The Splunk Architect position involves leading purple-team campaigns using ATT&CK-aligned threat scenarios relevant to Enterprise Core service components. The role requires developing custom scripts to support automation for data pipeline health and status, data ingest, and monitoring services. The architect will identify techniques used by advanced threat actors, collaborate with the SOC team to implement countermeasures, and provide expert guidance in incident response and malware analysis. Additionally, the architect will own the end-to-end SIEM strategy and Splunk platform roadmap, develop training materials for the SOC team, and maintain knowledge of the latest malware threats and industry trends. The position also includes serving as Tier-3 escalation for major incidents and designing, deploying, and maintaining Splunk Enterprise/Cloud architectures.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Industry
Professional, Scientific, and Technical Services
Education Level
Bachelor's degree
Number of Employees
101-250 employees