Job Closed

This listing is no longer active.

Threat Detection Engineer - Splunk Developer

Location

Poland + 4 moreAll locations: Poland | France | Belgium | Netherlands | United Kingdom

Posted

62 days ago

Salary

0

Seniority

Senior

Job Description

Threat Detection Engineer - Splunk Developer

Euroclear

Title: Threat Detection Engineer - Splunk Developer Locations: Poland France Belgium Netherlands United Kingdom Work Type: Hybrid Job ID: 8692 Job Description: Division: Chief Information Security Office (CISO) As a global critical financial infrastructure, the protection of Euroclear information and assets is fundamental to the company's business. Information Security is at the core of our services, firmly embedded in the management systems and processes of the company. You will be joining our Chief Information Security Office in charge of putting in place the required controls to adequately and effectively protect our information assets. Your role In your role as Threat Detection & Response Engineering Splunk Developer, you are responsible for the development and maintenance of correlation searches and dashboards on the SIEM (Splunk ES) platform. You will report to the Manager of Detection & Response Engineering and will work jointly with threat intelligence, design, engineering and response teams, to gather and define requirements, specify clear priorities, evaluate technical trade-offs, and build and maintain threat detection capabilities. The Detection & Response Engineering team is comprised of: - Detection/Security Engineers - who implement and maintain threat detections. - SOAR Engineers - who develop responses such as playbooks, automations etc. Your responsibilities & duties - Collaborate with key stakeholders (Threat Intelligence, SOC, engineering teams) to gather requirements and translate threat scenarios into actionable detection use cases. - Design, develop, tune, and continuously improve Splunk ES correlation searches aligned with MITRE ATT&CK techniques and Euroclear threat models. - Validate detections through structured testing, evidence collection, and adversary simulation tooling, refining logic based on test results and behavioral accuracy. - Perform false‑positive analysis, baseline creation, and high‑fidelity tuning to maintain actionable and reliable detection signals. - Maintain clear, structured documentation for detection logic, testing procedures, ATT&CK mapping, and operational deployment guidelines. - Conduct coverage gap assessments, maintain the detection inventory, and contribute to ATT&CK‑based coverage reporting and maturity tracking. - Perform peer reviews of detection content to ensure quality, consistency, and adherence to detection engineering standards. - Implement and optimize Splunk ES features such as correlation search patterns, notable events, and risk‑based alerting (RBA). - Work closely with the log onboarding team to ensure high‑quality telemetry, correct field extractions, CIM compliance, and accurate Data Model mapping. - Identify and implement improvements to detection workflows, telemetry quality, and the overall detection engineering lifecycle. Your qualifications required - Proven expertise across the full SIEM detection engineering lifecycle, including hypothesis‑driven detection design, structured testing, validation, false‑positive reduction, operational deployment, and continuous refinement. - In‑depth knowledge of key security telemetry sources, including Windows Event Logs, Sysmon, Linux audit logs, firewall and proxy logs, cloud security logs, and EDR telemetry. - Advanced SPL proficiency with deep understanding of the Splunk Common Information Model (CIM), Data Models, and performance optimization (search acceleration, summary indexing, Data Model acceleration). - Experience applying the MITRE ATT&CK framework for behavior‑based detection design, threat mapping, and coverage analysis. - Hands‑on experience with data onboarding quality assurance, including field extraction verification, CIM compliance testing, sample‑based validation, and ensuring schema correctness across log sources. - Ability to work with deeply nested JSON telemetry and complex field structures. - Strong foundational understanding of network, endpoint, and cloud security concepts relevant to detection engineering. Will be considered an asset - Splunk certifications such as, Splunk Core Certified Power User, Splunk Certified Developer, Splunk Enterprise Certified Admin, Splunk Enterprise Security Certified Admin - Any other Security Certifications (GIAC GCDA (Detection & Analysis), GIAC GMON (Monitoring & SIEM), Threat hunting-oriented certifications) - Familiarity with Git‑based version control and CI/CD pipelines supporting detection‑as‑code workflows. - Experience with adversary simulation and automated detection validation tools (e.g., Atomic Red Team, Splunk Attack Range, MITRE CALDERA, AttackIQ). - Exposure to purple teaming, threat hunting, or attack path analysis. Soft Skills - Excellent English communication skills (written and oral), with the ability to clearly articulate complex technical concepts to both technical and non‑technical audiences. - Strong analytical and critical‑thinking abilities, capable of breaking down complex problems and identifying systematic, high‑quality solutions under time pressure. - Structured problem‑solving approach applied to troubleshooting, validation, and continuous improvement of detection logic. - Collaborative and open‑minded mindset, able to work effectively with SOC, Threat Intelligence, engineering, and platform teams. - High level of autonomy, with the ability to manage priorities and deliver well‑engineered detections within agreed timelines. - Fast and independent learner with a strong drive for self‑improvement and staying current with evolving threats and detection techniques. - Strong attention to detail, ensuring accuracy in detection logic, documentation, and validation activities. - Solid documentation and workflow discipline, supporting consistent, repeatable, and high‑quality detection engineering processes. - Adaptable and pragmatic, comfortable working in fast‑changing environments and handling ambiguity in telemetry or threat scenarios. ABOUT US Why Join Us Embark on your new adventure at Euroclear, and work at the heart of the global capital markets. We connect over 2,000 financial institutions across the globe. As an open and resilient infrastructure, we contribute to the stability of the financial markets. We help clients cut through complexity, lower costs, and mitigate risks of financial transactions. At Euroclear, we have a clear ambition to use our key role to facilitate and accelerate a sustainable global financial system. What We Offer - Work closely with inspiring, supportive, and engaged colleagues from more than 80 different countries - Practice your talents in a highly professional international environment - Join a learning and development environment with an emphasis on knowledge sharing and training - Competitive salary and comprehensive benefits About the team The Cyber Defence Centre provides continuous identification, monitoring and response to threats to the Euroclear infrastructure, applications and data. It is designed as the last line of defence for the organisation, in the event that actors; both internal and external have penetrated our preventative cyber controls with malicious intent.

