Senior Engineer, Cyber Defense Engineering
Role details
Job location
Tech stack
Job description
The Splunk Engineer works closely with team leadership and team members to ensure integration of operations and maintenance to team standards. He/she will have experience log source onboarding, and maintenance of Splunk and Splunk ES. He/she exhibits a high service attitude and operations discipline to deliver 24x7, highly available and highly performing, production applications. He/she will work with a large team within it's own region and also coordinate handoffs with teams from the other regions. He/she will work with leads of the other regional teams to ensure the entire team is working together effectively.
Responsibilities
Partner with development and operations teams to develop practical solutions and processes.
Coordinate log ingestion / data quality activities with the core team and key stakeholders.
Clearly document and diagram deployment-specific aspects of architectures and environments, working closely with various teams to create application runbooks, playbooks, and knowledge base documents.
Assist in troubleshoot issues in production and other environments, applying problem-solving techniques (e.g., log analysis, non-invasive tests).
Works closely with team leadership to ensure integration of operations and maintenance to team standards.
Assist in the creation and implementation of global cyber initiatives and strategies.
Requirements
Bachelor's degree in Computer Science, Computer Engineering, Finance, Mathematics, Business Information Systems or other bachelor's degree combined with relevant experience and accomplishments.
One or more of the following: Splunk Certified Admin, Splunk Certified Architect, Splunk Certified Consultant
3+ years Splunk engineering experience
Essential
Solid understanding of Cloud Services - Azure, AWS
Strong understanding of Splunk data onboarding including Splunk App/TA configuration and CIM validation
Universal/Heavy Forwarder configuration experience, including encryption and compression settings
Experience working with a strict change control process utilizing tools such as Azure DevOps
Management/deployment experience with large scale/distributed Splunk environments
A solid understanding of Windows and Linux administration utilizing Command Line Interface (CLI)
Knowledge of networking, firewalls, load balancers etc.
Demonstrate understanding of common enterprise applications (especially in the area of security)
Knowledge of best practices for IT operations in an always-on, always-available service model
Excellent communication skills and the ability to communicate appropriately with/manage technical teams
Excellent influencing and reasoning skills; good at conflict resolution and consensus building
Ability to quickly explore, examine and understand complex problems
Experience managing large teams spreading across various regions and time zones
Good to have
Obtained an industry certification e.g. CISSP, GIAC, CISM
All round experience of infrastructure areas, not just security focused
Experience with Cribl administration and data onboarding
Experience in working in a large global organization
Benefits & conditions
At Deloitte, we value our people and offer employees a broad range of benefits. Our Total Rewards program reflects our continued commitment to lead from the front in everything we do-that's why we take pride in offering a comprehensive variety of programs and resources to support your health and well-being.