Upload Button Icon Add office photos
Engaged Employer

i

This company page is being actively managed by Ernst & Young Team. If you also belong to the team, you can get access from here

Ernst & Young Verified Tick

Compare button icon Compare button icon Compare
filter salaries All Filters

2057 Ernst & Young Jobs

TC-CS-Cyber Detection and Response-Splunk engineer-Senior

5-7 years

₹ 11.5 - 18L/yr (AmbitionBox estimate)

tooltip
This is an estimate of the average salary range for this position. It has not been reviewed by the company, and the actual salary may differ.

Bangalore / Bengaluru

1 vacancy

TC-CS-Cyber Detection and Response-Splunk engineer-Senior

Ernst & Young

posted 2d ago

Job Description

Senior - CTM - Threat Detection & Response
We are seeking a highly skilled and experienced Senior Splunk Implementation Specialist to lead and oversee the deployment, administration, and use case development of Splunk Enterprise Security (ES) applications. The ideal candidate will have a deep understanding of Splunks capabilities and a strong background in cybersecurity. This role requires an individual with extensive experience in implementing and managing Splunk ES, as well as developing and maintaining security use cases to enhance client s security posture.
KEY Capabilities
  • Experience in working with Splunk Enterprise, Splunk Enterprise Security & Splunk UEBA
  • Lead the planning, design, and implementation of Splunk Enterprise Security (ES) across the organization.
  • Develop and manage the Splunk implementation project plan, including timelines, milestones, and resource allocation.
  • Coordinate with cross-functional teams, including IT, security, and compliance, to ensure seamless integration of Splunk with existing systems and processes.
  • Oversee the configuration and customization of Splunk ES to meet the organizations specific security requirements.
  • Develop, implement, and maintain security use cases, correlation searches, and dashboards within Splunk ES.
  • Provide expert guidance and support to the security operations team in the use of Splunk ES for threat hunting and incident investigation.
  • Ensure compliance with industry standards and regulatory requirements related to security monitoring and incident response.
  • Develop and maintain documentation for Splunk configurations, processes, and procedures.
  • Good knowledge in programming or Scripting languages such as Python (preferred), JavaScript (preferred), Bash, PowerShell, Bash, etc.
  • Experience in onboarding data into Splunk from various sources including unsupported (in-house built) by creating custom parsers.
  • Expertise in SIEM content development which includes developing process for automated security event monitoring and alerting along with corresponding event response plans for systems.
    • Experience in creating use cases under Cyber kill chain and MITRE attack framework.
    • Experience in installation, configuration and usage of premium Splunk Apps and Add-ons such as ES App, UEBA, ITSI etc
    • Sound knowledge in configuration of Alerts and Reports.
    • Good exposure in automatic lookup, data models and creating complex SPL queries.
    • Create, modify, and tune the SIEM rules to adjust the specifications of alerts and incidents to meet client requirement.
    • Work with the client SPOC to for correlation rule tuning (as per use case management life cycle), incident classification and prioritization recommendations.
    • Experience in creating custom commands, custom alert action, adaptive response actions etc.
Qualification & experience
  • Minimum of 5 to 7 years experience with a depth of network architecture knowledge that will translate over to deploying and integrating a complicated security intelligence solution into global enterprise environments.
  • Proven experience in implementing and managing Splunk Enterprise Security (ES) applications.
  • Strong understanding of cybersecurity principles, threat detection, and incident response.
  • Extensive experience in developing and maintaining security use cases, correlation searches, and dashboards within Splunk ES.
  • Excellent project management skills, with a track record of successfully leading complex security projects.
  • Strong leadership and team management skills, with the ability to mentor and develop team members.
  • Excellent communication and interpersonal skills, with the ability to collaborate effectively with stakeholders at all levels.
  • Relevant certifications such as CISSP, CISM, Splunk Certified Admin, Splunk Certified Architect, or similar are highly desirable. Certifications in a core security related discipline will be an added advantage.
Desired Skills
  • Familiarity with scripting and automation tools (e.g., Python, PowerShell) for security operations and incident response.
  • Knowledge of regulatory and compliance frameworks (e.g., GDPR, HIPAA, NIST).
  • Experience in conducting security assessments and audits.
  • Ability to develop and implement security policies, procedures, and best practices.
  • Strong analytical and problem-solving skills.







