Splunk Admin at Remote, Remote, USA |
Email: [email protected] |
From: Khadar, KK Associates LLC [email protected] Reply to: [email protected] We are hiring Splunk Admin Consultants for one of my client in Location:- Hartford, CTinteresting candidates please send resumes to [email protected] Contact:- 6146995972 -105 Position:- :- Splunk Admin Location: - Hartford, CT JD :- Understand the customer environment and create HLD for SIEM & SOAR implementation2. Work with cross functional teams in enabling & implementing Splunk SIEM solution & logingestion from the customers Security Stack.3. Enable OOB & custom usecases per customer requirement.4. Good experience in Splunk Query language5. Identity & implement possible automation scenarios leveraging Splunk Phantom.6. Responsible Security event triage and security incidents investigations, including support forforensics analysis.7. Conduct proactive threat and compromise analysis by reviewing reports to understand threatcampaign(s) techniques, lateral movements, and extract indicators of compromise (IOCs).8. Lead the team with accountability to ensure overall delivery requirements are met9. Monitor, evaluate, and assist with the maintenance of assigned security systems in accordance withindustry best practices to safeguard internal information systems and databases10. Analyze a variety of network and host-based security appliance logs determine the correctremediation actions and escalation paths for each incident.11. Ability to conduct packet analysis and articulate findings in order to fine-tune alerts12. Conduct advanced use case development leveraging all product features (trends + variables +hierarchal architectures, Pattern Discovery)13. Responsible for Security Incident Response and documentation of investigation reports14. Prioritize & determine events that are relevant for immediate action,15. Maintain an expert understanding of vulnerabilities, response, and mitigation strategies used tosupport cyber security operations16. Serve as point of escalation for Level 1/2 analysts17. Tune the logging from all security appliances for relevant alerting levels18. Work closely with all Security Operations staff to ensure 24x7 availability. KK Associates LLC. 8751 Collin McKinney Pkwy, # 1302, McKinney, TX 75070 555 Metro Place North, Suite # 100, Dublin, OH 43017 Direct: +1 614-699-5972 | India: +91 888-639-5238 | Fax: (614) 413-3428 Email: [email protected] Keywords: Connecticut Ohio Texas Splunk Admin [email protected] |
[email protected] View all |
Tue Aug 20 02:13:00 UTC 2024 |