Related Job Pages

More Software Engineer Jobs

Information Technology Programmer Analyst P11

State of Michigan

Located in the American Midwest, the State of Michigan is home to more than 10 million residents. Part of the Great Lakes region, Michigan has over 11,000 inlan

Title: Information Technology Programmer Analyst P11 Location: Dimondale United States Salary: $24.32 - $44.63 Hourly Job Type: Permanent Full Time Job Number: 0801-26-24-23SE Department: Technology, Management and Budget Job Description: This position analyzes, develops, tests, configures, implements and maintains a variety of hardware platforms, network server operating systems, backup-recovery, storage infrastructure and enterprise services such as E-mail, directory services and enterprise monitoring of these services for the clients of the Department of Technology, Management & Budget and State of Michigan end-users. For additional information, please see the links below: - Position Details - The Department of Technology, Management and Budget supports the business operations of state agencies through a variety of services, including building management and maintenance, information technology, centralized contracting and procurement, budget and financial management, space planning and leasing, construction management, motor vehicle fleet operations, and oversight of the state retirement systems. Position Location/Remote Office: The office location is Dimondale, MI. The State of Michigan is not able to offer employment to out of-state applicants that do not plan to relocate. The Department of Technology Management and Budget currently offers a hybrid work option which requires two days working on-site at the official work location and three days of remote work per week. The State of Michigan offers a competitive work experience that includes a tuition reduction program at several key higher education institutes if you would like to advance your education, good benefits, excellent vacation, and sick time policies, and an ability to successfully juggle your work and family life. We would like the opportunity to share with you more about the benefits of working for the state and joining the State of Michigan employee family if you are interested. Please consider sending in your application today. SIGNING BONUS: This position may be eligible for a sign-on bonus up to $2,500. Up to $1,250 to be paid upon new hire and the remainder to be paid after satisfactory completion of the initial probationary period (12-month period). This does not apply to current state employees. Education Information Technology Programmer/Analyst P11 Possession of a Bachelor's degree with 21 semester (32 term) credits in one or a combination of the following: computer science, data processing, computer information systems, data communications, networking, systems analysis, computer programming, information assurance, IT project management or mathematics. Experience No specific type or amount is required.Information Technology Programmer/Analyst P11 Possession of an associate's degree with 16 semester (24 term) credits in computer science, information assurance, data processing, computer information, data communications, networking, systems analysis, computer programming, IT project management, or mathematics and two years of experience as an application programmer, computer operator, or information technology technician; or two years (4,160 hours) of experience as an Information Technology Student Assistant may be substituted for the education requirement. OR Educational level typically acquired through completion of high school and four years of experience as an application programmer, computer operator, information technology technician, or four years (8,320 hours) of experience as an Information Technology Student Assistant may be substituted for the education requirement. To be considered for this position you must: - Attach a detailed resume and cover letter. - If applicable, attach a copy of your official college transcripts and/or foreign degree evaluation with your application.Click herefortheState ofMichigan (SOM) definition ofanOfficial College Transcript.Applicants who possess foreign degrees must have their academic credentials evaluated or converted into U.S.educational equivalents.Civil Service accepts evaluations from organizations listed on the National Association of Credential Evaluation Servicesorthe Association of International Credential Evaluators, Inc. Certain positions may require certification in specific information technology programs. All newly hired state employees are required to submit and pass a pre-employment drug test and physical (if applicable) prior to their actual appointment. Criminal and driving records will also be checked if applicable. Any position offer will be conditional until results of the drug test, physical, criminal background, and driving records indicate eligibility for employment. DTMB Human Resources uses E-Verify in conjunction with the federal I-9 form to verify authorization of employment. DTMB does not provide sponsorship for employemnet visa status. To be appointed by DTMB, an applicant must be currently authorized to work in the United States for any employer. DTMB does not participate in STEM-OPT. The department reserves the right to close this posting prior to its original end date once a sufficient number of applications have been received. Your application for any position does not guarantee that you will be contacted by the Department for further consideration. Only those applicants interviewed will be notified of the results.

