yoinka

Databricks and Splunk Engineer - Senior Associate

State Street

BangaloreFull TimeMid
Sign in to applyVerified 1h ago
Location
Bangalore
Employment
Full Time
Work model
On-Site
Level
Mid
Posted
Aug 14, 2026

Skills

AWSAzureCybersecurityDatabricksPythonSQLSplunk

About this role

What you will be responsible for: We are seeking a Databricks and Splunk Engineer to join the Fusion Analytics and Data Engineering team, focused on advancing enterprise security observability and supporting the Enterprise Log Telemetry Monitoring initiative. The role combines deep Splunk engineering, Databricks-based analytics, cyber threat detection support, and practical security operations experience to convert security-relevant telemetry into reliable, actionable insights. This engineer will help identify telemetry and implementation gaps, build dashboards and analytics, strengthen detection strategy, and maintain accurate documentation, workflows, and technical processes. The ideal candidate is hands-on, analytical, comfortable working across large-scale SIEM ecosystems, and passionate about enabling others through knowledge sharing, workshops, and operational best practices What we value: Use deep Splunk expertise to understand security data, write high-quality SPL, and provide solid analysis that drives and supports the cyber threat detection strategy. Implement and enhance security observability capabilities using the Splunk and Databricks stack. Support the build-out of Enterprise Log Telemetry Monitoring by analyzing, scaling, and operationalizing security data into actionable insights. Design, develop, and maintain Splunk queries, dashboards, data visualizations, and Databricks analytics assets for security and observability use cases. Perform advanced analytics across security-relevant data sources, including endpoint, web proxy, firewall, and related telemetry sources. Identify log telemetry gaps, onboarding issues, data quality concerns, and implementation gaps that may impact detection coverage or observability outcomes. Partner with SOC, security engineering, data engineering, and platform teams to troubleshoot telemetry issues and improve detection readiness. Document workflows, procedures, dashboards, technical configurations, and operational processes to support long-term knowledge management. Ensure documents, workflows, and processes remain accurate, current, and aligned with evolving security observability and detection requirements. Participate in internal events, knowledge-sharing sessions, and workshops to share team challenges, successes, lessons learned, and reusable engineering practices. Mandatory skills / experience: Fluency in SPL, including the ability to write efficient queries, build dashboards, and support security analytics use cases in Splunk. Hands-on experience with Databricks, SQL, and Python for large-scale analytics, data exploration, enrichment, transformation, and insight generation. Experience working as a lead technical analyst, security analytics engineer, data engineer, or engineer embedded in a SOC or security operations environment. Ability to quickly analyze unfamiliar security data sources and generate practical insights for detection, observability, and operational decision-making. Strong understanding of endpoint security products, endpoint telemetry, and common enterprise security data sources. Experience with large, enterprise-scale SIEM ecosystems and the operational realities of scaling security telemetry. Working knowledge of cloud technologies, preferably Azure and AWS, and how cloud platform telemetry supports security monitoring and analytics. Strong analytical skills with the ability to translate complex data patterns into clear, actionable recommendations. Excellent documentation skills and the discipline to keep workflows, technical procedures, and process artifacts current. Passion for learning, sharing knowledge, mentoring others, and enabling the growth of security analytics and engineering teams. Additional requirements / Good to have skills: Key Capabilities : SPL, dashboards, analytics, SQL, Python Preferred Cloud : Azure and AWS Primary Platforms : Splunk, Databricks Data Domains : Endpoint, web proxy, firewall, and other security telemetry Core Focus :

Listing verified 1h ago. Applications go through the company's official careers site.

← Back to Yoinka

Databricks and Splunk Engineer - Senior Associate at State Street, Bangalore | Yoinka