Cybersecurity SIEM Engineer – Splunk

at RED SKY Consulting
Published September 15, 2023
Location Issaquah, WA
Category Default  
Job Type Full-time  

Description

Job Title: Cybersecurity SIEM Engineer - Splunk
Location: Issaquah, WA or Dallas, TX (Hybrid, onsite 25%)
Type: Direct Hire
Bottom Line / In a Nutshell

  • Minimum of 5 years’ experience within Cybersecurity and SIEM technologies, with at least three years of direct Splunk application development (not just maintenance)
  • Familiarity with log parsing, data models and how they relate to SIEMs, and Splunk, specifically.
  • Familiarity with scripting/programming languages. Strong Python skills preferred.
  • Working knowledge of developing applications in a DevOps or DevSecOps environment.
  • Must have experience with Azure
  • Ability to mentor team members

Job Description:
The Cybersecurity SIEM Engineer will design, implement, and operate a Splunk SaaS SIEM within the Logging and Detection Engineering team, while also integrating other technologies and platforms.
Role & Responsibilities

  • Develops custom Splunk applications to support other SOC-related teams within the department.
  • Writes custom detections to detect and alert on threat actor activity.
  • Writes custom Python code to integrate applications with cloud technologies such as Event Hubs.
  • Integrates other Splunk and non-Splunk environments into a global SIEM.
  • Creates the roadmap for addressing logging gaps, maturity improvements and innovation.
  • Works with Enterprise Monitoring team to seamlessly integrate platforms.

Required:

  • Minimum of 5 years’ experience with SIEM technologies, with at least three years of direct Splunk application development
  • Familiarity with log parsing, data models and how they relate to SIEMs, and Splunk, specifically.
  • Familiarity with scripting/programming languages. Strong Python skills preferred.
  • Working knowledge of developing applications in a DevOps or DevSecOps environment.
  • Good working knowledge of authentication protocols such as Kerberos, SAML, and OAUTH.
  • Hands-on proficiency with Microsoft Windows and GNU/Linux.
  • Strong understanding of cloud computing, web technologies, and networking protocols.
  • Scheduling flexibility to meet the needs of the business including evenings, weekends, and holidays.

Recommended:

  • Ability to train and mentor other Splunk users with a positive attitude.
  • One or more Splunk certifications.
  • One or more SANS certifications.
  • Customer-first and team-oriented mindset.
  • Strong attention to detail.

This Is a Great Opportunity With a First-class Company
SIEM Engineer – Splunk

RED SKY Career Opportunities at: redskyconsulting.co/career-portal

SIEM Engineer – Splunk
RED SKY Consulting Candidate and Client Referral Program!
2500
Do you know other IT professionals?
Turn those relationships into Money & help friends get work
RED SKY Consulting is offering a fantastic opportunity for you to earn extra money.
If you refer to us a Manager of people or skilled professionals, we will link your name to that person for 18 months.
If we employ or place that individual or place people into that company thru that manager
SIEM Engineer – Splunk

RED SKY Consulting Company Overview
We are an IT and Cybersecurity staffing solutions, professional services, management consulting, and executive placement company with thousands of resources across multiple IT and Cybersecurity skill sets. Our primary US locations are Chicago, New York, Los Angeles, Atlanta, Nashville, Tampa and Denver and we have organizational arms in other domestic cities along with offshore alliances in India and Ireland. RED SKY has a 15+ year history of providing great technology talent. RED SKY has many clients including; 7 of the Fortune 10, half of the Fortune 100, and 25% of the Fortune 500 companies within the manufacturing, financial services, health care, government, consumer services, insurance, and several other industry verticals represented.
The RED SKY Foundation is being formed and will be providing fully funded college educations to underprivileged young adults in partnership with our clients starting 2022.

Keys: SIEM Engineer, Splunk, Cybersecurity, Azure, Development, SIEM Engineer, Splunk, Cybersecurity, Azure, Development, SIEM Engineer, Splunk, Cybersecurity, Azure, Development, SIEM Engineer, Splunk, Cybersecurity, Azure, Development
XXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXX