Opens an external site
- Employment type
- Full-time
- Experience level
- Senior · 5+ years
- Apply by
- Mar 1, 2027
- Posting language
- English
- Working hours
- 40 hours per week
- Seniority
- Mid-Senior level
- Application method
- Direct apply is available
Job summary
Develops automation scripts and tunes Splunk use cases to enhance security monitoring and incident response efficiency. Establishes standardized SOC processes and defines performance metrics to strengthen organizational resilience.
Job details
What are the top 3 skills required for this role? SPL (Search Processing Language) & Splunk Search Development Scripting/Automation (Python/Bash) for Incident Response Splunk Administration & Infrastructure Tuning Job Description/ Responsibilities Develops scripts to automate and enhance search queries for security monitoring and incident response Oversees continuous tuning of Splunk use cases and detection rules to improve coverage, reduce noise, and boost analyst efficiency. Establishes standardized incident response processes and maintains documentation (runbooks, risk logs, reports) for audit readiness Drives continuous improvement by defining SOC performance metrics, engaging stakeholders, and applying lessons learned to strengthen resilience. Team Culture Collaborative, metrics-driven SOC environment focused on continuous improvement Emphasis on knowledge sharing, cross-training, and blameless post-incident reviews Fast-paced, adaptive culture balancing proactive threat hunting with reactive response
What you’ll do
Develops automation scripts and tunes Splunk use cases to enhance security monitoring and incident response efficiency. Establishes standardized SOC processes and defines performance metrics to strengthen organizational resilience.
Requirements
Requires expertise in SPL, Splunk administration, and scripting languages like Python or Bash for automation. Candidates should have experience in infrastructure tuning and managing incident response documentation.
Listed skills
- Python · Preferred
Other relevant skills
Identified from the job description. Confirm important requirements above.
- Splunk Search Processing Language
- Splunk Search Development
- Python
- Bash
- Splunk Administration
- Infrastructure Tuning
- Incident Response
- Security Monitoring
- Detection Rule Tuning
- SOC Performance Metrics
- Runbook Documentation
- Threat Hunting
Job areas
- Security & Safety
- Technology
- Data & Analytics
- Management & Leadership
- Consulting