Job Details

ID #12335423
State Texas
City Dallas / fort worth
Job type Permanent
Salary USD TBD TBD
Source VDart, Inc.
Showed 2021-04-17
Date 2021-04-17
Deadline 2021-06-16
Category Et cetera
Create resume

Splunk Platform Engineer

Texas, Dallas / fort worth, 75201 Dallas / fort worth USA

Vacancy expired!

Position : Splunk Platform Engineer Location : Remote Duration : Contrat Job Descriptions: As a Splunk Platform Engineer, Your responsibility is going to be to get all the agreed data from technology or application in scope and make sure data is being received by our SIEM solution and with all important attributes. Excellent communication skills are mandatory for this type of tasks, as a lot of engagement with the internal customers happens on a daily basis. You will be responsible for data mapping according to the CIM and according to the Use-Case development requirements. You are going to design the structure of use-cases with the customers and act as a subject matter expert for the customers being on-boarded to SOC. Essential Knowledge, Skills and Experience • understanding of Splunk architecture components, include search head clustering, indexer clustering, deployment server and monitoring console • understanding of configuration files and relationship between GUI configuration and backend configuration file impact • understand the difference between Universal forwarders and Heavy forwarders • understanding of SPL is a benefit • understanding of CIM is a must • an understanding of error messages and logs displayed by various software • ability to troubleshoot, diagnose and solve issues independently • self-learner, ability to document learning as experience is gained • understanding of network protocols and topologies • strong technical troubleshooting and analytical skills • experience with platform and application automated deployment and version control software e.g. (Ansible, Git, Bitbucket) • Fix whatever platform related issues independently • Make sure the platform is stable and avoiding any downtime. • Understanding of device & security logs and able to extract data from logs using regular expressions. • Good hands on exposure of SOAR platform like Siemplify, Demisto, Phantom, Ansible • Excellent understanding of Security Incident detection and remediation workflow. • Hands on Experience in writing custom scripts for task automation. • Experience of Integrating tools with SOAR platform. • Designing in creating workflows in SOAR platform. • a knowledge of the MITRE ATT&CK framework is a plus for you • ability to prioritise workload • excellent written and spoken English • calm and logical approach

Vacancy expired!

Subscribe Report job