Job Description
Job Title- Splunk Observability Engineer
Job Type- Yearly extendable and renewable contract
Work Location- Bangkok
Work Mode- Onsite
Job Responsibilities:
- Maintain and optimize configurations for data sources, detectors, and service groups.
- Implement governance for data ingestion, retention, and access control.
- Ensure platform stability, scalability, and compliance with policies..
- Design and maintain custom dashboards and visualizations using SignalFlow.
- Collaborate with teams to deliver meaningful metrics, traces, and log insights.
- Enhance dashboard performance and usability for faster analysis and reporting.
- Configure and fine-tune alerts and detectors to reduce noise and improve accuracy.
- Manage incident workflows, escalation policies, and ServiceNow integrations.
- Support post-incident analysis through observability data and reports.
Job Requirements:
- Strong understanding of information security concepts like CIA triad, access controls, vulnerability assessment, risk assessment, auditing etc.
- Ability to automate mundane/manual tasks in BAU.
- Knowledge and understanding on Change, Incident and Problem Management.
- Experience with SIEM/SOAR integrations, Python/API automation, DevSecOps CI/CD workflows, alternative EDR tools (MDE/CrowdStrike), cloud workload protection, dashboarding/analytics, and knowledge of MAS TRM/BNM RMiT regulatory expectations.