Deloitte · 13 hours ago
Data Platform Engineer
Deloitte is a leading professional services firm that offers solutions in cybersecurity. The Data Platform Engineer is responsible for the administration and support of security data platforms, ensuring stable data flows and operations to maintain a resilient security analytics capability.
AccountingConsultingFinancial ServicesLegalProfessional ServicesRisk Management
Responsibilities
Administer and maintain enterprise security data platforms to ensure availability, performance, and reliability
Support event ingestion onboarding and sustainment using multiple methods (e.g., syslog, DBX, and Splunk Technical Add-ons (TAs))
Install, upgrade, patch, and troubleshoot Enterprise Log Manager (ELM) and Security Information and Event Management (SIEM) components and supporting infrastructure
Support Splunk platform capabilities and apps as applicable (e.g., Splunk Enterprise Security (ES), User Behavior Analytics (UBA), and Splunk Core/Enterprise)
Configure, tune, and maintain parsing and normalization so data aligns to the Splunk Common Information Model (CIM)
Create and maintain custom TAs to standardize data onboarding and improve analytics outcomes
Perform routine monitoring, health checks, and maintenance; troubleshoot ingestion, parsing, and platform issues
Partner with security operations and engineering teams to optimize telemetry for detection, response, and operational/compliance reporting
Produce and maintain runbooks, SOPs, and technical documentation; contribute to continuous process improvement
Qualification
Required
Bachelor's degree or equivalent relevant work experience
Ability to obtain Public Trust clearance
Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future
Ability to travel 25%, on average, based on the work you do and the clients and industries/sectors you serve
4+ years of experience supporting enterprise data platforms
4 + years of hands-on experience installing, updating, and maintaining ELM/SIEM solutions and supporting technologies, including: Splunk (e.g., ES, UBA, Core/Enterprise), Cribl (or comparable data pipeline tooling), Red Hat (or similar Linux OS), VMware environments
Demonstrated experience configuring and maintaining event ingestion methods (e.g., syslog, DBX, TA software)
Proven ability to create and maintain custom TAs to parse data into Splunk CIM format
Experience troubleshooting, monitoring, and performing routine maintenance of data systems
Benefits
Discretionary annual incentive program
Company
Deloitte
Deloitte is a business consulting company that offers audit, consulting, financial advisory, and tax services.
Funding
Current Stage
Late StageLeadership Team
Recent News
2026-02-08
Middle East AI News
2026-02-08
2026-02-07
Company data provided by crunchbase