Splunk Detection Engineer

🕒 il y a 5 mois

🗣️🇺🇸🇬🇧 Anglais requis

Postuler Maintenant
Trouver des Emplois à Distance Similaires

📊 Vérifiez votre score de CV pour ce poste

Améliorez vos chances d'obtenir un entretien en vérifiant votre score de CV avant de postuler.

Logo of Boston Government Services, LLC (BGS)

Boston Government Services, LLC (BGS)

201 - 500 employés

Fondée en 2007

🔒 Cybersecurity

🏛️ Gouvernement

⚡ Énergie

Cybersecurity • Government • Energy

Boston Government Services, LLC (BGS) est une entreprise qui fournit des solutions en ingénierie, technologie et cybersécurité principalement pour le gouvernement fédéral et le secteur de l'énergie. Située à Oak Ridge, TN, BGS offre une gamme de services incluant la gestion environnementale, les opérations nucléaires, les énergies renouvelables et la conformité avec les normes de cybersécurité telles que le CMMC. L'entreprise est fière de proposer des solutions de grande valeur pour des environnements complexes et hautement réglementés.

Description

• Integrate new data sources, which may include databases, APIs, files, etc. • Validating and creating appropriate configurations for CIM compliant logs • Processing requests from cybersecurity analysts for new detections within Splunk Enterprise Security • Analyzing existing logs to identify poorly formatted logs and potential gaps when implementing new detections • Adding and maintaining threat feeds within Splunk Enterprise Security • Monitoring the performance of and tuning detections • Managing asset and identity inventory within Splunk Enterprise Security • Creating and maintaining new Splunk apps • Recommending additions or changes to Splunk or its data models to meet detection needs • Developing searches, reports, and other functionalities for cyber-based use-cases, including active response, intrusion detection, vulnerability management, and related use cases • Assisting users with creating and optimizing searches and dashboards and mentoring others in good development of said resources • Attend online/Teams meetings with team and others as appropriate • Work with team to provide status on current task, suggest improvements, discuss implementation, etc.

🎯 Exigences

• Significant experience with Splunk and Splunk Enterprise Security • Significant experience with event logging solutions (e.g., Splunk Universal Forwarder, syslog, Cribl) • Experience with ticketing/case management • Experience with Git pipelines • Familiarity with using Linux CLI • Ability to craft queries using common languages; comfort with regex, JSON and APIs; basic scripting in Python/PowerShell/Bash • Excellent analytical, problem-solving, and communication skills both with stakeholders, peers, and internal customers; able to operate under pressure in a shift or on-call environment • Considerable knowledge using and administering Splunk • Staying up to date with the latest cybersecurity threats, vulnerabilities, and best practices • Strong analytical and problem-solving skills • Meticulous attention to detail to ensure thorough assessments and accurate reporting • Excellent written and verbal communication skills to effectively convey findings and recommendations to technical and non-technical stakeholders • Ability to work collaboratively with other cybersecurity professionals, IT staff, and external vendors • Experience and skill in conducting audits or reviews of technical systems • Experience working in a government environment • Experience working in a distributed IT environment • Ability to qualify for HSPD-12 card for use in two-factor authentication

🏖️ Avantages

• Health, Dental, Vision, Life Insurance • Paid Vacation • 401K • Long and Short-Term Disability

Postuler Maintenant

Emplois Similaires

🕒 il y a 5 mois

RAYZON GREEN PVT LTD

51 - 200

⚡ Énergie

🤝 B2B

Engineer specializing in rooftop solar solutions for the renewable energy sector. Leading EPC projects from design to commissioning in a remote role.

🇺🇸 États-Unis – Télétravail

⏰ Temps Plein

🟡 Intermédiaire

🟠 Senior

👷🏻‍♀️ Ingénieur

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 5 mois

ActioNet, Inc.

1001 - 5000

🤖 Intelligence artificielle

🔒 Cybersecurity

AWS/EMR Engineer providing engineering and operational support for secure cloud-based data processing environments. Designing and optimizing scalable compute and storage platforms while maintaining data product compliance.

🇺🇸 États-Unis – Télétravail

⏰ Temps Plein

🟡 Intermédiaire

🟠 Senior

👷🏻‍♀️ Ingénieur

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 5 mois

CDW

10 000+ employés

🏢 Entreprise

☁️ SaaS

🔒 Cybersecurity

Manage and maintain IT infrastructure environments for Managed Services customers at CDW. Provide support services including implementation, upgrades, and incident management while ensuring operational stability.

🇺🇸 États-Unis – Télétravail

💵 $69 000 - $106 380 / an

💰 Post-IPO Equity en 2015-07

⏰ Temps Plein

🟡 Intermédiaire

🟠 Senior

👷🏻‍♀️ Ingénieur

🦅 Parrain de Visa H1B

info

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 5 mois

PerkinElmer

5001 - 10000

🔬 Science

💊 Pharmaceutique

⚕️ Assurance santé

Project Engineer/Senior Project Engineer at PerkinElmer working on biomanufacturing projects. Delivering high-quality work while supporting business growth through client collaboration and technical delivery.

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 5 mois

Vannevar Labs

11 - 50

🤖 Intelligence artificielle

🔐 Sécurité

Forward Deployed Engineer handling mission-critical software solutions for national security at Vannevar Labs. Collaborating with operators and analysts to deliver reliable software capabilities.

🇺🇸 États-Unis – Télétravail

💵 $135 000 - $205 000 / an

💰 €12 000 000 Series A en 2021-08

⏰ Temps Plein

🟡 Intermédiaire

🟠 Senior

👷🏻‍♀️ Ingénieur

🗣️🇺🇸🇬🇧 Anglais requis