Senior SOC Engineer – SIEM (Splunk)
CPX · Abu Dhabi
Job description
About the role
The Senior SOC Engineer will lead the management of Splunk SIEM and UEBA services within the Security Operations Center. The role focuses on onboarding new log sources, optimizing telemetry, performing system updates, and ensuring high‑performance SIEM operations aligned with business requirements.
Key responsibilities
- Manage and operate Splunk SIEM services in a SOC environment.
- Design and implement scalable Splunk‑based SIEM solutions following best practices.
- Define data ingestion strategies, parsing logic, and correlation rules.
- Onboard new log sources and ensure proper integration.
- Monitor, troubleshoot, and resolve issues with critical log sources.
- Optimize telemetry for improved data collection and reporting.
- Collaborate with SOC and threat‑intelligence teams to develop detection use cases.
- Create dashboards, alerts, and reports for proactive threat monitoring.
- Perform system updates, version upgrades, and feature rollouts.
- Maintain CIM compliance, field extractions, and data normalization.
- Evaluate and deploy Splunk apps and add‑ons as needed.
- Document SIEM workflows, configurations, and operational procedures.
Required profile
- Profound knowledge and hands‑on experience with Splunk SIEM, UEBA and related technologies such as CRIBL.
- Strong understanding of SOC workflows, MITRE ATT&CK framework and threat detection methodologies.
- Ability to correlate data across multiple sources to identify patterns and anomalies.
- Solid cloud and network technology expertise for efficient log source onboarding.
- Proven technical capabilities in a fast‑paced SOC environment.
- Excellent problem‑solving skills and ability to make decisions under pressure.
- Effective collaboration and communication skills with internal teams and customers.
Required skills
- Splunk SIEM and UEBA (Splunk Certified Administrator).
- SPL (Search Processing Language) for complex queries, dashboards and reports.
- Scripting: Python, Bash, PowerShell.
- Cloud platforms: AWS, Google Cloud, Azure (relevant certifications preferred).
- Security certifications: CISSP, GIAC (preferred).
- Experience with CRIBL and Splunk apps/add‑ons.
Questions fréquentes
Why are you reporting this job?
Explore further
Salaries, guides and searches in the United Arab Emirates.
Salaries by job title
Apply in 30 seconds
Enter your email to apply. An account will be created automatically.
By continuing, you accept our terms of use.
Already have an account? Login
A question about this job?
Ask it here: you will get the full job summary by e-mail, right away.
Published 9 hours ago
Expires 1 week from now
7 views · 0 interested
Boost your chances
Upload your CV — we will match you with relevant openings.
Analyzing your CV...
CPX
Abu Dhabi
Related job offers
-
Data Scientist – Multimodal AI & Computer Vision
Space42 Abu Dhabi -
Cyber Security Compliance Specialist (UAE National)
Michael Page Abu Dhabi -
Director of Solution Engineering
Inception42 Abu Dhabi -
IT Executive – Full-time (Dubai)
Be You Clinics Dubai -
Cyber Security Compliance Specialist (UAE National)
Michael Page International (UAE) Limited