10 Oct
|
Pathway Search
|
Sydney
10 Oct
Pathway Search
Sydney
Senior Splunk Detection Engineer | 12 Month Contract
Pathway Search – Sydney Western Suburbs NSW
A major infrastructure organisation in Western Sydney is seeking a Senior Splunk Detection Engineer for a 12 month contract. You will lead an uplift of its Splunk security monitoring and detection capability across enterprise, cloud and operational technology (OT) environments.
Essential technical skills
- Splunk Enterprise administration, including data onboarding, indexing and search optimisation
- Advanced Search Processing Language (SPL) for searches, dashboards, reports and security detections
- Hands‑on ES configuration, tuning and operational support
- Creating, tuning and maintaining correlation searches that find real threats while minimising false positives
- Implementing and managing Risk‑Based Alerting (RBA) methodologies
- ES content management across detection rules, notable event management, security use cases and content lifecycle
A major infrastructure organisation in Western Sydney is seeking a Senior Splunk Detection Engineer for a 12 month contract. You will lead an uplift of its Splunk security monitoring and detection capability across enterprise, cloud and operational technology (OT) environments.
Essential technical skills
- Splunk Enterprise administration, including data onboarding, indexing and search optimisation
- Advanced Search Processing Language (SPL) for searches, dashboards, reports and security detections
Splunk Enterprise Security
- Hands‑on ES configuration, tuning and operational support
- Creating, tuning and maintaining correlation searches that find real threats while minimising false positives
- Implementing and managing Risk‑Based Alerting (RBA) methodologies
- ES content management across detection rules, notable event management, security use cases and content lifecycle
Data and normalisation
- Robust Common Information Model (CIM) mapping to support data normalisation and effective security content
- Designing, maintaining and optimising Splunk data models, including data model acceleration
Detection and threat analysis
- Threat hunting using threat intelligence, behavioural analytics and hypothesis‑driven methods
- Threat modelling to identify threats, attack paths, vulnerabilities and mitigations
- Practical use of MITRE ATT&CK; for threat mapping, adversary behaviour analysis, detection development and control validation
Network and OT security
- Network security fundamentals: TCP/IP, firewall technologies, network segmentation, intrusion detection and traffic analysis
- Experience with SCADA environments and supporting technologies
- Understanding of Industrial Control System (ICS) security principles, threats, vulnerabilities and protective controls
- Knowledge of OT monitoring technologies, processes and use cases for detecting malicious or anomalous activity
#J-18808-Ljbffr
📌 Senior Splunk Detection Engineer | 12 Month Contract (Sydney)
🏢 Pathway Search
📍 Sydney