At a Glance
- Tasks: Lead Splunk projects, enhance security monitoring, and develop actionable insights.
- Company: Join a global IT services leader making a real-world impact.
- Benefits: Competitive salary, healthcare, pension matching, and 25 days holiday.
- Why this job: Be part of a people-first tech company driving innovation in cybersecurity.
- Qualifications: Experience with Splunk, IAM, and strong analytical skills required.
- Other info: Opportunities for mentorship and access to extensive training resources.
The predicted salary is between 80000 - 92000 £ per year.
Full Time Permanent Fully onsite - Moorgate, London EC2Y £80-92K basic + benefits (5% pension, 25 days hols, life insurance, medical cover)
Are you an experienced Splunk SME looking for a new challenge? Do you have a strong background in Splunk, IAM and SOAR with a high level understanding of wider Splunk ecosystem, along with Incident Management, Python and Powershell skills?
Here at ARM we are recruiting for a full time permanent Splunk SME for a global IT services and consultancy client of ours.
Our client: They’re a leading business with a global reach that empowers local teams, and they undertake hugely exciting work that is genuinely changing the world. Their advanced portfolio of consulting, applications, business process, cloud, and infrastructure services will allow you to achieve great things by working with brilliant colleagues, and clients, on exciting projects. They’re a rapidly growing, people-first technology organisation and part of a $1B global service provider delivering end-to-end IT Outsourcing (ITO) and Cyber Defence services to clients across the UK and beyond. Within their Security Practice, they provide a range of services including Managed Detection and Response (MDR), Vulnerability Management, Penetration Testing, Incident Response, and consultancy led Security Advisory services. You’ll be joining a team that values learning, celebrates innovation, and supports your career journey every step of the way.
The Opportunity: We are looking for a skilled Splunk Specialist to deliver end-to-end Splunk engagements, helping clients build and enhance their security monitoring capabilities. You will lead the full project lifecycle, from requirements gathering and stakeholder engagement through to data onboarding, alert development, and dashboard creation, ensuring solutions are aligned to both business and security objectives. You will bring strong hands-on experience with Splunk Enterprise Security and a proven track record in delivering cybersecurity projects. This includes designing and implementing detection use cases, tuning alerts, and developing dashboards that provide clear, actionable insights for security operations teams. Experience with SOAR and UEBA technologies is advantageous but not essential. This role suits someone who enjoys working in a client-facing environment, solving complex challenges, and contributing to the ongoing evolution of modern Security Operations Centres.
What You’ll Be Doing:
- Design, build, and continuously enhance detection capabilities within Splunk across Linux and Windows environments, including log onboarding, normalisation, and enrichment
- Develop and maintain high-quality detection content such as correlation searches and risk-based alerting within Splunk Enterprise Security
- Write and optimise complex queries to support threat detection, proactive threat hunting, and anomaly identification
- Map detection logic to adversary behaviours using the MITRE ATT&CK Framework, ensuring effective coverage of tactics, techniques, and procedures
- Work with the wider Splunk ecosystem, including tools like TrackMe, and contribute to automation and orchestration initiatives (including exposure to SOAR where applicable)
- Leverage scripting languages such as Python and PowerShell to automate detection logic, enrich data, and integrate with security workflows
- Provide mentorship and technical guidance to junior engineers, particularly on Splunk backend activities such as data ingestion, parsing, indexing, and troubleshooting
- Collaborate closely with SOC analysts, incident responders, and global engineering teams to improve detection and response capabilities
- Apply strong analytical and problem-solving skills to translate threat intelligence into actionable detection use cases and continuously improve security operations
What We’re Looking For:
Essential:
- Experience working on multiple projects with broad scope, ambiguity, and a high degree of difficulty
- Demonstrable proficiency across a wide range of IT and cybersecurity technologies
- Strong knowledge of key cybersecurity domains, including Identity and Access Management and Incident Management
- High-level analytical ability to solve unusual and complex problems
- Ability to maintain up-to-date working knowledge of cybersecurity principles and best practices
- Experience in senior stakeholder management and providing clear, relevant management reporting, professional communication - written and verbal.
- Eligibility to work in the UK.
Desirable:
- Experience in technology projects such as cyber infrastructure implementation or replacement initiatives
- Understanding of global program structures, launch plans, timing, and ownership
- Ability to coach and mentor team members through knowledge transfer and constructive feedback
Some of the benefits include:
- Healthcare and dental insurance
- Company pension is matched up to 5%
- 25 days annual leave entitlement plus bank holidays and the option to purchase 5 extra days
- Life assurance - 4 x annual salary
- Cycle to work scheme
- Client prioritises internal development opportunities and offer access to our Udemy training platform with over 5000 training courses
Senior Cyber Security Splunk SME employer: Advanced Resource Managers Ltd
Contact Detail:
Advanced Resource Managers Ltd Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Senior Cyber Security Splunk SME
✨Tip Number 1
Network like a pro! Get out there and connect with people in the cyber security field. Attend meetups, webinars, or even local events. You never know who might have the inside scoop on job openings or can refer you directly to hiring managers.
✨Tip Number 2
Show off your skills! Create a portfolio showcasing your Splunk projects, dashboards, and any automation scripts you've developed. This will give potential employers a clear view of what you can bring to the table and set you apart from the competition.
✨Tip Number 3
Prepare for interviews by brushing up on common cyber security scenarios and Splunk use cases. Practice explaining your thought process and how you tackle complex problems. Remember, they want to see how you think, not just what you know!
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, we’re always looking for talented individuals like you to join our team and make a difference in the cyber security landscape.
We think you need these skills to ace Senior Cyber Security Splunk SME
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights your experience with Splunk, IAM, and SOAR. We want to see how your skills align with the job description, so don’t be shy about showcasing your relevant projects and achievements!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you’re the perfect fit for this role. Share your passion for cybersecurity and how your background makes you an ideal candidate for the Senior Cyber Security Splunk SME position.
Showcase Your Problem-Solving Skills: In your application, highlight specific examples where you've tackled complex challenges in cybersecurity. We love seeing how you’ve used your analytical skills to make a real impact in previous roles!
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for this exciting opportunity. Don’t miss out!
How to prepare for a job interview at Advanced Resource Managers Ltd
✨Know Your Splunk Inside Out
Make sure you brush up on your Splunk knowledge before the interview. Be ready to discuss your hands-on experience with Splunk Enterprise Security, including how you've designed and implemented detection use cases. Prepare examples of how you've used Splunk to solve complex security challenges.
✨Showcase Your Scripting Skills
Since Python and PowerShell are key skills for this role, be prepared to talk about specific scripts you've written. Highlight how you've automated detection logic or enriched data in past projects. If possible, bring along examples or be ready to explain your thought process behind them.
✨Understand the Bigger Picture
Familiarise yourself with the wider Splunk ecosystem and related technologies like SOAR and UEBA. Be ready to discuss how these tools fit into the overall security landscape and how they can enhance security operations. This shows that you’re not just a Splunk expert but also understand its role in cybersecurity.
✨Prepare for Stakeholder Engagement
As this role involves senior stakeholder management, think about your past experiences where you've had to communicate complex technical information to non-technical audiences. Prepare to share examples of how you've successfully managed expectations and delivered clear, relevant reports.