
Job description
A Security Information Event Manager (SIEM) Administrator is responsible for managing the organization's security information and event management (SIEM) system using Splunk. This role involves implementing, maintaining, troubleshooting, and optimizing the SIEM system to ensure effective security monitoring and incident response.
Implement, install, and troubleshoot Splunk Enterprise (SE) and Splunk Enterprise Security (ES) systems. Maintain and administer SE and ES configurations, indexes, apps, and knowledge objects. Monitor system health, capacity, and performance to proactively address issues.
Must have experience administering Linux servers, experience with SIEM Content Development, and strong analytical and problem-solving skills. Excellent communication and collaboration skills are also required.
Keep exploring
Sign in to see similar jobs
Create a free account to discover roles related to this posting.
Company

Tech, Software & IT Services • Public Administration
Castalia Systems is a rapidly growing 8(a) and EDWOSB certified small business providing critical cybersecurity, information technology, and intelligence analysis solutions to the Department of Defense and Intelligence Community. Strategically located near MacDill Air Force Base in Tampa, Florida, Castalia Systems delivers leading-edge support globally, with a team of cleared, certified, and highly capable professionals. Castalia Systems specializes in a diverse range of services, including defensive cyber operations, large-scale data migration to cloud environments, and tactical intelligence support. The company leverages deep experience and strong relationships within the national security sector to deliver innovative and mission-critical solutions, making it an ideal environment for professionals seeking challenging and impactful work.