Splunk Security Engineer Detection & Analytics
A Career with Point72s Technology Team
As Point72 reimagines the future of investing our Technology group is constantly improving our companys IT infrastructure positioning us at the forefront of a rapidly evolving technology landscape. Were a team of experts experimenting discovering new ways to harness the power of open source solutions and embracing enterprise agile methodology. We encourage professional development to ensure you bring innovative ideas to our products while satisfying your own intellectual curiosity.
What youll do
As a Splunk Security Engineer on our Security Data & Analytics team youll be instrumental in maintaining and evolving Point72s centralized security logging and threat detection platform while addressing critical operational needs. You will have the opportunity to work with enterprise-scale security data develop sophisticated threat detection and analytics solutions and directly impact the firms security posture.
- Build tune and maintain custom threat detection rules and alerts in Splunk Enterprise Security in partnership with Security Operations
- Develop and support Splunk dashboards and applications that enable threat hunting risk remediation tracking and security operations monitoring
- Integrate detections with SOAR platforms in partnership with Security Operations to support security automation and response workflows
- Analyze parse normalize and enrich security data to support reliable detection reporting and analytics
- Design and implement automated data ingestion pipelines using agents syslog APIs and database connectors to onboard new log sources
- Partner with Infrastructure Application and Security teams to expand logging coverage and improve security visibility across onprem and cloud environments
- Operate and optimize the Splunk Enterprise Security platform ensuring stable ingestion high availability and efficient performance
- Ensure consistent agent deployment and monitoring coverage across a large and diverse estate of endpoints servers and cloud workloads
Whats REQUIRED
Were seeking an experienced Splunk professional with strong security domain knowledge and a passion for building robust data analytics solutions at enterprise scale.
- 5 years of experience working in technology roles including 3 years of handson experience with Splunk Enterprise covering administration SPL development data onboarding and alerting
- Experience developing and tuning correlation searches alerts and dashboards in Splunk ES
- Strong knowledge of log formats parsing techniques regular expressions and data normalization concepts
- Proficiency in relevant scripting or data languages (e.g. Python Perl PowerShell SQL)
- Solid understanding of cybersecurity principles threat detection methodologies and security operations workflows
- Broad technical knowledge across networks operating systems applications and SaaS platforms
- Commitment to the highest ethical standards and the ability to handle sensitive security information with discretion
We take care of our people
We invest in our people their careers their health and their well-being. When you work here we provide:
- Sports card
- Private life insurance
- Private medical and dental care with vision allowance
- Private pension scheme
- Volunteer opportunities
- Support for employee-led affinity groups representing women people of color and the LGBT community
- Business travel accident insurance
- Employee assistance program
- Educational assistance reimbursement
About point72
Point72 is a leading global alternative investment firm led by Steven A. Cohen. Building on more than 30 years of investing experience Point72 seeks to deliver superior returns for its investors through fundamental and systematic investing strategies across asset classes and geographies. We aim to attract and retain the industrys brightest talent by cultivating an investor-led culture and committing to our peoples long-term growth. For more information visithttps:// Warsaw office gives us access to world-class talent with a reputation for excellence and innovation. Were looking to build an office of subject-matter experts whose fresh perspectives will help evolve our infrastructure and advance the capabilities of our teams. Learn more at Experience:
IC
Splunk Security Engineer Detection & AnalyticsA Career with Point72s Technology TeamAs Point72 reimagines the future of investing our Technology group is constantly improving our companys IT infrastructure positioning us at the forefront of a rapidly evolving technology landscape. Were a team of ex...
Splunk Security Engineer Detection & Analytics
A Career with Point72s Technology Team
As Point72 reimagines the future of investing our Technology group is constantly improving our companys IT infrastructure positioning us at the forefront of a rapidly evolving technology landscape. Were a team of experts experimenting discovering new ways to harness the power of open source solutions and embracing enterprise agile methodology. We encourage professional development to ensure you bring innovative ideas to our products while satisfying your own intellectual curiosity.
What youll do
As a Splunk Security Engineer on our Security Data & Analytics team youll be instrumental in maintaining and evolving Point72s centralized security logging and threat detection platform while addressing critical operational needs. You will have the opportunity to work with enterprise-scale security data develop sophisticated threat detection and analytics solutions and directly impact the firms security posture.
- Build tune and maintain custom threat detection rules and alerts in Splunk Enterprise Security in partnership with Security Operations
- Develop and support Splunk dashboards and applications that enable threat hunting risk remediation tracking and security operations monitoring
- Integrate detections with SOAR platforms in partnership with Security Operations to support security automation and response workflows
- Analyze parse normalize and enrich security data to support reliable detection reporting and analytics
- Design and implement automated data ingestion pipelines using agents syslog APIs and database connectors to onboard new log sources
- Partner with Infrastructure Application and Security teams to expand logging coverage and improve security visibility across onprem and cloud environments
- Operate and optimize the Splunk Enterprise Security platform ensuring stable ingestion high availability and efficient performance
- Ensure consistent agent deployment and monitoring coverage across a large and diverse estate of endpoints servers and cloud workloads
Whats REQUIRED
Were seeking an experienced Splunk professional with strong security domain knowledge and a passion for building robust data analytics solutions at enterprise scale.
- 5 years of experience working in technology roles including 3 years of handson experience with Splunk Enterprise covering administration SPL development data onboarding and alerting
- Experience developing and tuning correlation searches alerts and dashboards in Splunk ES
- Strong knowledge of log formats parsing techniques regular expressions and data normalization concepts
- Proficiency in relevant scripting or data languages (e.g. Python Perl PowerShell SQL)
- Solid understanding of cybersecurity principles threat detection methodologies and security operations workflows
- Broad technical knowledge across networks operating systems applications and SaaS platforms
- Commitment to the highest ethical standards and the ability to handle sensitive security information with discretion
We take care of our people
We invest in our people their careers their health and their well-being. When you work here we provide:
- Sports card
- Private life insurance
- Private medical and dental care with vision allowance
- Private pension scheme
- Volunteer opportunities
- Support for employee-led affinity groups representing women people of color and the LGBT community
- Business travel accident insurance
- Employee assistance program
- Educational assistance reimbursement
About point72
Point72 is a leading global alternative investment firm led by Steven A. Cohen. Building on more than 30 years of investing experience Point72 seeks to deliver superior returns for its investors through fundamental and systematic investing strategies across asset classes and geographies. We aim to attract and retain the industrys brightest talent by cultivating an investor-led culture and committing to our peoples long-term growth. For more information visithttps:// Warsaw office gives us access to world-class talent with a reputation for excellence and innovation. Were looking to build an office of subject-matter experts whose fresh perspectives will help evolve our infrastructure and advance the capabilities of our teams. Learn more at Experience:
IC
View more
View less