تفاصيل الوظيفة
Splunk Engineer – L2 The Splunk Engineer's role is to Administer the customer’s Splunk Enterprise Security (SIEM) end-to-end environment. This includes use case development, log source onboarding, custom parser creation, troubleshooting Splunk issues, and upgrading the Splunk environment. Description Demonstrates proven expertise as in administering Splunk Enterprise Security (SIEM) environment. Should have the following skills:
- Splunk Certified professional having at least Splunk Admin user certification level preferrable.
- Good experience in Splunk administration and troubleshooting
- Experience in integration of Splunk with log sources of different types including but not limited to security devices, network devices, web applications, custom applications and so on.
- Experience in tuning and troubleshooting Splunk premium apps like Enterprise Security, Phantom and UBA.
- Comfortable in writing regular expression to extract fields from custom log sources.
- Expertise in developing custom use cases using Splunk search language to correlate and alert on logs from multiple sources.
- Hands-on experience in creating dashboard and reports using SPL queries and XML.
- Good knowledge of information security and IT operations domain.
- Proficiency in client and server operating systems including Linux and Windows
- General networking and system troubleshooting skills (firewalls, routing, NAT, etc.)
- Ability to autonomously prioritize and successfully deliver across a portfolio of projects
- Good consulting skills with ability to manage client expectations
- Overall experience of at least 5+ years as SIEM Splunk Enterprise Security administrator.
- Hands-on experience with Splunk enterprise security (SIEM), security tools and devices, operating systems, and/or networking devices desired.
- Proven skills and experience in Use case development, Log source integration, log source parsing.
- Experience working across diverse teams to facilitate solutions
Apply safely
To stay safe in your job search, information on common scams and to get free expert advice, we recommend that you visit SAFERjobs, a non-profit, joint industry and law enforcement organization working to combat job scams.