At Zensar, we’re “experience-led everything”. We are committed to conceptualizing, designing, engineering, marketing, and managing digital solutions and experiences for over 130 leading enterprises. We are a company driven by a bold purpose: Together, we shape experiences for better futures. Whether for our clients, our people, or the world around us, this belief powers everything we do. At the heart of our culture is ONE with Client - a set of four core values that reflect who we are and how we work: One Zensar, Nurturing, Empowering, and Client Focus. Part of the $4.8 billion RPG Group, we’re a community of 10,000+ innovators across 30+ global locations, including Milpitas, Seattle, Princeton, Cape Town, London, Zurich, Singapore, and Mexico City. We believe the best work happens when individuality is celebrated, growth is encouraged, and well-being is prioritized. We are an equal employment opportunity (EEO) and affirmative action employer, committed to creating an inclusive workplace. All qualified applicants will be considered without regard to race, creed, color, ancestry, religion, sex, national origin, citizenship, age, sexual orientation, gender identity, disability, marital status, family medical leave status, or protected veteran status.
Splunk SME SRF
Location
India
Posted
32 days ago
Salary
0
Seniority
Mid Level
Job Description
Splunk SME SRF
Zensar
Role Description We are seeking an experienced Splunk Subject Matter Expert to lead the design, implementation, and optimization of Splunk solutions across security operations and observability domains. This role serves as the technical authority on Splunk architecture, driving enterprise-wide deployments for security monitoring, threat detection, and comprehensive observability across hybrid and multi-cloud environments. Qualifications - 7–10 years experience with Splunk Enterprise, including 3+ in architect or senior admin roles - Deep expertise in Splunk Enterprise Security and SOC solution design - Strong experience with Splunk Observability Cloud including APM, Infra Monitoring, and RUM - Advanced SPL skills including optimized queries, regex, field extraction, and CIM mapping - Experience with Splunk SOAR automation and orchestration - Strong understanding of MITRE ATT&CK, NIST CSF, and Kill Chain methodologies - Experience with PCI-DSS, HIPAA, GDPR, SOC 2, and ISO 27001 compliance monitoring - Knowledge of threat intelligence platforms, IOC management, and threat hunting - Experience with AWS, Azure, GCP native logging, security monitoring, and cost optimization - Understanding of Docker, Kubernetes, microservices, and cloud-native observability - Knowledge of networking concepts, firewalls, proxies, IDS/IPS, VPNs, zero-trust architecture - Familiarity with CI/CD, Terraform, CloudFormation, and DevOps practices - Proficiency in Python for automation, API integrations, and Splunk app development - Experience with Bash or PowerShell for automation and data collection - Understanding of REST APIs, JSON/XML, and web technologies Requirements - Design and implement Splunk Enterprise Security (ES) deployments including correlation searches, notable event management, risk-based alerting, and threat intelligence framework integration - Develop and optimize security use cases covering MITRE ATT&CK tactics, insider threat detection, anomaly detection, and APT hunting - Build Splunk SOAR playbooks for security orchestration, automated response workflows, and cross-platform integrations - Implement User and Entity Behavior Analytics (UBA) to detect insider threats, compromised credentials, and behavioral anomalies - Architect and deploy Splunk Observability Cloud solutions including Infrastructure Monitoring, APM, RUM, and Log Observer - Implement OpenTelemetry instrumentation for distributed tracing, metrics, and correlation across microservices - Build synthetic monitoring and alerting strategies for proactive detection of performance and availability issues - Integrate diverse data sources across AWS, Azure, GCP, EDR tools, firewalls, IDS/IPS, network devices, applications, and databases - Design API integrations, webhook configurations, and custom scripted inputs for specialized collection needs - Implement Splunk HEC with load balancing, encryption, and token governance - Develop custom TAs and applications to extend Splunk capabilities - Lead technical discovery workshops and design target-state Splunk architectures - Develop architecture diagrams, implementation