Splunk Admin/ Cyber security Engineer // Hartford, CT (Only Locals) // Contract at Hartford, Connecticut, USA |
Email: [email protected] |
Hi, My name is Naveen Kumar and I represent iTech US Inc. iTech is a global staff augmentation firm providing a wide-range of talent on-demand and total workforce solutions. We have job opening for the below role. Role: Splunk Admin/ Cyber security Engineer Location: Hartford, CT (Only Locals) Duration: Contract Experience: Minimum 10+ years Key Skills: Splunk, Cybersecurity, SIEM, SOAR Note: Only H1 Visa who can share PP (Dont share GC, GC EAD, H4, OPT/CPT) Role Description: Key Responsibilities: Understand the customer environment and create HLD for SIEM & SOAR implementation Work with cross functional teams in enabling & implementing Splunk SIEM solution & logingestion from the customers Security Stack. Enable OOB & custom usecases per customer requirement. Good experience in Splunk Query language Identity & implement possible automation scenarios leveraging Splunk Phantom. Responsible Security event triage and security incidents investigations, including support forforensics analysis. Conduct proactive threat and compromise analysis by reviewing reports to understand threatcampaign(s) techniques, lateral movements, and extract indicators of compromise (IOCs). Lead the team with accountability to ensure overall delivery requirements are met Monitor, evaluate, and assist with the maintenance of assigned security systems in accordance withindustry best practices to safeguard internal information systems and databases Analyze a variety of network and host-based security appliance logs determine the correct remediation actions and escalation paths for each incident. Ability to conduct packet analysis and articulate findings in order to fine-tune alerts Conduct advanced use case development leveraging all product features (trends + variables +hierarchal architectures, Pattern Discovery) Responsible for Security Incident Response and documentation of investigation reports Prioritize & determine events that are relevant for immediate action, Maintain an expert understanding of vulnerabilities, response, and mitigation strategies used to support cyber security operations Serve as point of escalation for Level 1/2 analysts Tune the logging from all security appliances for relevant alerting levels Work closely with all Security Operations staff to ensure 24x7 availability. Thanks & Regards Naveen Kumar iTechUS, Inc -- Keywords: information technology green card Connecticut Splunk Admin/ Cyber security Engineer // Hartford, CT (Only Locals) // Contract [email protected] |
[email protected] View all |
Mon Aug 19 20:28:00 UTC 2024 |