HyperThink Systems
Website:
hyperthinksys.com
Job details:
๐ We're Hiring: Splunk Security Infrastructure Engineer
๐ Location: Doha, Qatar
๐จโ๐ป Experience: 3โ5 Years
๐
Duration: 12 Months (Extendable)
๐ข Company: HyperThink Systems W.L.L, Qatar
We are looking for a skilled Splunk Security Infrastructure Engineer to join the Security Operations (SecOps) team. The ideal candidate will be responsible for administering and optimizing Splunk Enterprise and Splunk Cloud environments, supporting SIEM operations, onboarding security data sources, developing detection content, and implementing security automation through Splunk SOAR.
๐ ๏ธ Key Skills
โจ Splunk Enterprise & Splunk Cloud Administration
โจ Splunk Enterprise Security (ES) & Risk-Based Alerting (RBA)
โจ Splunk SOAR (Phantom) Automation & Playbook Development
โจ SPL (Splunk Processing Language)
โจ Search Head & Indexer Cluster Management
โจ Universal & Heavy Forwarders
โจ Data Onboarding, CIM Normalization & Technology Add-ons (TAs)
โจ Python, Bash & Splunk REST API Integrations
โจ AWS CloudTrail, GuardDuty, Azure Activity Logs & GCP Log Ingestion
โจ MITRE ATT&CK, NIST Cybersecurity Framework & CIS Controls
๐ Key Responsibilities
๐ฏ Manage and optimize Splunk Enterprise / Splunk Cloud infrastructure
๐ Build correlation searches, dashboards, alerts, and security content
โ๏ธ Configure Splunk ES Notable Events and threat intelligence integrations
๐ Develop SOAR playbooks and automate incident response workflows
๐ก๏ธ Implement RBAC, LDAP, SAML and MFA integrations
โ๏ธ Onboard and normalize logs from cloud, endpoint, network and SaaS platforms
๐ค Collaborate with SOC Analysts, Threat Hunters and Infrastructure Teams
โ
Requirements
๐ก 3โ5 years of hands-on experience in Splunk Administration, SIEM Engineering or Security Operations
๐ก Strong expertise in Splunk ES, SPL, Data Onboarding and Detection Engineering
๐ก Experience with Search Head Clusters, Indexer Clusters and Forwarder Management
๐ก Hands-on experience with Splunk SOAR / Phantom and security automation
๐ก Strong Python and Bash scripting skills
๐ก Knowledge of TCP/IP, Firewalls, IDS/IPS and Endpoint Security
๐ Certifications
โ๏ธ Splunk Core Certified Power User (Required)
โ๏ธ Splunk Enterprise Certified Admin (Required)
โ Splunk Enterprise Security Certified Admin (Preferred)
โ Splunk SOAR Certified Automation Developer (Preferred)
โ Security+, CySA+, CEH, CISSP or GCIH
๐ง How To Apply
Share your updated CV along with Current Salary, Expected Salary and Notice Period to:
๐ฉ saikumar@hyperthinksys.com
#Splunk #SplunkEngineer #SplunkAdministrator #SIEM #SOAR #SOC #CyberSecurity #SecurityOperations #DetectionEngineering #ThreatIntelligence #QatarJobs #DohaJobs #MiddleEastJobs #Hiring
Click on Apply to know more.