guides, runbooks, and knowledge transfer materials - Provide mentorship on Splunk administration, SPL optimization, dashboards, and alerts - Manage POCs and pilots demonstrating Splunk’s value across security and observability - Serve as escalation point for complex technical and architectural issues Preferred Qualifications - Splunk Certified Architect or ES Certified Admin - Certifications such as CISSP, GCIA, GCIH, GCFA - Experience with Splunk MLTK for anomaly detection and predictive analytics - Experience with managed Splunk services and 24x7 operations - Knowledge of Datadog, New Relic, or Dynatrace - Experience with OT/IoT security monitoring Professional Attributes - Excellent communication skills and ability to translate technical concepts for business stakeholders - Strong analytical and problem-solving abilities - Ability to manage multiple concurrent client engagements - Independent working style with effective collaboration across distributed teams - Customer-focused mindset with a commitment to quality
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Senior Security Solution Architect
NTT GroupA global IT innovator founded in 1965, NTT DATA specializes in system integration and networking system services for more than a dozen industries. As an employer, NTT DATA offers a
Title: Senior Security Solution Architect (Pre-sales) Location: - Remote, New York, United States of America - Remote, Texas, United States of America Full-time Job Description: Make an impact with NTT DATA Join a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion - it's a place where you can grow, belong and thrive. Your day at NTT DATA The Senior Security Solutions Architect is an advanced subject matter expert responsible for consulting with clients and partnering with internal Technology Solutions teams to define security-focused strategies, transformational designs, and architectural visions for complex, enterprise-scale solutions. This role provides multi-technology and cybersecurity consulting services across application, infrastructure, cloud, data, and security technology domains, ensuring that solutions are designed and delivered in alignment with modern security frameworks, industry best practices, and client risk profiles. Key Responsibilities: - Contributes to the development of complex security-centric solution architectures across business, infrastructure, application, and cloud environments. - Identifies and evaluates alternative security architectures and analyzes trade-offs in risk reduction, cost, performance, and scalability. - Produces specifications for cloud or on‑premises components with an emphasis on security controls, identity and access management, encryption standards, network segmentation, and compliance requirements. - Designs components using modelling techniques that incorporate security‑by‑design principles, Zero Trust concepts, and industry frameworks (e.g., NIST CSF, ISO 27001). - Creates multiple design views for stakeholder concerns, including non‑functional security requirements, and develops security proof‑of‑concepts (POCs). - Supports change programs with technical planning aligned to enterprise security architecture standards and regulatory requirements. - Ensures solutions meet data protection and cybersecurity obligations (GDPR, HIPAA, PCI‑DSS, SOC 2). - Leads understanding of client security requirements, gathers and analyzes threat/risk data, and provides expert remediation guidance. - Advises clients on security modernization, cloud security, secure application design, and emerging cybersecurity practices. - Recommends new security services and contributes to security go‑to‑market offerings. - Provides coaching and mentoring to less experienced architects and engineers. - Design and deliver secure architectures for AI-driven and agentic systems (LLMs, RAG, autonomous agents), addressing emerging risks such as prompt injection, data poisoning, and model/data leakage - Define and implement security controls across the AI lifecycle (data, model, inference, orchestration), embedding governance, identity, and policy into LLMOps/MLOps pipelines - Advise clients on securing human-to-agent and agent-to-agent interactions, applying zero trust principles and ensuring auditability, compliance, and safe autonomous behavior in production environments Knowledge and Attributes - Advanced knowledge of security architecture, IAM, PAM, endpoint protection, cloud security, network security, and threat