Senior Cybersecurity Specialist (Splunk Architect)📣 Job Ad
| Contract Type | Full-time | |
| Workplace type | On-site | |
| Location | Riyadh |
Job Description
About the Role
Help AG is seeking a Senior Cybersecurity Specialist with a focus on Splunk Architecture to join their team in Riyadh, KSA. This full-time position involves the creation of procedures, implementation of process development, and maintenance of security systems for both internal and client environments. The role operates within the Cyber Engineering department and requires close collaboration with management, SOC analysts, threat analysts, solution architects, other security engineers, and clients to deliver critical managed security services.
Key Responsibilities
- Administering Splunk and its applications, including the development of new or extension of existing apps for specialized functions.
- Integrating Splunk with a diverse range of legacy data sources.
- Adapting to and learning new SOC technologies from various vendors.
- Collaborating with application and infrastructure teams to establish best practices for Splunk data utilization and visualization.
- Designing, implementing, and supporting solutions using Microsoft security technologies such as Azure Cloud Access Security Broker, Office 365 Advanced Threat Protection, and Microsoft Defender ATP, including their integrations for internet-scale intelligence and managed security products.
- Handling the implementation, deployment, and support of vulnerability scan engines in coordination with Engineering, SOC, and Incident Response teams.
- Documenting vulnerabilities and working on mitigation strategies within agreed Service Level Agreements (SLAs).
- Managing EDR sensors, including deployment, operation, maintenance, updates, upgrades, patching, and administration.
- Creating watchlists to detect Indicators of Compromise (IoCs) and malicious behavior.
- Assessing customer needs, designing solutions to meet those needs, and implementing the designs.
- Rapidly building and troubleshooting solutions using new technologies to assess viability.
- Serving as a primary responder for Managed Security customer systems, taking ownership of client configuration issues through to resolution.
- Working with SOC team members on operational tasks and initiatives to enhance service quality.
- Proactively fine-tuning false positives and enhancing processes with other MSS teams.
- Developing content for SOC technologies, such as Splunk use cases, in cooperation with the SOC.
Qualifications and Experience
- Essential experience and knowledge of Splunk SIEM.
- Minimum of 5-10 years of professional experience in cybersecurity.
- Minimum 3 years of professional experience supporting and maintaining Splunk SIEM & Enterprise Security.
- 3-5 years of experience with advanced tuning of Splunk SIEM content.
- Professional experience working with networks and network architecture.
- Bachelor's degree or equivalent training with experience in a Security Operations Center, Managed Security, or client network environment.
- Information security knowledge in one or more areas such as EDR.
- Practical hands-on experience with EDR solutions (*, Carbon Black), Vectra, and Microsoft Azure.
- General security knowledge.
- Certifications on Splunk Admin, Splunk Architect, or Splunk Consultant are mandatory.
- Knowledge of Linux and Windows Operating Systems.
- Experience with other SIEM solutions such as QRadar & LogRhythm is highly preferred.
- Experience working with clients in a service delivery function.
- Shift flexibility, including the ability to provide after-hours support when needed.
- Experience working with internal and client ticketing and knowledge base systems for incident and problem tracking, as well as procedures.
Work Environment and Location
This is a full-time position based in Riyadh, KSA. The role requires collaboration across various internal teams and direct engagement with clients. Flexibility for after-hours support is necessary.
Company Benefits
Help AG offers health insurance with a leading global provider, opportunities for career progression and growth through challenging projects, employee engagement activities throughout the year, and a tailored training and development program.
Requirements
- Requires 5-10 Years experience
Similar Jobs
You may also like
- Related Senior Cybersecurity Specialist (Splunk Architect) Opportunities
- Cashier Jobs in Riyadh
- Human Resources Clerk Jobs in Riyadh
- Sales Supervisor Jobs in Riyadh
- Executive Secretary Jobs in Riyadh
- Operations Supervisor Jobs in Riyadh
- Other Job Fields in Riyadh
- Cashier Jobs in Riyadh
- Human Resources Clerk Jobs in Riyadh
- Sales Supervisor Jobs in Riyadh
- Executive Secretary Jobs in Riyadh
- Operations Supervisor Jobs in Riyadh
- Production Supervisor Jobs in Riyadh
- Store keeper Jobs in Riyadh
- Customer Service Representative Jobs in Riyadh
- Executive Assistant Jobs in Riyadh
- Barista Jobs in Riyadh
- Explore Jobs Across Saudi Arabia
- Photographer Jobs in Dammam
- Sales Supervisor Jobs in Al-Kharj
- Optician Jobs in Dammam
- Financial Manager Jobs in Al Jubail
- Human Resources Clerk Jobs in Dammam
- Medical Laboratory Technician Jobs in Jeddah
- Sales Representative Jobs in Khamis Mushayt
- Florist Jobs in Riyadh
- Public Relations Specialist Jobs in Taif
- Receptionist Jobs in Makkah
