In depth experience in development and maintenance of SIEM use cases
Fluent in Splunk’s search processing language (SPL)
Excellent knowledge of Splunk Enterprise and Splunk Enterprise Security
Sound knowledge about Splunk Common Information Model and log normalization using Data Models
Solid understanding of cybersecurity technologies, protocols, and applications
Excellent English communication skills (written and oral)!
Nice to have:
Splunk Core Certified (Advanced) Power User (crucial)
Splunk Certified Developer (nice to have)
Splunk Enterprise Certified Admin (nice to have)
Splunk Enterprise Security Certified Admin (nice to have)
Any other Security Certifications (e.g. CEH, GIAC, CISSP, OSCP …)
Soft Skills:
Strong analytical skills to evaluate sophisticated multivariate problems and find a systematic approach to gain a quick resolution, often under stress
Strong problem solving, documentation, process execution, time management and organizational skills.
Ability to communicate sophisticated information, concepts, or ideas in a confident and well-organized manner through verbal, written, and/or visual means
Fast and independent learner, with ambition to self-improve
At ease in a fast-changing environment, flexible and pragmatic, open-minded
Accurate, acting with attention to details
Client focus and delivery oriented
A team-focused mentality with ability to work & collaborate effectively in a team environment
Good leadership and communication skills, whether on the field, in the team or with management: you are a keen standout colleague and coordinate work among people from different areas or divisions. A good relationship builder with strong diplomacy skills