Exciting Splunk SIEM Security Engineer/Architect contract opportunity with experience in architecting, configuring, deploying, and customizing the tool, preferably both in supporting the application and utilizing the application for information security monitoring, incident response, and compliance.
Requirements
- 3 plus years of experience in Splunk (SIEM) Security Enterprise
- Onboarding new data sources to the Splunk environment as required by the customer Cybersecurity Team
- Configuration of Correlation Searches, Dashboard Searches, Risk Modifiers, Threat Intelligence Feeds, Workflow Actions and Enterprise Security content
- Validating and managing all Splunk forwarders reporting into the Splunk environment
- Managing and optimizing the Splunk environment, Enterprise Security Module and Phantom Module.
- Implementing new Correlation Rules (Correlation Searches) in the Splunk environment Enterprise Security Module
- Ability to perform security analysis, development and implementation of security policies, standards, and guidelines
- Performing ongoing development for additional use case and SIEM tuning
- Experience with implementation of Log Management and Analytics products - Splunk
Benefits
- Health benefits
- Dental benefits
- Vision benefits