📢 New: get today's jobs on our WhatsApp Channel
Jobiglo

No results.

Senior Splunk SIEM Engineer – Managed Services Consultant

FNRCO · Djeddah

Senior 🇬🇧 English
Splunk Enterprise Splunk Enterprise Security Splunk UBA SIEM correlation rules dashboards reports parsing rules threat feeds IoC Sigma rules backup and recovery change management

Job description

About the role

We are looking for a Senior Splunk SIEM Engineer to join our Managed Services team. You will be responsible for the end‑to‑end administration of Splunk Enterprise and Splunk UBA environments, ensuring reliable security monitoring for our clients.

Key responsibilities

  • Administer Splunk Enterprise: deployment, user management, license handling, upgrades, patching, log source onboarding, configuration, change and report management, backup and recovery.
  • Develop security use cases using Splunk Enterprise Security, creating correlation rules, dashboards, alerts, reports and query templates.
  • Manage support tickets related to the SIEM platform and troubleshoot log source issues.
  • Periodically review and optimise existing Splunk configurations and propose enhancements.
  • Support regulator audits by providing evidence from the SIEM solution.
  • Develop parsing rules for non‑standard logs and configure threat feeds, IoCs and Sigma rules.
  • Administer Splunk UBA: ingest CIM‑compliant data, raw events and HR data, monitor health via the UBA Monitoring App, and perform backups/failovers.

Required profile

  • Minimum 5 years of experience in Splunk Enterprise and SIEM administration.
  • Proven ability to design and implement security use cases and custom correlation rules.
  • Experience supporting audits and working with regulatory requirements.
  • Strong troubleshooting skills for log source and data ingestion issues.

Required skills

  • Splunk Enterprise
  • Splunk Enterprise Security (ES)
  • Splunk User Behavior Analytics (UBA)
  • SIEM administration and configuration
  • Correlation rule development
  • Dashboard and report creation
  • Log source onboarding and parsing rule creation
  • Threat feed / IoC / Sigma rule configuration
  • Backup, recovery and change management processes

Questions fréquentes

Le salaire n'est pas communiqué publiquement par le recruteur. Vous pouvez postuler et négocier directement avec FNRCO.
Cliquez sur "Postuler maintenant" en haut de la page. Vous pouvez importer votre CV en 1 clic — Jobiglo extrait automatiquement vos informations et postule pour vous.

Why are you reporting this job?

Thank you for your report. We will review this job.

Explore further

Salaries, guides and searches in Saudi Arabia.

Apply in 30 seconds

Enter your email to apply. An account will be created automatically.

Apply now →

By continuing, you accept our terms of use.

Already have an account? Login

A question about this job?

Ask it here: you will get the full job summary by e-mail, right away.

💬 Chat with us on Telegram

Published 1 month ago

Expires 4 weeks from now

22 views · 0 interested

Boost your chances

Upload your CV — we will match you with relevant openings.

Analyzing your CV...

FNRCO

Djeddah