Cloud Engineer - Cyber Security in Edinburgh
Cloud Engineer - Cyber Security

Cloud Engineer - Cyber Security in Edinburgh

Edinburgh Full-Time 60000 - 80000 £ / year (est.) No home office possible
Infinity Quest

At a Glance

  • Tasks: Design and maintain enterprise-grade monitoring solutions using Splunk Cloud and ITSI.
  • Company: Join a leading tech firm focused on cyber security and innovation.
  • Benefits: Attractive salary, flexible working options, and opportunities for professional growth.
  • Other info: Dynamic team environment with a focus on cutting-edge technology.
  • Why this job: Be at the forefront of cyber security, making a real difference in service health.
  • Qualifications: 4-8 years of experience with Splunk and strong ITSI skills required.

The predicted salary is between 60000 - 80000 £ per year.

We are seeking a skilled Splunk Cloud & ITSI Engineer to design, build, and maintain enterprise‑grade monitoring, analytics, and service‑health solutions. This role combines ITSI service‑centric engineering with Splunk Cloud operational monitoring, including dashboards, alerts, reports, and data governance. The engineer will develop ITSI service models, KPIs, correlation logic, and episodes while also supporting Splunk Cloud administration, CIM alignment, RBAC, and search performance hygiene. This position is ideal for someone strong in ITSI with solid Splunk Cloud monitoring and admin capabilities.

Key Responsibilities

  • Build and maintain ITSI service models, including service trees, dependencies, entity rules, and health-scoring frameworks.
  • Develop KPIs, multi-KPI logic, adaptive/time-based thresholds, and SLO-aligned indicators using golden signals.
  • Configure and optimize Notable Event Aggregation Policies (NEAP) to group alerts into meaningful episodes and reduce noise.
  • Create Glass Tables, Deep Dives, Service Analyzer views, and Splunk dashboards for executive and operational visibility.
  • Implement ITSI-driven alerting with enrichment, routing to ITSM, suppression windows, and maintenance schedules.
  • Build and tune correlation searches powering episodes, service degradation alerts, and automated remediation workflows.
  • Support Splunk administration including index/RBAC governance, data onboarding (HEC, UF, DS), CIM alignment, and ingest quality checks.
  • Apply search-performance best practices including workload rules, scheduling hygiene, DMA, and summary indexing.
  • Develop and maintain Splunk Cloud dashboards, alerts, and scheduled reports for service health and reliability monitoring.
  • Build operational dashboards using SPL, data models, and accelerated searches for real-time visibility across logs, metrics, and events.
  • Create alerting frameworks with severity levels, routing rules, throttling, and alert hygiene standards.
  • Develop scheduled reports, summary indexes, and data model accelerations to optimize performance and reduce Cloud compute cost.
  • Manage and optimize knowledge objects including macros, lookups, event types, tags, and field extractions.
  • Integrate ITSI and Splunk Cloud with CMDB/ITSM systems, webhook automation, and AIOps/ML-based anomaly detection frameworks.
  • Troubleshoot slow or high-latency searches, identify bottlenecks, and implement best-practice SPL optimization.
  • Develop, optimize, and maintain advanced SPL queries for dashboards, alerts, correlation searches, and analytics.
  • Integrate ML model outputs into dashboards, alerts, and service health indicators for predictive insights.

Required Skills & Experience

  • 4–8 years of hands-on experience with Splunk Enterprise / Splunk Cloud.
  • Strong proficiency in SPL, search optimization, and dashboard development.
  • Deep experience with ITSI, including service modelling, KPIs, thresholds, NEAP, and Service Analyzer.
  • Experience with MLTK, anomaly detection, forecasting, and operationalizing ML models.
  • Strong understanding of observability concepts (logs, metrics, traces, golden signals).
  • Hands-on experience with data onboarding, HEC, Universal Forwarders, Deployment Server, and CIM alignment.
  • Knowledge of indexing, RBAC, data models, summary indexing, and workload management.
  • Ability to troubleshoot search performance, ingestion issues, and data quality problems.
  • Preferred Certification (Splunk Admin, ITSI Admin).

Cloud Engineer - Cyber Security in Edinburgh employer: Infinity Quest

Join a forward-thinking company that prioritises innovation and employee development in the heart of a vibrant tech hub. As a Cloud Engineer specialising in Cyber Security, you will benefit from a collaborative work culture that encourages continuous learning and offers ample opportunities for professional growth. With competitive benefits and a commitment to work-life balance, this role is perfect for those looking to make a meaningful impact in a dynamic environment.
Infinity Quest

Contact Detail:

Infinity Quest Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Cloud Engineer - Cyber Security in Edinburgh

✨Tip Number 1

Network like a pro! Attend industry meetups, webinars, or local tech events. You never know who might be looking for a Cloud Engineer just like you!

✨Tip Number 2

Show off your skills! Create a portfolio showcasing your Splunk dashboards and ITSI service models. This gives potential employers a taste of what you can do.

✨Tip Number 3

Don’t just apply anywhere; apply through our website! We love seeing candidates who are genuinely interested in joining our team.

✨Tip Number 4

Prepare for interviews by brushing up on common Splunk scenarios and best practices. Be ready to discuss how you've tackled challenges in previous roles!

We think you need these skills to ace Cloud Engineer - Cyber Security in Edinburgh

Splunk Cloud
ITSI
SPL
Service Modelling
KPI Development
Notable Event Aggregation Policies (NEAP)
Dashboard Development
Data Onboarding
CIM Alignment
Search Performance Optimization
Anomaly Detection
Operational Dashboards
Alerting Frameworks
Knowledge Object Management
Integration with CMDB/ITSM

Some tips for your application 🫡

Tailor Your CV: Make sure your CV is tailored to the Cloud Engineer role. Highlight your experience with Splunk Cloud and ITSI, and don’t forget to mention any relevant projects or achievements that showcase your skills in monitoring and analytics.

Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about this role and how your background makes you a perfect fit. Be sure to mention specific responsibilities from the job description that excite you.

Showcase Your Technical Skills: When filling out your application, make sure to emphasise your technical skills, especially in SPL, search optimisation, and dashboard development. We want to see how you can contribute to our team right from the get-go!

Apply Through Our Website: Don’t forget to apply through our website! It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it shows you’re keen on joining the StudySmarter family!

How to prepare for a job interview at Infinity Quest

✨Know Your Splunk Inside Out

Make sure you brush up on your Splunk Cloud and ITSI knowledge. Be ready to discuss your hands-on experience with SPL, dashboard development, and service modelling. Prepare examples of how you've optimised searches or built KPIs in previous roles.

✨Showcase Your Problem-Solving Skills

Be prepared to tackle hypothetical scenarios during the interview. Think about how you would troubleshoot slow searches or ingestion issues. Demonstrating your analytical thinking and problem-solving approach will impress the interviewers.

✨Highlight Your Collaboration Experience

Since this role involves integrating ITSI and Splunk Cloud with other systems, share experiences where you've worked cross-functionally. Talk about how you’ve collaborated with teams to enhance service health and reliability monitoring.

✨Prepare Questions About Their Environment

Show your interest by asking insightful questions about their current Splunk setup, challenges they face, or how they measure success in their monitoring solutions. This not only shows your enthusiasm but also helps you gauge if the role is a good fit for you.

Cloud Engineer - Cyber Security in Edinburgh
Infinity Quest
Location: Edinburgh

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>