SightSpectrum LLC
Hi Professional, Hope you are doing great.
Please find the below Job description for your reference.
And kindly share me your candidate resume Position Splunk Engineer Term Contract Duration Long Term Immediate Joiners preferred.
Job Description Experience in Splunk and utilizing SIEM tools.
Real-time experience with Splunk or security sources security and cloud experience.
Responsible for content creation, content monitoring, and content onboarding for cloud service provider logs.
Should have cloud experience and Splunk content experience.
Experience in mid-leveladvanced Splunk query language is a requirement.’ Responsible for data feed migration from a 3rd party MSSP to our Enterprise Splunk environment.
The candidate will work with a technical resource on the system infrastructure side to deploy the Splunk Universal Forwarder on all hosts and work to set up the flow of data between the hosts and the Enterprise Splunk environment.
The log sources include, but not limited to 1
– Host Based logs for all instances (Security, AD, and any local text files) 2
– O365 logs 3
– Azure logs 4
– AWS Cloudtrail, GuardDuty (and various services) 5
– Web Application Firewall Should have proper cloud experience to understand Azure and Amazon Web Services components and best practices to log each.
Once the data is onboarded, the candidate will normalize all data to the Splunk Common Information Model for another team to create content off of.’ Supporting existing enterprise splunking and monitoring infrastructur