Aplikuj
wróć do listy ofert
Aplikuj
logo

SIEM / Splunk Administrator & Platform Engineer

Kraków

PwC

Specjalista

Pełny etat

Praca hybrydowa

angielski

Duża firma

Specjalizacje oferty
PwC is a powerful network of over 250.000 people across 158 countries. All committed to deliver quality in Assurance, Tax, Advisory & Technology services. Match your curiosity with continuous opportunities to learn, grow and make an impact. Join PwC and be a game changer.

Our Internal Business Application Centre (IBACentre) team offers you the opportunity to support our core business functions by implementing applications that enable more efficient work and the delivery of top-notch services. Our team focuses on managing core and global business applications, ensuring their continuous operation, handling customer relationships, and incidents with precision.

We are looking for:

SIEM / Splunk Administrator & Platform Engineer

Join our "Global Cyber Logging - Platform Operation" team as a pivotal player in managing the centralized data management and analytics platform using Splunk. Your role is crucial in ensuring the integrity, security, and performance of our logging infrastructure, while driving continual improvement and innovation. Applicants should have at least 1 year experience in Splunk Enterprise / SIEM administration & management, and a good understanding of networking & Linux. 

Your future role:

SIEM Platform Management & Administration:

  • Monitoring, administration, and optimization of the Splunk Enterprise platform to ensure efficient log management and effective security information and event management (SIEM).
  • Conduct regular Splunk Infra & Ingestion health checks and monitoring to keep the environment robust and healthy for our stakeholders.
  • Monitor & Keep the Splunk Enterprise instances in good health to serve our customers by keeping platform up & running 24/7.

Troubleshooting & Problem Solving:

  • Actively identify issues using “Monitoring”, investigate the rootcause, troubleshoot and fix the Splunk platform issues & problems related to log source outages, parsing errors, time discrepancies, user problems and more.
  • Conduct Root Cause Analysis (RCA) to systematically address recurring issues and streamline problem mitigation.

SIEM Configuration Management & End-user Support:

  • Support the deployment and configuration of Splunk solutions at enterprise level, ensuring seamless log integration and issue resolution.
  • Manage end-user service requests, oversee Splunk access control, and enforce access restrictions to maintain secure and efficient user management.
  • Ensure optimal platform performance through regular consolidation, cleanup, and configuration adjustments.

Innovation, Analytics, & Continuous Improvement:

  • Enhance Splunk operations by implementing innovative solutions that improve efficiencies and automate processes, while integrating emerging technologies to optimize performance.
  • Leverage machine learning and AI to deliver advanced analytics insights, predictive models, and strategic data-driven visualizations for informed decision-making. 

Migration & Collaborations:

  • Handle SIEM server offboarding and migration, managing Cloud/On-prem Splunk forwarders (UF/HF) and log source migration projects.
  • Foster collaboration with multiple global teams like cybersecurity, IT, and business units, while streamlining processes and documentation to boost efficiency & platform stability.

Apply if you have:

  • Demonstrated knowledge in SIEM solutions and data analytics tools, particularly SPLUNK,
  • Good understanding of networking principles, traffic analysis, and operating systems (Windows & Unix/Linux). TCP/IP and DNS resolution,
  • Proficient with traffic analysis & Tshoot tools – Wireshark, TCPdump, Name lookup...etc,
  • Strong competence in Linux/UNIX environments, including scripting skills with Regular Expressions,
  • Hands-on experience in deploying and operating Splunk / other SIEM solutions is crucial. Splunk certifications are highly desirable,
  • Understanding of security domain applications and their integration within SIEM frameworks to support robust cybersecurity operations,
  • Strong written and verbal communication skills in English. 

By joining us you gain:

  • Work flexibility - hybrid working model, flexible start of the day, workation, sabbatical leave,
  • Development and upskilling - our full support during onboarding process, mentoring from experienced colleagues, training sessions, workshops, certification co/financed by PwC and conversations with native speaker,
  • Wide medical and well-being program - a medical care package, coaching, mindfulness sessions, psychological support, education through dedicated webinars and workshops, financial and legal advice,
  • Possibility to create your individual benefits package (a.o. lunch pass, insurance packages, concierge, veterinary package for a pet, massages) and access to a cafeteria - vouchers, discounts on IT equipment and car purchase,
  • 3 paid hours for volunteering per month,  
  • Additional paid Birthday Day off,
  • And when you start enjoying PwC as much as we do, you may recommend your friend to work with us.

Recruitment process:

  • CV verification, 
  • HC screening call, 
  • Online recruitment meeting with our managers/senior managers/directors,
  • Online or in person presentation.

#LI-K1 #LI-Remote

PwC Advisory spółka z ograniczoną odpowiedzialnością sp.k. or another PwC entity which runs a recruitment process - list of entities: https://www.pwc.com/gx/en/about/office-locations/poland.html, with its registered seat in Warsaw (00-633), Polna 11 Street, („PwC” or “we”) will be the controller of your personal data submitted in your application for a job. Your personal data will be processed for the purpose of performing a recruitment process for the job offered. If you give us explicit consent, your personal data will be also processed for participation in further recruitment processes conducted by PwC and sending notifications about job offers in PwC or job related events organized or with the participation of PwC such as career fair. A full information about processing your personal data is available in our Privacy Policy.