Apie poziciją
Команда ищет Senior Security Engineer для проектирования и развития Splunk Enterprise Security в крупной корпоративной среде. Роль включает поддержку Cribl, настройку обнаружения угроз, мониторинг безопасности и участие в реагировании на инциденты.
Responsibilities
- Design and implement Splunk Enterprise Security for large-scal enterprise network environment
- Provide O&M support of large Cribl Deployment
- Develop custom Splunk apps, dashboards, and reports to enhance security visibility
- Create and optimize complex SPL queries for threat detection and security analytics
- Integrate Splunk with other security tools to build a comprehensive security monitoring ecosystem
- Design and maintain Splunk data models to support security use cases and compliance reporting
- Develop custom threat detection rules and correlation searches in Splunk
- Configure and tune Splunk alerts to reduce false positives and enhance detection efficacy
- Support compliance reporting for FISMA, RMF, and other federal requirements
- Provide technical expertise during security incidents and coordinate response activities
Requirements
- Bachelor's degree in Cybersecurity, Information Security, or related field
- 7+ years of security engineering experience with 3+ years of advanced Splunk implementation
- Splunk Certified Architect or Splunk Certified Enterprise Security Admin certification
- Experience designing and implementing Splunk Enterprise Security in large environments, along with Cribl
- Strong knowledge of SPL query language and advanced search techniques
Conditions
- Location: Herndon, VA / Washington, DC
- Salary: $140,000 - $155,000 a year
- Hybrid format
Employer
UltraViolet Cyber