Splunk
Tata Consultancy Services · Bangalore g.p.o., India
FULL TIMEpermanent
Job Description
Role : Splunk ES
Experience : 7 to 10 years
Location : chennai, Hyderabad, Bangalore, Mumbai, Indore
Responsibilities:
Manage and administer Splunk Enterprise Security (ES), including Data Models, Correlation Searches, Notable Events, Threat Intelligence Framework, Asset & Identity, and Content Management. Design, develop, and tune security detection use cases aligned with the MITRE ATT& CK framework using SPL and Splunk ES correlation searches. Implement and optimize Risk-Based Alerting (RBA), including risk rules, risk modifiers, and detection tuning to reduce false positives and improve alert fidelity. Onboard and normalize security data sources using CIM, troubleshoot data ingestion/parsing issues, and ensure data quality for security analytics. Collaborate with SOC & security teams to enhance detection coverage, validate use cases, and support incident investigations and continuous improvement of the Splunk security platform.Details
| Company | Tata Consultancy Services |
| Location | Bangalore g.p.o., India |
| Type | FULL TIME |
| Niche | general |
| Experience | permanent |
