onsite
Senior Cybersecurity Specialist Splunk Architect - Help AG
Security Engineer
Senior Cybersecurity Specialist (Splunk Architect) leading SIEM design, threat analysis, and incident response across internal and client environments, driving secure operations and continuous improvement of security processes.
About the role
Key Responsibilities
- Design, deploy, and maintain Splunk-based SIEM solutions for internal and client environments.
- Develop and refine security monitoring procedures, dashboards, and alerting rules to detect advanced threats.
- Collaborate with SOC analysts, threat analysts, and solution architects to investigate incidents and orchestrate response actions.
- Lead incident response efforts, conduct root‑cause analysis, and produce post‑mortem reports.
- Provide guidance on security architecture best practices and recommend tooling enhancements.
- Document processes, create knowledge base articles, and train junior engineers on Splunk and security operations.
Requirements
- 5+ years of experience in cybersecurity with a focus on SIEM and incident response.
- Deep expertise in Splunk Enterprise, Splunk Enterprise Security, and Splunk SOAR.
- Strong knowledge of threat intelligence frameworks, attack patterns, and security controls.
- Experience with scripting (Python, PowerShell) for automation and data enrichment.
- Excellent communication skills and ability to work cross‑functionally with engineering and client teams.