Ørsted is seeking a Senior IT Security Specialist (Splunk) to join our Security Operations team and protect company assets by operating and improving security controls and tools. In this hybrid, full-time role based in Gentofte, Denmark, you will work closely with experts in the Cyber Defence Centre to design, build and manage Splunk platforms supporting security monitoring across IT and OT environments.
Responsibilities include:
- Working with security monitoring and incident detection teams to maximise the benefits of Splunk Enterprise Security in our workflows.
- Partnering with other security specialists to improve efficiency, effectiveness and performance across the Cyber Defence Centre.
- Collaborating with threat intelligence and adjacent teams to analyse and implement the data needed to support proactive security monitoring.
- Building, refining and tuning correlation rules and custom detections based on evolving threats and security requirements.
- Building, administering and maintaining the Splunk infrastructure, implementing best practices for architecture, apps, add-ons and searches.
Qualifications and qualities:
- Solid understanding of security operations and how threat intelligence guides security engineering, with familiarity with good security practices.
- Experience translating and implementing security requirements into technical configurations and use cases.
- Knowledge of security frameworks such as MITRE ATT&CK to help assess and validate data source coverage.
- Strong hands-on experience with Splunk Enterprise Security, including app configuration, data input configuration, data integration & normalisation and deployment.