modelling. - Strong understanding of multi‑vendor security technologies and security operations tooling (SIEM, SOAR, vulnerability management). - Excellent communication skills with the ability to present complex security concepts clearly. - Ability to design and leverage security reference architectures and stay current on evolving threats. - Strong collaboration skills with sales, product, delivery, engineering, and security operations teams. - Advanced analytical and risk‑assessment skills. Academic Qualifications and Certifications (Focused on Cisco, Palo Alto, Fortinet, Check Point) - Bachelor's degree in computer science, engineering, cybersecurity, or related field (or equivalent experience). - Strongly preferred certifications: Cisco: (CCNP Security, CCIE Security, CyberOps) and/or Palo Alto Networks: (PCNSA, PCNSE) and/or Fortinet: (NSE4-NSE7 (especially NSE5-NSE7)) and /or Check Point: (CCSA, CCSE, CCSM) - Additional cybersecurity certifications beneficial but secondary to vendor expertise - SAFe Scaled Agile certification advantageous - Familiarity with frameworks such as TOGAF or SABSA beneficial. Required Experience (Vendor‑Focused) - Advanced hands‑on experience designing, implementing, integrating, and troubleshooting solutions from: Cisco (Firepower, ASA, ISE, Umbrella, SecureX, VPN solutions), Palo Alto Networks (NGFW, Panorama, GlobalProtect, Prisma Access/Cloud), Fortinet (FortiGate, FortiManager, FortiAnalyzer, FortiAuthenticator, SD‑WAN), Check Point (Quantum Security Gateway, Management Server, CloudGuard, Infinity) - Experience with secure network design, segmentation, threat prevention, IPS/IDS, URL filtering, and advanced malware protection. - Experience integrating logging, monitoring, and SIEM/SOAR systems. - Experience with secure remote access, VPN architecture, and Zero Trust design. - Experience integrating solutions into hybrid/multi‑cloud environments (AWS, Azure, GCP). - Experience in client‑facing security consulting, including requirements gathering and risk analysis. - Experience working in Agile or DevSecOps environments preferred. - Demonstrated ability to develop and deliver security‑focused technical solutions for enterprise clients. Workplace type: Remote Working About NTT DATA NTT DATA is a $30+ billion business and technology services leader, serving 75% of the Fortune Global 100. We are committed to accelerating client success and positively impacting society through responsible innovation. We are one of the world's leading AI and digital infrastructure providers, with unmatched capabilities in enterprise-scale AI, cloud, security, connectivity, data centers and application services. Our consulting and industry solutions help organizations and society move confidently and sustainably into the digital future. As a Global Top Employer, we have experts in more than 50 countries. We also offer clients access to a robust ecosystem of innovation centers as well as established and start-up partners. NTT DATA is part of NTT Group, which invests over $3 billion each year in R&D. Equal Opportunity Employer NTT DATA is proud to be an Equal Opportunity Employer with a global culture that embraces diversity. We are committed to providing an environment free of unfair discrimination and harassment. We do not discriminate based on age, race, colour, gender, sexual orientation, religion, nationality, disability, pregnancy, marital status, veteran status, or any other protected category. Join our growing global team and accelerate your career with us. Apply today. Third parties fraudulently posing as NTT DATA recruiters NTT DATA recruiters will never ask job seekers or candidates for payment or banking information during the recruitment process, for any reason. Please remain vigilant of third parties who may attempt to impersonate NTT DATA recruiters-whether in writing or by phone-in order to deceptively obtain personal data or money from you. All email communications from an NTT DATA recruiter will come from an @nttdata.com email address. If you suspect any fraudulent activity, please contact us.
Intern, Blue Team – Wazuh
It4us Cyber SecurityGarantindo a Cyber Segurança de nossos amigos e clientes !
• Support monitoring of security events in the Wazuh environment; • Assist with initial alert analysis; • Support log review and interpretation; • Assist with triage of potential incidents; • Assist in documenting incidents and maintaining technical records; • Support the team with general SOC routines.
