Splunk Detection Engineer

6 days ago


Oslo, Oslo County, Norway Orange Cyberdefense Full time
Detection Engineer Position
Orange Cyberdefense is a leading cybersecurity company in Europe, offering top-notch security services to our clients. We are currently seeking a skilled Splunk Detection Engineer to join our team. As a key member of our CyberSOC service, you will be responsible for developing detection methods to defend against current threats. Your tasks will include maintaining indicators related to our services, researching high-severity global threats, and determining appropriate detection rules. You will also assist in guiding the quality improvement of our delivered services.

Key Responsibilities:
  • Develop new indicators for Managed Threat Detection services.
  • Maintain the Splunk application included in our Managed Threat Detection (Log) service.
  • Update our detection library.
  • Gather statistics and investigate potential improvements.
  • Test the detection capabilities of our services and related products.
  • Maintain documentation related to detections and supported services.

Requirements:
  • A strong passion for working with Splunk.
  • Hands-on experience in writing detections in SPL.
  • A solid understanding of common threats and TTPs, with prior experience working with the MITRE framework.
  • Experience in creating and tuning detections.
  • Familiarity with attack frameworks.
  • Proficiency in SPL and experience working with CIM.
  • Experience with Splunk components like KV stores, data models, and other elements used in data normalization.
  • Understanding the anatomy of a Splunk app.
  • Experience with writing regular expressions.
  • Experience working with Sysmon including developing and managing rules.
  • Experience in Python development.


  • Oslo, Oslo County, Norway Orange Cyberdefense Full time

    About UsAt Orange Cyberdefense, we are a leading cybersecurity company in Europe. Our mission is to provide top-notch security services to our clients.Job DescriptionWe are seeking a highly skilled Cybersecurity Detection Specialist to join our team. As a key member of our CyberSOC service, you will be responsible for developing detection methods to defend...


  • Oslo, Oslo County, Norway Marioff Full time

    We are seeking a highly skilled Project Engineer to join our team at Marioff. As a key member of our design team, you will be responsible for developing safe designs according to rules and regulations, specifying system components, and configuring fire detection and security systems.The ideal candidate will have a strong background in electronics,...


  • Oslo, Oslo County, Norway Skyfri Full time

    Company OverviewSkyfri Technologies AS is a global clean technology company based in Norway. We operate at the forefront of innovation, harnessing the power of machine learning and big data to digitize asset management for power plants.Our mission is to accelerate the transition to renewable energy globally, driven by cutting-edge software solutions.Job...


  • Oslo, Oslo County, Norway mnemonic Full time

    Are you a cybersecurity expert looking to protect industrial control systems from cyber threats? As a member of the mnemonic team, you will work on meaningful tasks that make a difference in safeguarding critical infrastructure.Key Responsibilities:Analysis of security incidents to identify and mitigate potential risksDevelopment, operation, and maintenance...


  • Oslo, Oslo County, Norway AutoStore™ Full time

    Job RequirementsMaster's degree in Cyber Security, Security and Cloud Computing, AI for Cyber Security or related field.Engineering and programming/scripting skills with strong understanding of AI and Machine Learning principles.Problem-solving and analytical skills, accompanied by a 'can-do' attitude and passion for Cyber Security and Threat...