2 Π΄Π½Ρ Π½Π°Π·Π°Π΄
Sr. Splunk Engineer (Cybersecurity)
ΠΡΡΡ & Π‘ΠΎΠΏΡΠΎΠ²ΠΎΠ΄
ΠΠ»Ρ ΠΌΡΡΡΠ° Ρ ΡΡΠΎΠΉ Π²Π°ΠΊΠ°Π½ΡΠΈΠ΅ΠΉ Π½ΡΠΆΠ΅Π½ Plus
ΠΠΏΠΈΡΠ°Π½ΠΈΠ΅ Π²Π°ΠΊΠ°Π½ΡΠΈΠΈ
Π’Π΅ΠΊΡΡ:
TL;DR
Sr. Splunk Engineer (Cybersecurity): Designing and operating complex on-premises and cloud-based Splunk environments with an accent on data ingestion, indexing, security monitoring, and infrastructure performance. Focus on optimizing SPL queries and dashboards, automating administration with Python and shell scripting, and supporting incident response and forensic investigations.
Location: Manila, Philippines
Company
Axos delivers digital financial tools and services for individuals, small businesses, and companies through technology-driven solutions.
What you will do
- Design, develop, and implement complex on-premises and cloud-based Splunk environments.
- Monitor, troubleshoot, and optimize Splunk infrastructure performance, availability, data ingestion, indexing, and search operations.
- Create and optimize SPL queries, dashboards, alerts, and security use cases.
- Manage user roles, permissions, role-based access control, indexer clusters, data retention policies, upgrades, and patches.
- Automate administrative tasks with Python, Bash, and PowerShell while improving data onboarding accuracy and efficiency.
- Support security incident response and forensic investigations, document system architecture and procedures, and mentor junior team members.
Requirements
- Bachelorβs degree in Computer Science, IT, or a related field.
- 3+ years of experience designing, implementing, and administering Splunk environments.
- Strong knowledge of Splunk architecture, data ingestion, indexing, search processes, cluster management, retention policies, and upgrades.
- Experience creating dashboards, alerts, and queries, with proficiency in Python, Bash, or PowerShell scripting.
- Familiarity with Splunk security features, role-based access control, Linux/Unix administration, networking, and security fundamentals.
- Experience with security monitoring, incident response, technical documentation, troubleshooting, and mentoring.
Nice to have
- Splunk Core User, Power User, or Admin certification.
Culture & Benefits
- Full-time employment.
- Pre-employment credit, criminal background, medical, and drug screening is required.
- Reasonable accommodations are available for qualified individuals with disabilities.
ΠΡΠ΄ΡΡΠ΅ ΠΎΡΡΠΎΡΠΎΠΆΠ½Ρ: Π΅ΡΠ»ΠΈ ΡΠ°Π±ΠΎΡΠΎΠ΄Π°ΡΠ΅Π»Ρ ΠΏΡΠΎΡΠΈΡ Π²ΠΎΠΉΡΠΈ Π² ΠΈΡ ΡΠΈΡΡΠ΅ΠΌΡ, ΠΈΡΠΏΠΎΠ»ΡΠ·ΡΡ iCloud/Google, ΠΏΡΠΈΡΠ»Π°ΡΡ ΠΊΠΎΠ΄/ΠΏΠ°ΡΠΎΠ»Ρ, Π·Π°ΠΏΡΡΡΠΈΡΡ ΠΊΠΎΠ΄/ΠΠ, Π½Π΅ Π΄Π΅Π»Π°ΠΉΡΠ΅ ΡΡΠΎΠ³ΠΎ - ΡΡΠΎ ΠΌΠΎΡΠ΅Π½Π½ΠΈΠΊΠΈ. ΠΠ±ΡΠ·Π°ΡΠ΅Π»ΡΠ½ΠΎ ΠΆΠΌΠΈΡΠ΅ "ΠΠΎΠΆΠ°Π»ΠΎΠ²Π°ΡΡΡΡ" ΠΈΠ»ΠΈ ΠΏΠΈΡΠΈΡΠ΅ Π² ΠΏΠΎΠ΄Π΄Π΅ΡΠΆΠΊΡ. ΠΠΎΠ΄ΡΠΎΠ±Π½Π΅Π΅ Π² Π³Π°ΠΉΠ΄Π΅ β
ΠΠΎΡ ΠΎΠΆΠΈΠ΅ Π²Π°ΠΊΠ°Π½ΡΠΈΠΈ
2 Π΄Π½Ρ Π½Π°Π·Π°Π΄
SIEM Architect & Engineer (CISO)
4 Π΄Π½Ρ Π½Π°Π·Π°Π΄
Senior Endpoint Security Engineer (AI)
2 Π΄Π½Ρ Π½Π°Π·Π°Π΄
Incident Response Consultant (Cybersecurity)
4 Π΄Π½Ρ Π½Π°Π·Π°Π΄
Senior Automation Engineer (AI-Accelerated Threat Response)
5 Π΄Π½Π΅ΠΉ Π½Π°Π·Π°Π΄
Email Security Operations Analyst (Cybersecurity)
14 ΡΠ°ΡΠΎΠ² Π½Π°Π·Π°Π΄