Senior MSS Engineer(Splunk)
Job Fit Check
Base Career helps you apply smarter for this job.
Key skills for this role
About the Role
Responsible for deploying and configuring Splunk architecture, onboarding log sources, developing detection queries, and providing platform maintenance and support.
Key Skills for This Role
Full Job Posting
• Configure Indexers, Search Heads, Forwarders
- Implement clustering (Indexer / SH Cluster)
• Configure Universal Forwarders & Heavy Forwarders
- Create data inputs (syslog, API, cloud integrations)
- Index creation and retention policy configuration
- Field extraction, sourcetype validation, and parsing
3️⃣ Detection & Use Case Engineering
- Develop SPL-based detection queries
- Create correlation searches in ES (Enterprise Security)
• Implement Risk-Based Alerting (RBA)
- Fine-tune alerts to reduce false positives
- Conduct use case gap analysis
4️⃣ Log Validation & Troubleshooting
- Validate ingestion pipeline (Forwarder → Indexer → Search Head)
- Troubleshoot parsing, indexing, and timestamp issues
- Monitor ingestion delays and indexing queues
- Optimize search performance
5️⃣ Platform Maintenance
- Monitor license utilization (Daily indexing volume)
- Perform Splunk upgrades and app updates
- Backup configurations and validate restore
- Performance tuning and resource optimization
6️⃣ MSS & SOC Support
- Dashboard creation and SOC visibility enhancements
- Alert lifecycle improvements
- Support threat hunting queries
- Continuous detection improvement aligned with MITRE
Apply for this job in 1 click
Skip the repetitive application forms
Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.
Trusted by over 500,000 job seekers on Base Career
More from this employer
More jobs at CYBER GATE DEFENSE L.L.C.
SOC L3
Abu Dhabi, UAE
Lead security incident investigations, advanced threat hunting, detection engineering, and mentor teams while utilizing Splunk and QRadar expertise.
Digital Forensics and Incident Response (DFIR) Professional
Abu Dhabi, UAE
Responsible for investigating cybersecurity incidents, conducting digital forensic analysis, and developing incident response strategies in a cybersecurity team.
MSSP-Managed Security Service Provider
Abu Dhabi, UAE
Analysts in Managed Security Service Provider must meet SLA requirements, manage SIEM environments, produce incident reports, and support onboarding of log sources.
