WaveStrong logo

Splunk SIEM Security Engineer/Architect

WaveStrong

Los Angeles, CAContractNo compensation foundPosted 5mo agoSeen in employer's feed 5 days ago

Most applications go out cold — see where you stand first. No sign-up to start.

At a glance

Compensation
No compensation found
Location
Los Angeles, CA
Schedule
Contract
Work Authorization
Not specified

Job overview

WaveStrong is hiring a Splunk SIEM Security Engineer/Architect. This contract opportunity is for a Splunk SIEM Security Engineer/Architect. The role involves architecting, configuring, deploying, and customizing Splunk, with a focus on supporting the application and utilizing it for information security monitoring, incident response, and compliance.

Key focus areas include Onboard new data sources to the Splunk environment, Configure Correlation Searches, Dashboard Searches, Risk Modifiers, Threat Intelligence Feeds, Workflow Actions and Enterprise Security content, and Validate and Manage all Splunk forwarders.

Successful candidates bring 3+ Years Splunk Experience. Important skills include Splunk SIEM Security Enterprise, Architecting, Configuring, Deploying, Customizing, and Supporting Applications.

Skills & qualifications

RequiredNice to have

Skills

Splunk SIEM Security EnterpriseArchitectingConfiguringDeployingCustomizingSupporting ApplicationsUtilizing Applications for Information Security MonitoringIncident ManagementComplianceOnboard New Data Sources to SplunkConfiguration of Correlation SearchesDashboard SearchesRisk ModifiersThreat Intelligence FeedsWorkflow ActionsEnterprise Security ContentValidate Splunk ForwardersManage Splunk ForwardersManage Splunk EnvironmentOptimize Splunk EnvironmentEnterprise Security ModulePhantom ModuleImplement New Correlation RulesSecurity AnalysisDevelopment of Security PoliciesImplementation of Security PoliciesDevelopment of Security StandardsImplementation of Security StandardsDevelopment of Security GuidelinesImplementation of Security GuidelinesOngoing Development for Additional Use CaseSIEM TuningLoggingAnalytics Products

Qualifications

3+ Years Spunk SIEM Security Enterprise Experience

Full job description

Exciting Splunk SIEM Security Engineer/Architect contract opportunity.

Requirements

Requirements

  • 3 plus years of experience in Spunk (SIEM) Security Enterprise: architecting, configuring, deploying, and customizing the tool, preferably both in supporting the application and utilizing the application for information security monitoring, incident response, and compliance

  • Onboard new data sources to the Splunk environment as required by the customer Cybersecurity Team for monitoring by the client SOC

  • Configuration of Correlation Searches, Dashboard Searches, Risk Modifiers, Threat Intelligence Feeds, Workflow Actions and Enterprise Security content

  • Validate and Manage all Splunk forwarders reporting into the Splunk environment

  • Manage and optimize the Splunk environment, Enterprise Security Module and Phantom Module.

  • Implement new Correlation Rules (Correlation Searches) in the Splunk environment Enterprise Security Module

  • Ability to perform security analysis, development and implementation of security policies, standards, and guidelines

  • Perform ongoing development for additional use case and SIEM tuning.

  • Experience with implementation of Log Management and Analytics products - Splunk

You've read the whole posting — now see how you match it.