Security Monitoring – Splunk Engineer

Apply now

Active job offers

Security Monitoring – Splunk Engineer

  • Security

Requirements

  • Splunk Enterprise
  • Splunk Cloud
  • Splunk Enterprise Security
  • SPL (Search Processing Language)
  • Python
  • Bash
  • PowerShell
  • AWS, Azure, or GCP
  • Splunk Certified Admin certification (is a plus)
  • English
  • German (nice to have)

Job description

As a Splunk Engineer you will be part of the Cyber Security division. The Cyber Security team is responsible for identifying and detecting threats, as well as protecting our customer and its clients from cyberattacks. As part of this young and diverse team, you will make a valuable contribution to the delivery of Managed Security Services and provide consulting services to our clients. A Splunk Engineer is responsible for designing, implementing, and maintaining Splunk infrastructure, ensuring the efficient collection, indexing, and analysis of machine data for security, IT operations, and business analytics. This role requires expertise in log management, data analysis, and troubleshooting while working closely with IT, security, and business teams to provide actionable insights.

Main responsibilities

  • Splunk Deployment & Administration: Install, configure, and manage Splunk Enterprise, Splunk Cloud, and associated applications;
  • Log Data Management: Ingest, index, and analyze logs from multiple data sources, including servers, network devices, applications, and cloud environments;
  • Search and Dashboard Development: Create custom queries, dashboards, alerts, and reports using Splunk’s Search Processing Language (SPL);
  • Performance Optimization: Optimize Splunk queries and configurations to enhance performance, reduce system load, and ensure efficient data retrieval;
  • Troubleshooting & Incident Response: Diagnose and resolve Splunk-related issues, provide root cause analysis, and support incident response efforts;
  • Capacity Planning & Upgrades: Monitor system health, plan for scaling, and manage software upgrades and patches;

Qualifications

  • Strong knowledge of Splunk Enterprise, Splunk Cloud, and Splunk Enterprise Security (ES);
  • Proficiency in SPL (Search Processing Language) and creating advanced searches, dashboards, and reports;
  • Experience in log ingestion, parsing, and indexing from various data sources;
  • Knowledge of Linux/Unix environments and basic scripting (Python, Bash, PowerShell);
  • Familiarity with SIEM, SOAR, IT security, and compliance frameworks;
  • Strong ability to analyze machine data, identify anomalies, and provide meaningful insights;
  • Ability to work with cross-functional teams including security, IT operations, and business analysts;
  • Splunk Certified Admin certification is a plus;
  • Experience with cloud platforms such as AWS, Azure, or GCP;
  • Fluent English;
  • German (nice to have);

Benefits

More reasons to work with us

sync_saved_locally

Top-of-the-line equipment

We provide the equipment that best suits your needs and the requirements of your role.

calculate

Accounting support

We offer accounting support to cover your pay and tax needs.

chair

Remote work

In most projects, each specialist can work from any location they only want.

Recruitment process

It only takes a few steps

Different roles have different requirements, so the recruitment process depends on the specific position you are applying for.

quick_reference_all

Checking your CV

We read every resume we receive carefully. If you meet our requirements, we will call you to learn more about your expertise and needs.
psychology

Evaluating your qualifications

After an initial phone call, we check your skills with a task related to your position and provide you with feedback afterwards.
sms

Making an appointment

The next step is a meeting at our office or online, where you can learn more about the team and our work culture from a Spyrosoft manager and/or partner.
task_alt

Getting the answer

At Spyrosoft, we contact every person participating in the recruitment process. Upon acceptance, we will provide a list of the next steps.

Meet the recruiter

Ola Surmińska Spyrosoft

Building a new team is a puzzle, there’s no room for mistakes.

Aleksandra Surminska

Senior Recruitment Specialist

CONTACT OUR RECRUITMENT TEAM

Apply for
Security Monitoring – Splunk Engineer

If this offer seems to be perfect for you - don't wait, send us your CV

    Please note that we accept PDF, .doc, .docx or .odt format only.

    By agreeing to one of the following statements, I confirm that I provide my data voluntarily and accept the information contained in the Communication.
    See Communication text

    We would like to inform you that, in accordance with Directive (EU) 2019/1937 on whistleblower protection and relevant national laws, the Spyrosoft Group has implemented a whistleblower policy, enabling reports through an internal channel from the recruitment stage. If you observe any irregularities, we encourage you to use one of the contact options listed in the Policy.
    For more details, including the Policy's content, whistleblower rights, obligations, and data protection, please visit: Whistleblowing Policy.

    At the same time, I declare that I voluntarily provide my personal data and I acknowledge that the Controller of my personal data is Spyrosoft S.A. with its registered office in Wrocław, Plac Nowy Targ 28, the recipients of my data can be companies related with the Data Controller: in particular:
    a) dominant companies within the meaning of art. 4 § 1 point 4 of the Commercial Companies Code of 15 September 2000,
    b) affiliated companies within the meaning of art. provisions of the Commercial Companies Code of 15 September 2000,
    c) companies associated personally with the Administrator, i.e. those in which persons discharging functions in the Administrator's bodies hold at least 20% of votes or shares,
    as well as the Customers of these companies or the entities providing services in favour of the Data Controller who may act as data controllers and processors and my personal data shall be processed pursuant to the Regulation of the European Parliament and of the Council (EU) 2016/679 of 27 April 2016 on the protection of individuals with regard to the processing of personal data and on the free movement of such data and repealing Directive 95/46/EC, pursuant to Art. 6 (1) (a) of this Regulation, during the period not exceeding 6 months

    At the same time, I acknowledge that I have the right to access and rectify my personal data, its erasure, limitation of processing, the right to object to the processing of data, the right to transfer data, the right to withdraw the consent at any time (without impact on the lawfulness of the processing carried out before the withdrawal), as well as the right to lodge a complaint to a supervisory body. Withdrawal of the consent and willingness to exercise other rights can be reported via e-mail: rodo@spyro-soft.com or by post to the following address: Spyrosoft S.A., Plac Nowy Targ 28, 50-141 Wrocław.

    I acknowledge that personal data is not subject to the automated decision making, including profiling.