Senior - Cyber Transformation - Splunk

Reposted One Month Ago
Be an Early Applicant
Mumbai, Maharashtra, IND
In-Office
Senior level
Fintech • Professional Services • Software • Financial Services
The Role
Monitor and analyze security events using Splunk; perform incident triage, investigation, escalation and response; conduct log analysis across endpoints, servers, network and cloud; develop and tune Splunk searches, dashboards, alerts and correlation rules; participate in threat hunting; support the incident response lifecycle; document findings and collaborate with IT and security teams. Work in a 24/7 shift environment.
Summary Generated by Built In
Job Description

KPMG entities in India are professional services firm(s). These Indian member firms are affiliated with KPMG International Limited. KPMG was established in India in August 1993. Our professionals leverage the global network of firms, and are conversant with local laws, regulations, markets and competition. KPMG has offices across India in Ahmedabad, Bengaluru, Chandigarh, Chennai, Gurugram, Jaipur, Hyderabad, Jaipur, Kochi, Kolkata, Mumbai, Noida, Pune, Vadodara and Vijayawada. 

KPMG entities in India offer services to national and international clients in India across sectors. We strive to provide rapid, performance-based, industry-focused and technology-enabled services, which reflect a shared knowledge of global and local industries and our experience of the Indian business environment.

Responsibilities

Role Summary

We are seeking a dedicated SOC Analyst with 5+ years of experience and hands-on expertise in Splunk for security monitoring and incident response. The role involves real-time analysis of security events, incident investigation, and proactive threat detection to safeguard the organization’s IT environment.

  • Monitor and analyze security alerts and events using SOC(Splunk).

  • Perform incident triage, investigation, and escalation in line with SOC procedures.

  • Respond to security incidents such as phishing attacks, malware infections, unauthorized access, and suspicious activities.

  • Conduct log analysis across multiple systems including endpoints, servers, network devices, and cloud environments.

  • Develop and fine-tune Splunk searches, dashboards, alerts, and correlation rules.

  • Participate in threat hunting activities to proactively identify hidden threats.

  • Support the incident response lifecycle (Detection, Analysis, Containment, Eradication, Recovery).

  • Document incidents, findings, and remediation actions in detail.

  • Collaborate with internal teams (IT, Network, Security Engineering) for issue resolution.

  • Stay updated with the latest cybersecurity threats, vulnerabilities, and attack techniques.

  • Strong attention to detail and analytical mindset

  • Ability to work in a 24/7 shift environment (is required)

  • Good communication and documentation skills

  • Ability to handle high-pressure situations and prioritize tasks

  • Hands-on experience with Splunk (log analysis, dashboards, alerting, SPL queries).

  • Strong understanding of SOC operations and SIEM tools.

  • Knowledge of incident response processes and procedures.

  • Familiarity with: Network protocols (TCP/IP, DNS, HTTP/HTTPS), Firewalls, IDS/IPS, endpoint security tools

  • Basic understanding of cybersecurity frameworks and best practices.

  • Ability to analyze large volumes of logs and identify anomalies.

  • Strong analytical and problem-solving skills.

  • Experience with threat hunting techniques.

  • Knowledge of MITRE ATT&CK framework.

  • Exposure to EDR/XDR tools (e.g., Microsoft Defender, CrowdStrike).

  • Basic scripting knowledge (Python / PowerShell) is a plus.

  • Familiarity with SOAR tools and automation.

Qualifications
  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or related field.

  • Minimum 4 years of experience in SOC / Security Operations.

Certifications (Preferred)

  • CompTIA Security+

  • Splunk Certifications (Core Certified User / Power User)

  • Any other cybersecurity certification is an advantage

Equal employment opportunity information:

KPMG India has a policy of providing equal opportunity for all applicants and employees regardless of their color, caste, religion, age, sex/gender, national origin, citizenship, sexual orientation, gender identity or expression, disability or other legally protected status. KPMG India values diversity and we request you to submit the details below to support us in our endeavor for diversity. Providing the below information is voluntary and refusal to submit such information will not be prejudicial to you.

Skills Required

  • 5+ years experience in SOC / Security Operations
  • Hands-on experience with Splunk (log analysis, dashboards, alerting, SPL queries)
  • Strong understanding of SOC operations and SIEM tools
  • Knowledge of incident response processes and procedures
  • Experience with threat hunting techniques
  • Familiarity with network protocols (TCP/IP, DNS, HTTP/HTTPS), firewalls, IDS/IPS and endpoint security tools
  • Knowledge of MITRE ATT&CK framework
  • Ability to work in a 24/7 shift environment
  • Bachelor's degree in Cybersecurity, IT, Computer Science, or related field
  • Exposure to EDR/XDR tools (Microsoft Defender, CrowdStrike)
  • Basic scripting knowledge (Python / PowerShell)
  • Familiarity with SOAR tools and automation
  • CompTIA Security+ or Splunk certifications (Core Certified User/Power User)
  • Good communication and documentation skills
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: New York, NY
30,867 Employees

What We Do

KPMG entities in India are established under the laws of India and are owned and managed (as the case may be) by established Indian professionals. Established in September 1993, the KPMG entities have rapidly built a significant competitive presence in the country. Today we operate from offices across 14 cities including in Ahmedabad, Bengaluru, Chandigarh, Chennai, Gurugram, Hyderabad, Jaipur, Kochi, Kolkata, Mumbai, Noida, Pune, Vadodara and Vijayawada. KPMG entities have a domestic client base of over 2700 companies. Our global approach to service delivery helps provide value-added services to clients. Our differentiation is derived from a rapid performance-based, industry-tailored and technology-enabled business advisory services delivered by some of the leading talented professionals in the country. KPMG professionals are grouped by industry focus and our clients are able to deal with industry professionals who speak their language. Our internal information technology and knowledge management systems enable the delivery of informed and timely business advice to clients.

Similar Jobs

ServiceNow Logo ServiceNow

Client Director

Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
Hybrid
Mumbai, Maharashtra, IND
29000 Employees

Mastercard Logo Mastercard

Software Engineer

Blockchain • Fintech • Payments • Consulting • Cryptocurrency • Cybersecurity • Quantum Computing
Hybrid
Navi Mumbai, Thane, Maharashtra, IND
38800 Employees

Mastercard Logo Mastercard

Manager, Product Management

Blockchain • Fintech • Payments • Consulting • Cryptocurrency • Cybersecurity • Quantum Computing
Hybrid
Pune, Maharashtra, IND
38800 Employees

Mastercard Logo Mastercard

Lead Software Engineer

Blockchain • Fintech • Payments • Consulting • Cryptocurrency • Cybersecurity • Quantum Computing
Hybrid
Pune, Maharashtra, IND
38800 Employees

Similar Companies Hiring

Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees
Revel Thumbnail
Aerospace • Hardware • Robotics • Software
Marina Del Rey, California
60 Employees
Blee Thumbnail
Artificial Intelligence • Marketing Tech • Software
New York, New York
30 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account