Back

Senior Splunk Engineer

Ayala Avenue, Makati, Philippines | Full-timeApply Now

A bit about the role

We are seeking a highly skilled and experienced Splunk Engineer with a strong background in Security. The successful candidate will be responsible for designing, implementing, and managing our Splunk infrastructure in a hybrid cloud large scale environment.

Your key tasks

  • Design, implement, and manage the Splunk infrastructure.
  • Deploy and manage Splunk indexer clusters and search head clusters.
  • Performing optimization of existing clustered Splunk deployments.
  • Monitor operations of Splunk platform to enable proactive issue identification, response, and resolution.
  • Integrate Splunk with a wide variety of legacy data sources, industry leading commercial security tools and Cloud Service provider facilities.
    • Build Splunk Technology Add-ons.
    • Build custom script in the following languages (Python, Bash, PowerShell, VBscripts).
    • Build Splunk apps to be deployed on thousands of Splunk Universal Forwarders.
    • Interact with REST API endpoints.
    • Interact with RBDMS in SQL.
  • Effectively and efficiently onboard data sources, create indexes and data model, create CIM compliant data mapping, establish health monitoring and KPIs.
  • Manage Splunk knowledge objects (Apps, Dashboards, Saved Searches, Scheduled Searches, Alerts. etc.)
  • Manage Splunk Role Based Access Control.
  • Onboard Threat Intelligence feeds and correlate with data.
  • Assist Security Analysts providing them consultancy to leverage the Splunk environment.
  • Drive the operational model transformation of SecOps.
  • Identify technology gaps, security gaps, develop solutions and make recommendations for continuous improvement.
  • Develop and maintain documentation for Splunk infrastructure and processes.
  • Work closely with IT, security, and operations teams to understand their requirements and provide Splunk solutions
  • Provide training and support to end-users on how to use Splunk effectively.

A bit about you

  • At least 5 years of general work experience as Splunk Engineer or higher.
  • Experience in designing and implementing Security Operation Center with Splunk.
  • Strong understanding of all Splunk architecture components to include search head clustering, indexer clustering, deployment server and monitoring console.
  • Strong understanding of SPL.
  • Strong understanding of regular expressions and data pipelines.
  • Knowledge of security operations, application development, and hands on Cloud Platforms like – AWS, Azure and OCI
  • Knowledge of Security components (Firewall, WAF, Vulnerability scanners, etc.).
  • Strong Linux administration (preferably RHEL) and Windows system administration skills.
  • Knowledge of Virtual Machines, Kubernetes and containerized architectures.
  • Understanding of network protocols/services and network infrastructures.
  • Understanding of security principles and best practices.
  • Ability to troubleshoot, diagnose and solve issues independently.
  • Capacity planning and optimization for Splunk infrastructure.
  • Excellent verbal and written communication skills.
  • Experience as part of a team supporting and maintaining an infrastructure.
  • Calm and logical approach during a critical event.
  • Strong documentation and training skills
  • Ability to work independently and as part of a team.
  • Experience with other log management and SIEM tools.

It would be a real bonus if you have:

  • Splunk Enterprise Admin certification or above.
  • Experience with scripting and automation using languages such as Python, PowerShell, or Bash and application automated deployment and version control software e.g. (Git, Terraform) is a plus.

Additional information

We realize that managing work life balance is a challenge we all face in our daily lives and in order to support with this we are pleased to offer hybrid and flexible working for most of our Avaloqers to maintain work life balance and still continue our fantastic Avaloq culture in our global offices.

In Avaloq we are proud to embrace diversity and understand the success of our business is built on the power of different opinions, we are whole heartedly committed to fostering an equal opportunity environment and inclusive culture where you can be your true authentic self.

We hire, compensate and promote regardless of origin, age, gender identity, sexual orientation or any other fantastic traits that make us all unique, we have done our best to write this advert in an inclusive and neutral way.

Please be aware that we will not accept speculative CV submissions for any of our roles from recruitment agencies, and any unsolicited candidate submissions will be exempt from any payment expectations.

#LI-Hybrid

Benefits

Annual bonus

At Avaloq we work hard to remain an industry leading provider and we love to reward our colleagues with a share of that success with an annual bonus, you will even remain eligible for annual bonus while you do the hardest job of your life – taking care of your children during parental leave.

Flexible working

We understand that fitting your life around your job can be challenging which is why in most roles we offer flexible working to allow you to thrive both in and out of work.

Instant recognition

We love to see people thriving in their roles and we have an instant recognition scheme at Avaloq to help managers reward the great work our colleagues deliver with a gift to say thanks.

Access to Udemy for professional and personal learning

We think it is important to learn and grow professionally, but if you are someone who likes to learn outside of work we give you access to online learning for both professional and personal learning, with over 210,000 courses to choose from.

A bit about us

Founded and headquartered in Switzerland, Avaloq is continuously expanding its global footprint with around 2,500 colleagues in 12 countries, and more than 160 clients in 35 countries. We are an industry-leading provider of wealth management technology and services for financial institutions around the world, including private banks and wealth managers, investment managers, as well as retail and neo banks. Our research led approach and continual innovation is powered by the passion and creativity of our colleagues.
We are always looking for talented people to join us on our mission to orchestrate the financial ecosystem and democratize access to wealth management. Avaloq offers the opportunity to work closely with some of the world’s leading financial institutions as we jointly develop and shape careers. Championing a collaborative, supportive and flexible work environment empowers our colleagues to reach their full potential.

Ready to take your career to the next level?

Apply Now