Splunk
Tata Consultancy Services · Bengaluru, India
FULL TIME
Job Description
<p><strong>Role : Splunk ES </strong> </p><p><strong>Experience : 7 to 10 years </strong> </p><p><strong>Location : chennai, Hyderabad, Bangalore, Mumbai, Indore </strong> </p><p><strong><u>Responsibilities </u> </strong>: </p><ul><li>Manage and administer <strong>Splunk Enterprise Security (ES) </strong>, including Data Models, Correlation Searches, Notable Events, Threat Intelligence Framework, Asset & Identity, and Content Management. </li><li>Design, develop, and tune <strong>security detection use cases </strong> aligned with the <strong>MITRE ATT&CK </strong> framework using SPL and Splunk ES correlation searches. </li><li>Implement and optimize <strong>Risk-Based Alerting (RBA) </strong>, including risk rules, risk modifiers, and detection tuning to reduce false positives and improve alert fidelity. </li><li>Onboard and normalize security data sources using <strong>CIM </strong>, troubleshoot data ingestion/parsing issues, and ensure data quality for security analytics. </li><li>Collaborate with SOC & security teams to enhance detection coverage, validate use cases, and support incident investigations and continuous improvement of the Splunk security platform. </li> </ul>
Details
| Company | Tata Consultancy Services |
| Location | Bengaluru, India |
| Type | FULL TIME |
| Niche | general |
