SlipstreamJobsFresh Startup & VC-Backed Jobs

Sr Cybersecurity Engineer - SPLUNK & CRIBL

Cape Analytics - Bengaluru, India - In-office

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

Moody's is seeking a Senior Cybersecurity Engineer to serve as a subject matter expert for security data platforms. You will be responsible for administering, configuring, and optimizing Splunk Cloud environments and managing Cribl Cloud configurations to support secure and efficient data ingestion, transformation, routing, and reduction across the enterprise cybersecurity ecosystem. Key responsibilities include: - Administer and optimize Splunk Cloud environments, including indexes, data models, field extractions, permissions, and licensing utilization - Manage Cribl Cloud configurations and pipelines for secure data ingestion, transformation, routing, and reduction - Design and implement onboarding processes for new data sources with accurate parsing, normalization, enrichment, and quality validation - Build and maintain transformations and processing pipelines supporting detection engineering, dashboards, reporting, audit, and compliance - Partner with cybersecurity stakeholders to ensure security data completeness, reliability, and operational alignment - Troubleshoot and resolve ingestion issues, data gaps, latency concerns, and pipeline failures - Monitor platform health, performance metrics, ingest volumes, and cost trends; identify optimization opportunities - Develop automation and operational tooling using Python and JavaScript - Maintain platform documentation and support upgrades, migrations, and capacity planning You will work with the Cybersecurity Data Management team, which builds and operates platforms and pipelines that collect, transform, route, and analyze security event data at enterprise scale. The role involves modern cloud-based technologies including Splunk Cloud, Cribl Cloud, AWS, and automation solutions. REQUIREMENTS: - 6-9 years of experience in cybersecurity engineering, data engineering, or platform administration with significant hands-on expertise in security data platforms - Strong experience administering Splunk Cloud environments (data models, field extractions, knowledge objects, indexing strategy, permissions management, search processing) - Direct experience with Cribl Stream and Cribl Cloud for data ingestion, transformation, routing, reduction, and delivery - Deep understanding of log formats, parsing, normalization, and data enrichment practices, including Common Information Model mapping - Proficiency in Python and/or JavaScript for automation, integrations, operational tooling, and platform enhancements - Experience supporting cloud-hosted environments, preferably Amazon Web Services infrastructure - Strong analytical and troubleshooting skills for complex distributed data pipelines - Demonstrated proficiency in AI concepts with hands-on experience using AI tools to streamline workflows and enhance operational efficiency - Proven ability to implement AI-powered solutions to solve business challenges - Growing awareness of AI risk management and commitment to responsible and ethical AI use - Bachelor's degree or equivalent in Cybersecurity, Computer Science, Information Systems, Engineering, or related field - Splunk certifications (Administrator, Architect, or related) preferred

Similar roles