessions workshops certification co/financed by PwC and conversations with native speaker
  • Wide medical and well-being program - a medical care package coaching mindfulness sessions psychological support education through dedicated webinars and workshops financial and legal advice
  • Possibility to create your individual benefits package (a.o. lunch pass insurance packages concierge veterinary package for a pet massages) and access to a cafeteria - vouchers discounts on IT equipment and car purchase
  • 3 paid hours for volunteering per month
  • Additional paid Birthday Day off
  • And when you start enjoying PwC as much as we do you may recommend your friend to work with us.

Recruitment process:

  • CV verification
  • HC screening call
  • Online recruitment meeting with our managers/senior managers/directors
  • Online or in person presentation.

Your personal data will be processed for recruitment purposes by PwC Advisory spka z ograniczon odpowiedzialnoci sp.k. or another PwC entity which runs a recruitment process - (list of entities). If you have given separate consent data will also be processed for other purposes in accordance with the content of the consents granted. Full information about processing your personal data is available in the .

#LI-K1 #LI-Remote


Required Experience:

Unclear Seniority

Employment Type

Full-Time

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.