





Tier-1 employer and metro location increase competition, but niche Splunk+Databricks security focus reduces applicant density.
Role requires SIEM and Splunk expertise making cross-industry transferability limited.
Mandatory SPL, Databricks, SQL, Python, and SIEM experience indicate high filter strictness.
Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Own and enhance enterprise security observability by developing Splunk queries, dashboards, and Databricks analytics for threat detection and monitoring.
Identify telemetry gaps and data quality issues in security data sources; collaborate with SOC and engineering teams to improve detection coverage and telemetry operationalization.
Maintain detailed documentation of workflows, technical configurations, and processes to support knowledge management and ongoing security operations.
Fluency in Splunk Processing Language (SPL), including dashboard and query development for security use cases.
Hands-on experience with Databricks, SQL, and Python for analytics and data transformation at scale.
Experience working in security analytics, data engineering, or in a SOC/security operations environment as a lead technical analyst or engineer.
Working knowledge of enterprise-scale SIEM ecosystems and cloud platforms such as Azure and AWS.
Strong technical expertise in Splunk and Databricks within large-scale enterprise security telemetry and observability contexts.
Demonstrated ability to analyze complex security data from multiple telemetry sources (endpoint, web proxy, firewall) and generate actionable insights.
Experienced in cross-functional collaboration with SOC, security engineering, and data teams to operationalize telemetry and detection strategies in a hybrid work environment.