





Tier-1 brand and metro location increase density, but niche Splunk certification requirement limits applicant pool.
Role requires deep Splunk SIEM and security-platform expertise, making cross-industry transfers constrained.
Mandatory Splunk Architect certification plus 10+ years and domain-specific hands-on requirements make filters very strict.
Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Lead and deliver comprehensive enterprise-scale SIEM assessments and transformation initiatives focusing on Splunk-based security platforms.
Conduct detailed technical evaluations of current Splunk environments including architecture, data flows, and operational processes to identify gaps and define remediation.
Own creation of architect-level deliverables such as high-level designs, data flow diagrams, assessment reports, and drive compliance with enterprise standards and CIM requirements.
Active Splunk Enterprise Certified Architect certification is mandatory (Administrator certification insufficient).
10+ years overall experience in Security / SIEM / Observability with minimum 5+ years hands-on Splunk Enterprise Security experience in large-scale enterprises.
Proven experience leading SIEM assessments, transformations, and architectural reviews leveraging Splunk platforms.
Work Experience Required: 10+ years in relevant field; Notice Period: Not explicitly mentioned in the JD.
Deep technical expertise in designing, tuning, and troubleshooting large-scale clustered Splunk architectures including indexer and search head clustering.
Demonstrated ability to independently lead complex SIEM advisory engagements and stakeholder management at senior leadership levels (e.g., CISO).
Experienced in delivering architect-level outputs and driving governance and operational alignment across cross-functional security teams.