💼Job Title: Splunk Developer
👨💻Job Type: Freelance / Employee
📍location: brussels belgium
💼work regime: 8 days/month in belgium (mandatory)
🌐language: fluent english
🔥keywords: SIEM, Splunk, threat detection, correlation rules, cybersecurity
Role overview
We are looking for a highly skilled SIEM Threat Detection Engineer with deep expertise in Splunk to support the development and enhancement of threat detection capabilities. This role is ideal for someone passionate about cybersecurity, data analytics, and proactive threat hunting.
🔧 key responsibilities
Collaborate with internal stakeholders to define and refine threat detection use cases
Develop, tune, and maintain Splunk correlation rules and detection logic
Ensure proper log source onboarding and normalization using Splunk CIM
Build and maintain dashboards, alerts, and reports for security monitoring
Conduct testing and validation of correlation searches with documented results
Create and manage Splunk Knowledge Objects to support operational needs
Provide technical coaching and quality assurance within the team
Continuously improve detection processes and documentation
Manage and prioritize a backlog of detection requests
✅ required skills & experience
Strong experience in SIEM use case development, especially with Splunk Enterprise & Enterprise Security
Proficiency in Splunk SPL, CIM, and log normalization
Solid understanding of cybersecurity tools, protocols, and threat landscapes
Excellent communication skills in English (written and verbal)
🌟 preferred certifications
Splunk Core Certified Power User (required)
Splunk Certified Developer
Splunk Enterprise Certified Admin
Splunk Enterprise Security Certified Admin
Additional security certifications (e.g., CEH, GIAC, CISSP, OSCP)
🤝 soft skills
Strong analytical and problem-solving abilities
Effective communicator across technical and non-technical teams
Self-motivated, detail-oriented, and adaptable
Team player with leadership potential and a collaborative mindset