Michigan
$24 - $44 / hour
Job Closed
Boomi logo

Senior Software Engineer

Boomi

Boomi provides an intelligent, flexible, and scalable software platform to unite digital ecosystems and accelerate business outcomes for users. A high-growth, fast-paced technology

Full TimeHybridTeam 2,200Since 2000

Title: Senior Software Engineer Location: India, Bangalore Hybrid Job Description: About Boomi and What Makes Us Special Are you ready to work at a fast-growing company where you can make a difference? Boomi aims to make the world a better place by connecting everyone to everything, anywhere. Our award-winning, intelligent integration and automation platform helps organizations power the future of business. At Boomi, you'll work with world-class people and industry-leading technology. We hire trailblazers with an entrepreneurial spirit who can solve challenging problems, make a real impact, and want to be part of building something big. If this sounds like a good fit for you, check out boomi.com or visit our Boomi Careers page to learn more. Location - Bangalore (Hybrid) Join us as a Senior Site Reliability Engineer. The Software Engineering team delivers next-generation application enhancements and new products for a changing world. Working at the cutting edge, we design and develop software for platforms, peripherals, applications and diagnostics - all with the most advanced technologies, tools, software engineering methodologies and the collaboration of internal and external partners. What you will do As a Senior Site Reliability Engineer, you will be responsible for developing sophisticated systems and software based on the customer's business goals, needs and general business environment. You will work with product management, other engineering teams, customer success and support on developing cutting edge new product features and enhancements across various areas of Boomi offerings. You will: - Be an active member of an Agile team, collaboratively realizing features through the software development lifecycle. - Design, build and maintain infrastructure as code that enables provisioning and maintenance of Boomi's infrastructure. - Participate actively in detecting, remediating and reporting on Production incidents, ensuring the SLAs/SLOs are defined and met. - Participate in an on-call rotation to ensure coverage for planned/unplanned events. - Engage with other Engineering organizations to implement processes, identify improvements, and drive consistent results. - Working with your SRE and other engineering counterparts for building more scalable, resilient and reliable systems. - Collaborate with Engineering organizations to build and automate tooling. - Implement best practices on Observability and build monitoring that alerts on symptoms rather than on outages. - Improve operational processes (such as deployments and upgrades) to make them as simple as possible. - Plan the growth of Boomi's infrastructure. - Work independently with a minimal level of guidance from technical leadership. - Mentor other Boomi engineers, including design collaboration and code reviews. What you'll need to succeed in this role - Passionate about SRE, DevOps, Automation and infrastructure platforms. - Expert in developing Ansible playbooks and automation for Infrastructure as code using CloudFormation templates. - A grasp of Cloud Native concepts, containerization best practices and security awareness in Cloud will be a strong plus. - Expert in defining, measuring, and improving Reliability Metrics. - Strong understanding in implementing observability practices (Monitoring, Logging, Distributed Tracing etc.) preferably using Splunk and New Relic. - Strong understanding and working experience with AWS/Azure. - Ability to design and implement API's for use by internal teams. - Strong understanding of CI/CD workflows. - Experience with agile collaboration tools, such as JIRA and Confluence. - Experience with Web Services technologies including REST, SOAP, and WSDL. Additional experience desired - 7+ years experience in the software engineering industry, with experience supporting large scale SaaS and Cloud based software solutions in production. - Certified in Cloud (AWS/Azure/GCP), experience in using services such as virtual machines, containers and databases. - Experience in Ansible, Terraform, Python and JavaScript. - Familiarity using AWS technologies such as CloudFormation, S3, ECS, EKS, and EC2. - Security awareness in the Cloud will be a strong plus. - Experience in Observability, creating dashboards for SLA/SLI/SLO. - Basic understanding of Application Integration and/or Data Integration (ETL). #LI-NR1 Be Bold. Be You. Be Boomi. We take pride in our culture and core values and are committed to being a place where everyone can be their true, authentic self. Our team members are our most valuable resources, and we look for and encourage diversity in backgrounds, thoughts, life experiences, knowledge, and capabilities. All employment decisions are based on business needs, job requirements, and individual qualifications. Create a Job Alert Interested in building your career at Boomi ? Get future opportunities sent straight to your email.

