In-associate_siem_digital Integration_advisory_kolkata

PwC

Kolkata, India
Splunk enterprise/cloud/es experience
Cribl stream and edge pipeline management
Advanced spl scripting skills
This role involves hands-on engineering of security data pipelines using Splunk and Cribl to optimize detection and response capabilities

Job Summary

  • This role involves hands-on engineering of security data pipelines using Splunk and Cribl to optimize detection and response capabilities.
  • Candidates will collaborate with SOC analysts and threat hunters to refine use cases, reduce false positives, and improve signal quality.
  • The position offers a vibrant community environment focused on trust, innovation, and creating distinctive outcomes for clients.

Matching Summary

This role involves hands-on engineering of security data pipelines using Splunk and Cribl to optimize detection and response capabilities.

Skills & Requirements

Must-have

  • Splunk Enterprise/Cloud/ES experience
  • Cribl Stream and Edge pipeline management
  • Advanced SPL scripting skills
  • Log source onboarding and normalization
  • Linux fundamentals and Git usage

Nice-to-have

  • Risk-Based Alerting implementation
  • Threat hunting and purple team exercises
  • Cloud logging (AWS, Azure, GCP)
  • SOAR playbooks and automation
  • OpenTelemetry and observability crossover

Key Requirements

  • 2-3 years of SIEM operations experience
  • Bachelor of Engineering or MBA degree
  • Splunk Core Certified Power User certification
  • Knowledge of MITRE ATT&CK framework

Work Rights

Not specified

Tailored Resume

Cover Letter