Role Title: Hardware Specialist
Duration: 6 Months
Location: Remote
Umbrella only
£560 per day
Would you like to join a global leader in consulting, technology services and digital transformation?
Our client is at the forefront of innovation to address the entire breadth of opportunities in the evolving world of cloud, digital and platforms.
Role purpose / summary
Technical knowledge across a range of SIEM platforms (MS Sentinel, QRadar, DEVO, Splunk, Huntsman etc)
Onboarding of Data Sources, Logs/Event sources to the SIEM platform
SIEM platform tuning / configuration / parsing / Removal of false positives
Production of SIEM Use cases & Playbooks
SIEM Platform Capacity Management
SIEM Platform Level 3 Device Maintenance
Vendor engagement for software updates
SIEM Platform Testing
Execution of technical integrations identified by the Lead Security TDA & Security TDA
Process any Unresolved Issues, False Positives and Create Advanced Correlation rules
Implement Use cases in Production & Run books.
Improve/Integrate New Technological Components to reduce MTTD and MTTR
Validate Logging as per Logging Framework.
Manage Tooling issues and Licensing
Technical knowledge across a range of SIEM platforms (MS Sentinel, QRadar, DEVO, Splunk, Huntsman etc)
Onboarding of Data Sources, Logs/Event sources to the SIEM platform
SIEM platform tuning / configuration / parsing / Removal of false positives
Production of SIEM Use cases & Playbooks
SIEM Platform Capacity Management
SIEM Platform Level 3 Device Maintenance
Vendor engagement for software updates
SIEM Platform Testing
Execution of technical integrations identified by the Lead Security TDA & Security TDA
Process any Unresolved Issues, False Positives and Create Advanced Correlation rules
Implement Use cases in Production & Run books.
Improve/Integrate New Technological Components to reduce MTTD and MTTR
Validate Logging as per Logging Framework.
Manage Tooling issues and Licensing
All profiles will be reviewed against the required skills and experience. Due to the high number of applications we will only be able to respond to successful applicants in the first instance. We thank you for your interest and the time taken to apply