India
Booz Allen Hamilton logo

Software Engineer

Booz Allen Hamilton

Booz Allen Hamilton is an award-winning provider of strategic innovation, management consulting, technology, and engineering services. Founded in 1914, the comp

Develop complete software solutions by utilizing front-end and back-end languages, collaborating with team members to address complex challenges, and implementing system improvements in a fast-paced environment.

Virginia
L.L.Bean logo

Senior Programmer Analyst

L.L.Bean

For more than a century, L.L.Bean has specialized in high-quality apparel, accessories, outdoor equipment, home goods, and outdoorsman advice. Founded as a one-

Full TimeRemoteTeam 1,001-5,000

Title: Sr Programmer Analyst Location: Freeport United States Full time Job Description: At L.L.Bean, we believe the outdoors brings out the best in all of us. We are committed to fostering a culture of belonging and creating safe, inclusive spaces where everyone feels welcome-both here and Outside. We value individual differences and are dedicated to maintaining an inclusive work environment where everyone can bring the best of their experience and talents and truly thrive. L.L.Bean is currently searching for a Senior Programmer Analyst to join our Information Services (IS) team. We welcome the opportunity for this role to be hybrid based at the corporate headquarters in Freeport, Maine, or to be based remotely in the following states: Colorado, Connecticut, Florida, Georgia, Illinois, Indiana, Kansas, Maine, Maryland, Massachusetts, Michigan, Minnesota, New Hampshire, New Jersey, New York, North Carolina, South Carolina, Ohio, Pennsylvania, Rhode Island, Vermont, Virginia, Wisconsin. Position Purpose: Implements moderate to complex computer application solutions to meet business problems within industry standard business process and best. Designs, develops, configures, tests, debugs and documents applications based on technical configurations and specifications. Supports and troubleshoots existing applications. Evaluates and analyzes business requirements for new applications and application changes. Responsibilities: - Emphasis on design. Higher-level analytical skills in taking business requirements and creating solutions. - Works independently and collaboratively with team; provides regular updates to leader. - Prepares high level designs - Prepares detailed specifications from which software packages are configured, integrations are made and/or programs are written. - Implements technical solutions by either configuring software packages or code development. - Designs and creates solutions taking performance into consideration. - Work with business area customers and vendors to identify business requirements, test strategies, and test execution. - Develops integration requirements and partners with the integration developer to implement. - Responsible for the development and execution of testing and implementation plans. Can perform unit, system, integration and user acceptance testing. Document results. - Applies formal methodologies when designing and developing or configuring solutions. - Participates in project planning and development or assumes responsibility for a project of limited scope including guidance of others. - Provides options for and estimates of possible solutions. - May be responsible for the completion of a phase of a project or small projects depending on complexity. - Estimates and tracks time required to complete work, for project budgeting and financial tracking. - Stays current on Industry trends and Software roadmaps. - Regularly provides guidance and training to less experienced team members. - Conducts and participates in reviews of solution designs, configurations and code. - Partners with technical and business team members to maintain system documentation, knowledge base and frequently asked questions. - May act as primary liaison to software vendors for managing vendor problem tickets. - Partners with the business on effective end user adoption and use of system / function. - May