Splunk Engineer
Are you an experienced Splunk Engineer with a knack for SIEM tools and a desire for a new challenge? Join an established Cyber Security Operations team in the Aerospace, Defence, and Security Sector.
THIS ROLE IS BASED 5 DAYS A WEEK IN HEMEL HEMPSTEAD.
Essential Skills:
1. Must hold Splunk Cloud Certified Admin or Splunk Enterprise Certified Admin Certificate.
2. Current or previous experience in a Senior Security Engineering role.
3. Demonstrable experience in security incident response, malware analysis, SIEM design and configuration.
4. Security solution design expertise.
5. AWS and Azure certifications and practical experience.
6. Be SC cleared or willing to undergo SC security clearance
Your Role:
7. Maintain and support the Security technology stack for our MSSP services.
8. Build and Maintain Splunk solutions
9. Manage support incidents and drive improvements in the Cyber Defence Feedback Loop.
10. Be a Splunk specialist and offer Splunk expertise.
11. Troubleshoot security and SIEM technologies in a fast-paced SOC environment.
12. Resolve customer or Analyst needs by investigating health alerts, tuning rules, and making security policy recommendations.
Responsibilities:
13. Inform security eco-system design for various environments (Cloud, on-prem, SaaS, PaaS, IaaS).
14. Consult on third-party Splunk cloud hosting environments and best practices.
15. Collaborate with Security Architects to shape security solutions in Splunk.
16. Conduct security reviews and recommend improvements.
17. Implement, maintain, and monitor operational security systems.
18. Drive continuous service improvement.
19. Perform extensive data analysis to enhance security controls.
20. Share knowledge within the SOC and represent in meetings.
21. Report on customer environment statuses and maintain log source issue tracks.
22. Coordinate with SOC Analysts for rule updates and system administration.
23. Assist in protecting critical cyber defence infrastructure.
24. Investigate and respond to security incidents.
25. Contribute to root cause analysis and lessons learned post-incident.
26. Apply rule changes and act on behalf of the Security Engineering Lead when needed.
A great opportunity to move your Splunk career forward and work on exciting security country critical projects.
If you are interested please apply ASAP. The People Network is an employment agency and will respond to all applicants within three - five working days. If you do not hear within these timescales please feel free to get in touch.