Splunk SIEM Engineer (RE)

Posted 3 Days Ago
Be an Early Applicant
Riyadh, SAU
In-Office
Mid level
Information Technology • Cybersecurity
The Role
Provide hands-on Splunk administration and SIEM engineering: ingesting/parsing logs, optimizing performance, building detections/alerts/dashboards, performing root-cause analysis, maintaining documentation and runbooks, and supporting operationalization and maturity improvements.
Summary Generated by Built In
Company Description

Innovative Solutions (IS) is a leading Cybersecurity company established in 2003, with its headquarters in Riyadh and additional offices in Al Khobar, Jeddah, Dubai, and Abu Dhabi. We specialize in delivering Comprehensive Cybersecurity Solutions and Services encompassing Advisory Services, Technical Assurance, Solution Deployment, Professional Services, and Managed Security Services.

Our mission is "Delivering secure and intelligent digital services that empower organizations"

Role Overview

We are seeking a Splunk SIEM Engineer to provide hands-on support, administration, optimization, and continuous enhancement of the Splunk environment. The role is responsible for ensuring the reliability, performance, and effectiveness of Splunk services while supporting security monitoring and operational use cases.

Responsibilities

• Perform indexing and data ingestion activities, including ingesting, parsing, and indexing log sources to ensure accurate, consistent, and searchable data.

• Identify and resolve ingestion-related issues such as parsing errors, timestamp extraction problems, event breaking, line breaking, and truncation.

• Monitor Splunk system performance and optimize queries, dashboards, index configurations, and data retention policies to meet defined SLAs.

• Review existing Splunk architecture and indexing capacity, and provide recommendations to improve scalability, reliability, and cost efficiency.

• Design, configure, and maintain alerts, correlation searches, dashboards, and reports based on operational and user requirements.

• Diagnose system issues and failures, conduct root-cause analysis, implement remediation actions, and perform follow-up verification.

• Ensure the Splunk environment follows security best practices and applicable compliance requirements, including access controls and auditing.

• Maintain up-to-date technical documentation, runbooks, and user guides.

• Deliver knowledge-transfer sessions to operations and engineering teams.

• Maintain a comprehensive inventory of Splunk content, including dashboards, saved searches, alerts, correlation searches, lookup tables, macros, knowledge objects, and use cases.

• Classify Splunk content by owner, business function, usage frequency, and last modified date.

• Provide end-to-end SIEM capabilities, including detection, alerting, and response for security threats and operational risks.

• Develop and maintain detection logic, required data sources, alert severity and thresholds, dashboards, runbooks/playbooks, and SLA-aligned acceptance criteria.

• Review connected data sources to assess data quality and completeness, and report findings with onboarding readiness recommendations.

• Provide a Splunk maturity roadmap aligned with the organization's current maturity level.

• Assess log quality for high-volume sources and recommend source optimization to maximize value and reduce cost.

• Review existing Splunk content and recommend consolidation, optimization, or creation of new use cases.

• Provide hands-on operational support and assist in removing technical or operational blockers.

• Develop standardized workflows and guidance for building, validating, and operationalizing new Splunk use cases.


Requirements
  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
  • 3–5 years of relevant experience in Splunk administration, engineering, or SIEM operations.
  • Strong understanding of Splunk architecture and data flow concepts.
  • Solid knowledge of security operations and SIEM principles.
  • Ability to analyze system performance and identify optimization opportunities.
  • Strong analytical and problem-solving skills for diagnosing system and data issues.
  • Good understanding of security best practices and compliance concepts.
  • Ability to work with technical documentation and structured operational processes.
  • Strong communication skills for coordination with technical and operational teams.
  • Familiarity with AI tools and technologies.

Benefits

Skills Required

  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or related field
  • 3-5 years of relevant experience in Splunk administration, engineering, or SIEM operations
  • Strong understanding of Splunk architecture and data flow concepts
  • Solid knowledge of security operations and SIEM principles
  • Ability to analyze system performance and identify optimization opportunities
  • Strong analytical and problem-solving skills for diagnosing system and data issues
  • Good understanding of security best practices and compliance concepts
  • Ability to work with technical documentation and structured operational processes
  • Strong communication skills for coordination with technical and operational teams
  • Familiarity with AI tools and technologies
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Riyadh
132 Employees
Year Founded: 2003

What We Do

Innovative Solutions (IS) is a leading pure-player Cybersecurity company in the GCC established in 2003 having headquartered in Riyadh with presence in Al Khobar, Jeddah, Dubai, and Abu Dhabi. We are the trusted advisor in providing world-class tailored and purposeful Cybersecurity Services and Solutions that exceed our clients’ expectations across multiple sectors enabling them to protect their organizations and make the best use of the cyberspace. Our Cybersecurity Solutions and Services encompasses Advisory Services, Technical Assurance, Solution Deployment, Professional Services and Managed Security Services. We have influenced and contributed to the development of the Cybersecurity industry in the GCC to be reckoned as a major regional player enabled through our competent and committed team, which is our prime strength. Innovative Solutions is committed to its Mission to “Bring Trust to Cyberspace” to ensure “Your Business is Secured”

Similar Jobs

Datadog Logo Datadog

Account Executive

Artificial Intelligence • Cloud • Security • Software • Cybersecurity
Easy Apply
Hybrid
Riyadh, SAU
6500 Employees
100K-1M Annually

Datadog Logo Datadog

Regional Director - Enterprise Sales (Saudi Arabia)

Artificial Intelligence • Cloud • Security • Software • Cybersecurity
Easy Apply
Hybrid
Riyadh, SAU
6500 Employees

ServiceNow Logo ServiceNow

Architect

Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
Remote or Hybrid
Riyadh, SAU
29000 Employees

CrowdStrike Logo CrowdStrike

Regional Sales Manager

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Remote or Hybrid
Saudi Arabia
10000 Employees

Similar Companies Hiring

Scrunch  Thumbnail
Artificial Intelligence • Information Technology • Marketing Tech • Software • SEO
Salt Lake City, Utah
Standard Template Labs Thumbnail
Artificial Intelligence • Information Technology • Software
New York, NY
25 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account