review training strategy, materials and Standard Operating Procedures. - Partners with technical partners to ensure Service Levels are met. - Responsible for 24x7 research and resolution of production system problems. - Provides technical expertise for project and baseline support teams - On call - provides daytime and after hours on call support. - Adheres to security standards in support of PCI compliance. - Adheres to development standards and provides development standards recommendations. Health and Safety Requirement: Every employee is responsible for contributing to a safe and healthy workplace. Employees are expected to be active participants in health and safety by following all safety policies and procedures, reporting unsafe conditions or at-risk behaviors to leadership, and conducting work in a safe manner. Those in a leadership role are also expected to model safe behaviors, evaluate risk, and ensure that risks are reduced to acceptable levels. Education Level: 4-Year Bachelors Degree Years of Experience: 5+ Skills and Qualifications: Communication - Develops respect and credibility within their team, IS and the business - Can Influence at multiple levels. - Can effectively communicate with all levels of the business and IT from end-users and developers to managers. - Highly collaborative. Effectively works with business and IS staff in the adoption, utilization and support of software. - Excellent English language skills and comprehension Strategic - Sees the big picture, and how this role impacts the broader IS department and business. Understands the Company's and Business Unit's goals and objectives. - System Integration Skills: Installation, deployment, customization and integration. - Familiar and/or experienced in Java, JavaScript, MQ Series, SQL, Webservices, relational databases, Caching solutions, API, Oracle, SQL Server, Eclipse, Mongo, GCP, Splunk - Source Code Control and Issue tracking - Experienced with Testing at all levels (unit, integration, system, performance), Testing tools (including automated Testing) and Debugging Tools - Familiar with Systems Development Life Cycles and Methodologies - Familiar with Agile Methodology. Additional Information on Qualifications: Minimum Qualifications: - BS Degree in Computer Science - English Level: B2+ per BELT score. - 5+ years of experience in the programming field - Effective communication with all levels of the business and IT from end-users and developers to managers. - Technical Requirements: - Java - API - SQL - Webservices - Relational databases Preferred Qualifications - Experience with Agile Teams. - Team Player. - Self-driven. - Great Teamwork and Collaboration - Technical Requirements: - GCP - Mongo - Splunk - Javascript. Innovation - Continually looks within and beyond their job, anticipating business needs and opportunities. Flexibility - Works within tight technical and business constraints. Knowledge/Technology - Systems Analysis and Design, Program Analysis and Design, Problem solving skills, and Development skills. - Familiar with a "suite" of COTS software packages If you care about the outdoors, joining L.L.Bean is a great way to feel good about what you do. Our benefits package makes a good thing even better, with programs and perks designed to support your health and financial goals. Plus, maintaining a healthy work-life balance and re-charging outside are all part of the plan. If your experience looks a little different from what we've identified and you think you'd be great at this role, we'd love to learn more about you! At L.L.Bean, we believe the outdoors brings out the best in all of us. We strive to reflect this every day in our commitments to employees and partners and in our efforts to promote belonging.

Maine + 22 moreAll locations: Maine | Colorado | Connecticut | Florida | Georgia | Illinois | Indiana | Kansas | Maryland | Massachusetts | Michigan | Minnesota | New Hampshire | New Jersey | New York | North Carolina | South Carolina | Ohio | Pennsylvania | Rhode Island | Vermont | Virginia | Wisconsin
Job Closed