Cybersecurity Executive - Splunk SIEM Specialist

Kpmg India Services Llp

Mumbai/Bombay

Not disclosed

Work from Office

Full Time

Min. 2 years

Job Details

Job Description

Executive - Cyber Transformation

About KPMG

KPMG entities in India are professional services firm(s). These Indian member firms are affiliated with KPMG International Limited. KPMG was established in India in August 1993. Our professionals leverage the global network of firms, and are conversant with local laws, regulations, markets and competition. KPMG has offices across India in Ahmedabad, Bengaluru, Chandigarh, Chennai, Gurugram, Jaipur, Hyderabad, Jaipur, Kochi, Kolkata, Mumbai, Noida, Pune, Vadodara and Vijayawada. 

KPMG entities in India offer services to national and international clients in India across sectors. We strive to provide rapid, performance-based, industry-focused and technology-enabled services, which reflect a shared knowledge of global and local industries and our experience of the Indian business environment.

  • Implement, configure, and manage Splunk SIEM for security monitoring and log management.
  • Onboard and integrate logs from multiple sources including servers, network devices, applications, and cloud platforms.
  • Develop, maintain, and optimize Splunk dashboards, alerts, and correlation rules.
  • Design and enhance security use cases for threat detection and monitoring.
  • Perform security event analysis and support incident investigation and response activities.
  • Collaborate with SOC teams for incident triage and escalation.
  • Conduct log analysis and threat detection to identify anomalies and suspicious behavior.
  • Optimize Splunk queries (SPL) for performance and efficiency.
  • Ensure health, performance, and scalability of Splunk infrastructure.
  • Implement access controls (RBAC) and maintain platform security.
  • Document configurations, processes, and troubleshooting steps.
  • Stay updated on latest cybersecurity threats, vulnerabilities, and trends.
  • Hands-on experience with Splunk Enterprise / Splunk Cloud.
  • Strong knowledge of Splunk Search Processing Language (SPL).
  • Understanding of SIEM concepts, log management, and event correlation.
  • Knowledge of cybersecurity fundamentals: 
    • Network security (TCP/IP, DNS, HTTP/HTTPS)
    • Firewalls, IDS/IPS
    • Endpoint security
  • Familiarity with incident detection and response processes.
  • Experience with Linux/Unix systems.
  • Basic scripting skills (Python, Shell, or PowerShell) are a plus.
  • Analytical, troubleshooting, and problem-solving skills.

Preferred Skills

  • Experience with Splunk Enterprise Security (ES).
  • Knowledge of cloud platforms (AWS, Azure, GCP).
  • Familiarity with MITRE ATT&CK framework.
  • Exposure to SOAR tools and automation.
  • Experience with other security tools (EDR, DLP, Vulnerability scanners).

 

Equal employment opportunity information 


KPMG India has a policy of providing equal opportunity for all applicants and employees regardless of their color, caste, religion, age, sex/gender, national origin, citizenship, sexual orientation, gender identity or expression, disability or other legally protected status. KPMG India values diversity and we request you to submit the details below to support us in our endeavor for diversity. Providing the below information is voluntary and refusal to submit such information will not be prejudicial to you.

Experience Level

Executive Level

Job role

Work location

Mumbai, Maharashtra, India

Department

IT & Information Security

Role / Category

IT Security

Employment type

Full Time

Shift

Day Shift

Job requirements

Experience

Min. 2 years

About company

Name

Kpmg India Services Llp

Job posted by Kpmg India Services Llp

Apply on company website