Role Description In qualità di azienda di riferimento del gruppo Fastweb in ambito Cyber Security, siamo alla ricerca di un/una Security Sales Specialist da inserire all'interno nella nostra divisione Large Private. La risorsa ideale possiede una solida base tecnica in quanto avrà ruolo di supporto ai Key Account Manager nella promozione di soluzioni e servizi di Cyber Security all'avanguardia, con l'obbiettivo di tradurre le esigenze dei clienti in soluzioni efficaci e personalizzate. La risorsa si occuperà delle seguenti attività: - Supporto ai Key Account Manager nell’analisi delle esigenze, identificazione delle soluzioni, determinazione dei costi di progetto e servizi, presentazione dell’offering ai Clienti; - Proposizione dell’offerta di servizi e prodotti con attività di cross e up-selling; - Produzione e gestione di offerte, in affiancamento al team Presales e in partnership con i vendor di settore; - Sviluppo di pipeline, qualificazione di opportunità e forecasting; - Ricerca di nuove soluzioni tecnologiche a complemento dell’offerta aziendale. Qualifications - Esperienza pregressa di almeno 4 anni nel medesimo ruolo o come presales in ambito Security; - Esperienza nel disegno di infrastrutture complesse; - Esperienza nella redazione di documentazione d’offerta; - Esperienza nella collaborazione con Vendor Partner (Palo Alto Networks, Fortinet, SentinelOne, Trend Micro, Crowdstrike, Microsoft etc.); - Conoscenza di un CRM (Nice to have: Sales Force); - Buona conoscenza della lingua inglese. Requirements - Ottime capacità relazionali; - Approccio orientato al risultato; - Capacità di lavorare per obiettivi; - Serietà; - Puntualità; - Autonomia. Benefits - Un package retributivo commisurato all'effettiva seniority, CCNL Commercio 14 mensilità; - Asset necessari all’espletamento dell’attività lavorativa; - Lavoro in modalità full remote; - Ticket restaurant da 8,00 €/day; - Piano di Welfare aziendale che include molteplici flexible benefits; - Opportunità di collaborare con un team di esperti nel settore; - Inserimento in ambiente dinamico in un settore innovativo ed in costante crescita.
Security Industry Specialist II
AmazonAmazon is the largest online retailer in the world. The Fortune 500 company offers traditional and e-books, household items, apparel, electronics, movies, music
Role Description - Partner and work directly with other AWS Physical Security Teams, AWS Management, and customers to aid in the real-world application of physical security to existing and new data facilities. - Review new technology and security measures for possible application to the existing suite of security processes and measures to enhance the security posture of our data facilities. - Execution of evaluations of all data facilities within AMER. Ensure all vulnerabilities identified as part of this evaluation process are documented and that effective mitigation actions are taken to resolve the security vulnerability. - Partner directly with AWS Security customers to review security related documentation and help them understand the implementation of all physical security standards and policies to their real-world environment. - Develop and review new technology and security measures for possible application to the existing suite of security processes and measures to enhance the security posture of our data facilities. - Assist the global SPEAR Team determine the strategic direction of the AWS Physical Security Program based on customer interaction and demonstrative outputs. - Keep the AWS Security leadership team fully informed of stakeholder and customer engagement status, issues, and activities. - Remain connected with industry trends and events. Develop and maintain connections with key industry personnel and manufacturers. - Travel approximately 50% of time to conduct on-site facility evaluations and security assessments. - 100% telecommuting permitted, work may be performed from anywhere in the U.S. Qualifications - Bachelor's degree or foreign equivalent degree in Security Management, Criminal Justice, Engineering, or related technical field. - Five years of experience in the job offered or a related occupation. - 5 years working with Physical Security Principles and/or Access Control/Intrusion Detection and CCTV Surveillance systems. - 5 years in conducting reviews of existing facilities and applying Physical Security Principles to practical applications experienced at the site. - 5 years in analysis of new edge Physical Security Technology and devices. - 3 years of Crime Prevention Through Environmental Design (CPTED) experience. - Demonstrated knowledge of physical security best practices including application of physical security systems, investigation techniques, management of contract security guards, and incident management. - Proven track record of leading and managing geographically dispersed team members. - Understanding of cloud computing services. Requirements - The pay range for this position in Seattle, WA is $128128 - $178400 (yr); however, base pay offered may vary depending on job-related knowledge, skills, and experience. - A sign-on bonus and restricted stock units may be provided as part of the compensation package, in addition to a full range of medical, financial, and/or other benefits, dependent on the position offered. Benefits - Full range of medical, financial, and/or other benefits, dependent on the position offered.


