Home

Cloud Security SME in Splunk ES and XSOAR at Remote, Remote, USA
Email: [email protected]
From:

saloni chaurasia,

tekinspirations

[email protected]

Reply to:   [email protected]

Hi,

 I Hope you are doing great. Please find below position if you have any matching candidate as per requirement. Please send me updated resume with candidate information.

Cloud Security SME in Splunk ES and XSOAR

Duration: 3 Mon+ 

Fully Remote-Dallas, TX

Pre-Qualifying Questions:

Architecture certification (Google, Amazon, Azure) from a major cloud platform

Explain your experience with 

Splunk ES and XSOAR.

Skills:

At least 5+ years of experience in the IT industry with strong technical knowledge on AWS Infrastructure & security services (EC2, ELB, Guardduty, Conf.

Hands on experience in terraform IaC deployments and ability to implement security automation.

Strong experience working on enterprise security solutions such as WAF, IPS, DDOS, and SIEM..

Good technical experience managing products like Splunk enterprise security, Tenable Nessus, PaloAlto firewall, Cortex XSOAR.

Good understanding of security controls related to regulatory requirements, such as NIST, PCI, ISO 27001, HIPAA compliance etc.

Architecture certification (Google, Amazon, Azure) from a major cloud platform.

Information Security Certification is a plus: ISO 27001, CISSP or CISM or other equivalent.

Experience working on FedRamp compliant projects is a plus.

Senior Terraform and Ansible Scripting.

Must be eligible to work on a government project

Requirements:

Cloud Security SME specialized in Splunk ES and XSOAR

 Splunk skillset Requirements:

Strong hands-on working experience in Splunk Installation and UNIX management, Splunk architecture and components including search heads, indexers and forwarders.

Installed, configured, and maintained Splunk Add ons and Apps such as but not limited to: Splunk Add-On for AWS, Splunk Add-On for Windows, and Google Workspace for Splunk.

Creation of new dashboards, reports or analytics

Managed a clustered environment with multiple indexers and search heads.

Administered both Splunk Enterprise and Splunk Enterprise Security.

Worked closely with various Security and Platform Engineering teams to onboard new data from various sources.

Creation of new alerts, custom rules.

Maintaining the security of splunk and its related components and indexes

Maintaining current patch levels for all splunk components including the Linux host OS patching and upgrading

Performing major version upgrades including the Linux host OS, Splunk components as necessary

Troubleshooting and resolving splunk issues as necessary

Candidates with Splunk Enterprise Security Certified Admin or Splunk Certified Cybersecurity Defense Analyst certification will be preferred.

XSOAR skillset Requirements: 

Experience in XSOAR with ability to configure existing and/or create new Incident Types, Incident Fields, Classifications & Mappings

Ability to build new or modify existing Playbooks, including implementation of Generic Polling and similar tasks

Ability to configure and manage Threat Intelligence Management (TIM) features in XSOAR

Palo Certified Security Automation Engineer (PCSAE) preferred

What You Bring To The Team:

Can work autonomously, deliver with minimal supervision from a set of requirements

Demonstrated ability to think strategically about business, product, and technical challenges

Has excellent communication skills to work as a member of a team

Ability to function in an agile-based environment and provide good daily feedback on team stand-up call

Good communication skills verbal / written 

Regards,

Saloni Chaurasia

{ Senior Technical  Recruiter }

TEK Inspirations LLC Pvt. Ltd.

|

13573 Tabasco Cat Trail, Frisco, TX 75035, United States

Desk:469-498-0890

E-Mail:

[email protected]

Keywords: information technology Texas
[email protected]
View all
Sat Feb 24 02:16:00 UTC 2024

To remove this job post send "job_kill 1153920" as subject from [email protected] to [email protected]. Do not write anything extra in the subject line as this is a automatic system which will not work otherwise.


Your reply to [email protected] -
To       

Subject   
Message -

Your email id:

Captcha Image:
Captcha Code:


Pages not loading, taking too much time to load, server timeout or unavailable, or any other issues please contact admin at [email protected]
Time Taken: 0

Location: ,