Employment Type: Full Time, Permanent

Read full job description

Prepare for Splunk Engineer roles with real interview advice

Top Ernst & Young Splunk Engineer Interview Questions

Q1. 1. What is Virtual DOM? How does it work & Its algorithm? 2. React component life cycle in detail? 3. Higher-order components? 4. Basic ... read more
Q2. Covid Vaccination Distribution Problem As the Government ramps up vaccination drives to combat the second wave of Covid-19, you are tasked ... read more
Q3. Risk management experience and audit work experience?
View all 655 questions

What people at Ernst & Young are saying

Splunk Engineer salary at Ernst & Young

reported by 4 employees with 3-7 years exp.
₹6 L/yr - ₹18 L/yr
41% more than the average Splunk Engineer Salary in India
View more details

What Ernst & Young employees are saying about work life

based on 10.9k employees
73%
90%
53%
92%
Flexible timing
Monday to Friday
No travel
Day Shift
View more insights

Ernst & Young Benefits

Work From Home
Soft Skill Training
Health Insurance
Job Training
Team Outings
Cafeteria +6 more
View more benefits

Compare Ernst & Young with

Deloitte

3.8
Compare

PwC

3.4
Compare

EY Global Delivery Services ( EY GDS)

3.6
Compare

Accenture

3.8
Compare

Cognizant

3.7
Compare

TCS

3.7
Compare

Amazon

4.1
Compare

Wipro

3.7
Compare

Capgemini

3.7
Compare

IBM

4.0
Compare

Google

4.4
Compare

Microsoft Corporation

4.0
Compare

Infosys

3.6
Compare

KPMG India

3.5
Compare

Bain & Company

3.8
Compare

McKinsey & Company

3.8
Compare

BCG

3.7
Compare

ZS

3.3
Compare

Mercer

3.7
Compare

Willis Towers Watson

3.8
Compare

Similar Jobs for you

Senio at Ernst Young

Chennai

5-7 Yrs

₹ 7-9 LPA

Operations at Ernst Young

Bangalore / Bengaluru

3-7 Yrs

₹ 10-15 LPA

Senio at Ernst Young

Bangalore / Bengaluru

3-7 Yrs

₹ 5-9 LPA

Senio at Ernst Young

Hyderabad / Secunderabad

5-7 Yrs

₹ 7-9 LPA

Senior Security Engineer at Postman

Bangalore / Bengaluru

5-7 Yrs

₹ 7-9 LPA

Risk Analyst at Ernst Young

Bangalore / Bengaluru

5-8 Yrs

₹ 7-10 LPA

Cyber Architect at Ernst Young

Bangalore / Bengaluru

4-7 Yrs

₹ 6-9 LPA

Cyber Architect at Ernst Young

Bangalore / Bengaluru

4-8 Yrs

₹ 6-10 LPA

Senio at Ernst Young

Bangalore / Bengaluru

5-7 Yrs

₹ 7-9 LPA

Cyber Architect at Ernst Young

Noida

4-8 Yrs

₹ 6-10 LPA

Ernst & Young Bangalore / Bengaluru Office Locations

View all
Bangalore Office
Ernst & Young, 3rd Floor, Tower C, RMZ Infinity Municipal No. 3, Survey No 1477/2 & 10, Old Madras Road, Benniganahalli, K.R. Puram Bangalore
Karnataka 560016
Bengaluru Office
Ernst & Young Tower C, 3rd Floor, RMZ Infinity Municipal No. 3, Old Madras Road Survey No 1477/2 & 10 Benniganahalli, K.R. Puram 560016 Bengaluru Ernst & Young UB City, Canberra Block 12th & 13th Floor No. 24, Vittal Mallya Road Bengaluru Bengaluru
560001

TC-CS-Cyber Detection and Response-Splunk engineer-Senior

5-7 Yrs

Bangalore / Bengaluru

2d ago·via naukri.com

Analyst Credit and Collections - AR

3-8 Yrs

Hyderabad / Secunderabad

7hr ago·via naukri.com

Senior- Internal controls & SOX

1-6 Yrs

Kolkata, Bangalore / Bengaluru, Delhi/Ncr

7hr ago·via naukri.com

Conflict Management Senior

3-6 Yrs

Noida, Gurgaon / Gurugram, Delhi/Ncr

12hr ago·via naukri.com

TechOps - DE-CloudOps - CLOUD Computing - DotNET

1-3 Yrs

Pune

1d ago·via naukri.com

Associate

0-2 Yrs

Bangalore / Bengaluru

1d ago·via naukri.com

Project Coordinator-Associate

0-4 Yrs

Kochi

1d ago·via naukri.com

GMS-Threat Analyst-SecOps-Staff

0-6 Yrs

Bangalore / Bengaluru

1d ago·via naukri.com
write
Share an Interview