We are looking for a Splunk developer with Arcsight expertise. Location: Al Khobar, Saudi Arabia Experience: 5+ years Developing Application Security and Platform Security Dashboards. Work with onsite and offshore Splunk developers to deliver Splunk dashboards, reports and alerts Configuration in Splunk. Creating Reports and scheduling it and knowledge on constructing Splunk friendly regex expressions and optimising Splunk search queries. Arcsight development Custom Field Extraction Using Regular Expressions at Search Time and Index Time. Filter and route events using Splunk forwarder. Configuration (indexes.conf, props.conf, transforms.conf, output.conf, inputs.conf, servers.conf). Installation and setup Splunk DB Connect App (Identifier, connecter) in Heavy Forwarder. Troubleshoot Splunk server and agent problems and issues. Configured the Deployment server with server class for various applications along with its repository folders. Creating Security applications data inputs into Splunk using Splunk integration methods FTP, DB Connect, UF and Http Event Collector. Created schedule alerts and ran using cron expressions with specific time ranges. Preparing Inventory, Assessment and Splunk AIG Documents. Installation HIDS and DAM agents in Production Environment. Involved in handling various Incident and Change request related to the application. Involved in installing and using Splunk app for windows and UNIX. Communicates directly application owners to collect required application data points (Login/Logout, Audit/History, ID Management, Profile Management). Developing Application Security and Platform Security Dashboards. Work with onsite and offshore Splunk developers to deliver Splunk dashboards, reports and alerts Configuration in Splunk. Creating Reports and scheduling it and knowledge on constructing Splunk friendly regex expressions and optimising Splunk search queries. Arcsight development Custom Field Extraction Using Regular Expressions at Search Time and Index Time. Filter and route events using Splunk forwarder. Configuration (indexes.conf, props.conf, transforms.conf, output.conf, inputs.conf, servers.conf). Installation and setup Splunk DB Connect App (Identifier, connecter) in Heavy Forwarder. Troubleshoot Splunk server and agent problems and issues. Configured the Deployment server with server class for various applications along with its repository folders. Creating Security applications data inputs into Splunk using Splunk integration methods FTP, DB Connect, UF and Http Event Collector. Created schedule alerts and ran using cron expressions with specific time ranges. Preparing Inventory, Assessment and Splunk AIG Documents. Installation HIDS and DAM agents in Production Environment. Involved in handling various Incident and Change request related to the application. Involved in installing and using Splunk app for windows and UNIX. Communicates directly application owners to collect required application data points (Login/Logout, Audit/History, ID Management, Profile Management).