I

Splunk SIEM Engineer (RE)

icon briefcase Job Type : Full Time

Number of Applicants

 : 

000+

Click to reveal the number of candidates who applied for this job.
icon loader
Apply Now
icon loader Apply Now

Let AI Supercharge Your Job Hunt!

JobCopilot scans 500,000+ company career sites daily to find jobs for you

Never miss an opportunity Save hours by auto-filling applications forms Land more interviews with tailored applications
happy man
thunder iconActivate JobCopilot

Job Description - Splunk SIEM Engineer (RE)

Description

Company Description

Innovative Solutions (IS) is a leading Cybersecurity company established in 2003, with its headquarters in Riyadh and additional offices in Al Khobar, Jeddah, Dubai, and Abu Dhabi. We specialize in delivering Comprehensive Cybersecurity Solutions and Services encompassing Advisory Services, Technical Assurance, Solution Deployment, Professional Services, and Managed Security Services.

Our mission is "Delivering secure and intelligent digital services that empower organizations"

Role Overview

We are seeking a Splunk SIEM Engineer to provide hands-on support, administration, optimization, and continuous enhancement of the Splunk environment. The role is responsible for ensuring the reliability, performance, and effectiveness of Splunk services while supporting security monitoring and operational use cases.

Responsibilities

• Perform indexing and data ingestion activities, including ingesting, parsing, and indexing log sources to ensure accurate, consistent, and searchable data.

• Identify and resolve ingestion-related issues such as parsing errors, timestamp extraction problems, event breaking, line breaking, and truncation.

• Monitor Splunk system performance and optimize queries, dashboards, index configurations, and data retention policies to meet defined SLAs.

• Review existing Splunk architecture and indexing capacity, and provide recommendations to improve scalability, reliability, and cost efficiency.

• Design, configure, and maintain alerts, correlation searches, dashboards, and reports based on operational and user requirements.

• Diagnose system issues and failures, conduct root-cause analysis, implement remediation actions, and perform follow-up verification.

• Ensure the Splunk environment follows security best practices and applicable compliance requirements, including access controls and auditing.

• Maintain up-to-date technical documentation, runbooks, and user guides.

• Deliver knowledge-transfer sessions to operations and engineering teams.

• Maintain a comprehensive inventory of Splunk content, including dashboards, saved searches, alerts, correlation searches, lookup tables, macros, knowledge objects, and use cases.

• Classify Splunk content by owner, business function, usage frequency, and last modified date.

• Provide end-to-end SIEM capabilities, including detection, alerting, and response for security threats and operational risks.

• Develop and maintain detection logic, required data sources, alert severity and thresholds, dashboards, runbooks/playbooks, and SLA-aligned acceptance criteria.

• Review connected data sources to assess data quality and completeness, and report findings with onboarding readiness recommendations.

• Provide a Splunk maturity roadmap aligned with the organization's current maturity level.

• Assess log quality for high-volume sources and recommend source optimization to maximize value and reduce cost.

• Review existing Splunk content and recommend consolidation, optimization, or creation of new use cases.

• Provide hands-on operational support and assist in removing technical or operational blockers.

• Develop standardized workflows and guidance for building, validating, and operationalizing new Splunk use cases.



Requirements
  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
  • 3–5 years of relevant experience in Splunk administration, engineering, or SIEM operations.
  • Strong understanding of Splunk architecture and data flow concepts.
  • Solid knowledge of security operations and SIEM principles.
  • Ability to analyze system performance and identify optimization opportunities.
  • Strong analytical and problem-solving skills for diagnosing system and data issues.
  • Good understanding of security best practices and compliance concepts.
  • Ability to work with technical documentation and structured operational processes.
  • Strong communication skills for coordination with technical and operational teams.
  • Familiarity with AI tools and technologies.


Benefits
Original job Splunk SIEM Engineer (RE) posted on GrabJobs ©. To flag any issues with this job please use the Report Job button on GrabJobs.
Apply Now
Share Job
Share Job

Auto-Apply to Splunk SIEM Engineer Jobs with your AI JobCopilot

thunder icon Auto-Apply with AI

Similar Splunk SIEM Engineer Jobs in Saudi Arabia

GrabJobs is the no1 job portal in Saudi Arabia, connecting you to thousands of jobs fast! Find the best jobs in Saudi Arabia, apply in 1 click and get a job today!

Mobile Apps

Copyright © 2026 Grabjobs Pte.Ltd. All Rights Reserved.