Splunk Detection Engineer

🕒 Janeiro 8

🗣️🇺🇸🇬🇧 Inglês obrigatório

Candidatar-se
Encontrar Vagas Remotas Similares

📊 Verifique sua pontuação de currículo para esta vaga

Melhore suas chances de conseguir uma entrevista verificando sua pontuação de currículo antes de se candidatar.

Logo of Boston Government Services, LLC (BGS)

Boston Government Services, LLC (BGS)

201 - 500 funcionários

Fundada em 2007

🔒 Cibersegurança

🏛️ Governo

⚡ Energia

Cybersecurity • Government • Energy

A Boston Government Services, LLC (BGS) é uma empresa que fornece soluções de engenharia, tecnologia e cibersegurança principalmente para o governo federal e o setor de energia. Localizada em Oak Ridge, TN, a BGS oferece uma gama de serviços, incluindo gestão ambiental, operações nucleares, energia renovável e conformidade com padrões de cibersegurança como o CMMC. A empresa se orgulha de entregar soluções de alto valor para ambientes complexos e altamente regulamentados.

Descrição

• Integrate new data sources, which may include databases, APIs, files, etc. • Validating and creating appropriate configurations for CIM compliant logs • Processing requests from cybersecurity analysts for new detections within Splunk Enterprise Security • Analyzing existing logs to identify poorly formatted logs and potential gaps when implementing new detections • Adding and maintaining threat feeds within Splunk Enterprise Security • Monitoring the performance of and tuning detections • Managing asset and identity inventory within Splunk Enterprise Security • Creating and maintaining new Splunk apps • Recommending additions or changes to Splunk or its data models to meet detection needs • Developing searches, reports, and other functionalities for cyber-based use-cases, including active response, intrusion detection, vulnerability management, and related use cases • Assisting users with creating and optimizing searches and dashboards and mentoring others in good development of said resources • Attend online/Teams meetings with team and others as appropriate • Work with team to provide status on current task, suggest improvements, discuss implementation, etc.

🎯 Requisitos

• Significant experience with Splunk and Splunk Enterprise Security • Significant experience with event logging solutions (e.g., Splunk Universal Forwarder, syslog, Cribl) • Experience with ticketing/case management • Experience with Git pipelines • Familiarity with using Linux CLI • Ability to craft queries using common languages; comfort with regex, JSON and APIs; basic scripting in Python/PowerShell/Bash • Excellent analytical, problem-solving, and communication skills both with stakeholders, peers, and internal customers; able to operate under pressure in a shift or on-call environment • Considerable knowledge using and administering Splunk • Staying up to date with the latest cybersecurity threats, vulnerabilities, and best practices • Strong analytical and problem-solving skills • Meticulous attention to detail to ensure thorough assessments and accurate reporting • Excellent written and verbal communication skills to effectively convey findings and recommendations to technical and non-technical stakeholders • Ability to work collaboratively with other cybersecurity professionals, IT staff, and external vendors • Experience and skill in conducting audits or reviews of technical systems • Experience working in a government environment • Experience working in a distributed IT environment • Ability to qualify for HSPD-12 card for use in two-factor authentication

🏖️ Benefícios

• Health, Dental, Vision, Life Insurance • Paid Vacation • 401K • Long and Short-Term Disability

Candidatar-se

Vagas Similares

🕒 Janeiro 8

RAYZON GREEN PVT LTD

51 - 200

⚡ Energia

🤝 B2B

Engineer specializing in rooftop solar solutions for the renewable energy sector. Leading EPC projects from design to commissioning in a remote role.

🇺🇸 Estados Unidos – Remoto (EUA)

⏰ Tempo Integral

🟡 Pleno

🟠 Sênior

👷🏻‍♀️ Engenheiro

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Janeiro 7

ActioNet, Inc.

1001 - 5000

🤖 Inteligência Artificial

🔒 Cibersegurança

AWS/EMR Engineer providing engineering and operational support for secure cloud-based data processing environments. Designing and optimizing scalable compute and storage platforms while maintaining data product compliance.

🇺🇸 Estados Unidos – Remoto (EUA)

⏰ Tempo Integral

🟡 Pleno

🟠 Sênior

👷🏻‍♀️ Engenheiro

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Janeiro 6

CDW

10.000+ funcionários

🏢 Corporativo

☁️ SaaS

🔒 Cibersegurança

Manage and maintain IT infrastructure environments for Managed Services customers at CDW. Provide support services including implementation, upgrades, and incident management while ensuring operational stability.

🇺🇸 Estados Unidos – Remoto (EUA)

💵 $69.000 - $106.380 / ano

💰 Post-IPO Equity em 2015-07

⏰ Tempo Integral

🟡 Pleno

🟠 Sênior

👷🏻‍♀️ Engenheiro

🦅 Patrocina Visto H1B

info

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Janeiro 5

Vannevar Labs

11 - 50

🤖 Inteligência Artificial

🔐 Segurança

Forward Deployed Engineer handling mission-critical software solutions for national security at Vannevar Labs. Collaborating with operators and analysts to deliver reliable software capabilities.

🇺🇸 Estados Unidos – Remoto (EUA)

💵 $135.000 - $205.000 / ano

💰 $12.000.000 Series A em 2021-08

⏰ Tempo Integral

🟡 Pleno

🟠 Sênior

👷🏻‍♀️ Engenheiro

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Dezembro 25, 2025

MOXFIVE

11 - 50

🔒 Cibersegurança

☁️ SaaS

🤝 B2B

Senior Restoration Engineer at MOXFIVE leading technical restoration efforts during incidents. Collaborating with teams to ensure swift infrastructure recovery from disasters.

🇺🇸 Estados Unidos – Remoto (EUA)

💵 $95.000 - $150.000 / ano

⏰ Tempo Integral

🟠 Sênior

👷🏻‍♀️ Engenheiro

🗣️🇺🇸🇬🇧 Inglês obrigatório