About Exequt MENA
Exequt MENA is a rapidly expanding consulting and technology services firm based in Riyadh, Saudi Arabia. We specialize in critical areas including cybersecurity, Identity and Access Management (IAM), cloud solutions, AI-driven platforms, and custom software engineering. Our mission involves partnering with organizations across both public and private sectors to deliver high-impact digital transformation initiatives throughout the Kingdom.
The Opportunity: Splunk Engineer
We are seeking a Splunk Engineer to join our full-time team in Riyadh. This role is central to designing, deploying, and optimizing Splunk environments, focusing on security monitoring, comprehensive log management, SIEM capabilities, and operational intelligence. The position offers a performance-based compensation structure.
Core Responsibilities
- Install, configure, upgrade, and maintain Splunk Enterprise and its various components, including Search Heads, Indexers, Forwarders, and Deployment Servers.
- Manage distributed and clustered Splunk environments, overseeing indexes, sourcetypes, data retention policies, and Role-Based Access Control (RBAC).
- Monitor platform health, performance, and availability, actively troubleshooting any indexing or search-related issues that arise.
- Onboard logs from diverse security and IT sources, managing forwarders, data inputs, and field extractions within Linux/Unix environments.
- Provide support for Splunk Enterprise Security (ES), including the development and management of correlation searches, detections, alerts, notable events, and dashboards.
- Assist Security Operations Center (SOC) teams with specific searches and investigations to support incident response and threat hunting activities.
Required Qualifications and Skills
- A minimum of 0-1 years of experience in Splunk administration or engineering roles.
- Demonstrated hands-on experience with Splunk Enterprise and its core functionalities.
- Familiarity with security monitoring, log management principles, and SIEM concepts.
- Proficiency in managing data inputs and field extractions on Linux/Unix operating systems.
- An understanding of Splunk Enterprise Security (ES) features and capabilities.
Team Collaboration and Environment
The Splunk Engineer will work in close collaboration with various internal and client teams, including Security Operations Center (SOC), cybersecurity, infrastructure, and network teams. This role is suited for individuals committed to securing enterprise environments through effective Splunk implementation and management.
Application Process
We invite qualified candidates who meet the outlined requirements to submit their applications for this full-time position in Riyadh.
عن Exequt MENA
Exequt MENA هي شركة استشارية وخدمات تكنولوجية تتوسع بسرعة مقرها الرياض، المملكة العربية السعودية. نحن متخصصون في مجالات حاسمة تشمل الأمن السيبراني وإدارة الهوية والوصول (IAM) وحلول السحابة والمنصات المدفوعة بالذكاء الاصطناعي وهندسة البرمجيات المخصصة. تتمثل مهمتنا في الشراكة مع المنظمات عبر كل من القطاعات العامة والخاصة لتنفيذ مبادرات التحول الرقمي ذات التأثير العالي في جميع أنحاء المملكة.
الفرصة: مهندس Splunk
نبحث عن مهندس Splunk للانضمام إلى فريقنا بدوام كامل في الرياض. هذا الدور مركزي لتصميم ونشر وتحسين بيئات Splunk، مع التركيز على مراقبة الأمن وإدارة السجلات الشاملة وإمكانات SIEM وذكاء العمليات. يوفر المنصب هيكل رواتب يعتمد على الأداء.
المسؤوليات الأساسية
- تثبيت وتكوين وترقية وصيانة Splunk Enterprise ومكوناته المختلفة، بما في ذلك Search Heads وIndexers وForwarders وDeployment Servers.
- إدارة بيئات Splunk الموزعة والمتعددة العنقود، بما في ذلك فهارس البيانات وأنواع المصادر سياسات الاحتفاظ بالبيانات والتحكم بالوصول القائم على الأدوار (RBAC).
- مراقبة صحة المنصة وأدائها وتوافرها، معالجة أية مشكلات في الفهرسة أو البحث عند ظهورها بنشاط.
- إدخال السجلات من مصادر الأمن وتكنولوجيا المعلومات المتنوعة، إدارة الموظفين المواصلات وإدخالات البيانات والاستخراجات الميدانية ضمن أنظمة Linux/Unix.
- تقديم الدعم لـ Splunk Enterprise Security (ES)، بما في ذلك تطوير وإدارة عمليات البحث الترابطية والكشف والتنبيهات والأحداث الملحوظة ولوحات المعلومات.
- مساعدة فرق مركز عمليات الأمن (SOC) في عمليات بحث وتحقيق محددة لدعم الاستجابة للحوادث وأنشطة صيد التهديدات.
المهارات والمؤهلات المطلوبة
- حد أدنى من 0-1 سنة خبرة في إدارة Splunk أو أدوار الهندسة.
- خبرة عملية موثقة مع Splunk Enterprise ووظائفه الأساسية.
- إلمام بمراقبة الأمن ومبادئ إدارة السجلات ومفاهيم SIEM.
- إتقان في إدارة مدخلات البيانات واستخراجات الحقول على أنظمة Linux/Unix التشغيلية.
- فهم لميزات وإمكانات Splunk Enterprise Security (ES).
التعاون والبيئةTeam
سيعمل مهندس Splunk بتعاون وثيق مع فرق داخلية ومتعاقدة متعددة، بما في ذلك مركز عمليات الأمن (SOC)، والأمن السيبراني، والبنية التحتية، وفرق الشبكات. هذا الدور مناسب للأفراد الملتزمين بتأمين البيئات المؤسسية من خلال تنفيذ وإدارة Splunk بشكل فعال.
عملية التقديم
ندعو المرشحين المؤهلين الذين يستوفون المتطلبات إلى تقديم طلباتهم لهذا المنصب بدوام كامل في الرياض.