boothgerma.blogg.se

Splunk enterprise security siem
Splunk enterprise security siem







No editorializing and no political agendas. This is the guiding principle for all posts. No fundamental security questions or tech support requestsīasic questions on security concepts and fundamentals and requests for tech support are not appropriate for this subreddit. Posts related to burglar alarms, weapons, and similar concepts are not appropriate for this sub. This is not a general security subreddit. Must be relevant to security professionals For example, "why passwords are important" is too fundamental. "This security forum is oriented towards private white hat security professionals." If a post has very basic information, it is not appropriate for this sub. Please note, the 'old' Reddit is no longer kept up to date. All qualified applicants will receive consideration for employment without regard to race, color, national origin, religion, creed, physical or mental disability, marital status, sexual orientation, veteran status, age, gender identity, or any other applicable basis that is protected by foreign, federal, state or local law, ordinance or regulation.This security forum is oriented towards private white hat security professionals. Secunetics is committed to creating a diverse environment and is proud to be an equal opportunity employer. Awareness and experience with Continuous Monitoring and Diagnostics (CDM).Ability to use Ethernet traffic analysis tools (TAPs, traffic brokers, etc.).Familiarity with enterprise management and performance engineering concepts.Experience with SOAR (Security Orchestration Automation and Response).Case management experience with Splunk Enterprise Security.Experience with machine learning tools such as UBA (User Behavior Analytics).Splunk Certified Administrator certification or higher.Active US Secret or Top Secret clearance.If you have any of the following, it would be a bonus: Experience with technical writing and creation of formal documentation such as reports, training material, slide decks, and architecture diagrams.Solid experience with scripting for automation.Experience with security technologies (IDS, IPS, FW, AV, Proxies, DLP, PKI, SSL/TLS, SSL visibility, VPN).Experience with administering platform technologies (Windows, Linux).Strong understanding of networking technologies (routing protocols, switching, TCP/IP).Experience with one or more network vendors: Cisco, Juniper, ForeScout, HP, Dell, Gigamon, InfoBlox, or Microsoft.Experience with installation, configuration and integration of security tools.Experience managing network tools in an enterprise environment that include: firewalls, endpoint monitoring tools, vulnerability scanning assessment tools.Experience with enterprise level networking tools, processes, and systems.Experience with utilizing SIEM for data collection, data enrichment, querying, dashboard development, API integrations, and operations.Strong understanding of SIEM configuration, administration, capacity planning, health monitoring, tuning, and integration.Experience creating visualizations and custom queries to manipulate views and gather metrics.Experience utilizing logs for information security monitoring, incident response, and compliance.3+ years of technical experience with Splunk, or equivalent SIEM as an Engineer or Administrator.Minimum of 3 years of network and security experience.We are looking for a team member with the following skills/experience : You are a hobbyist and have a really cool lab environment set up in your basement.You enjoy interacting with clients to satisfy their goals and objectives.You have a strong interest in cyber security and IT infrastructure performance.You have strong communication skills (listening, verbal, and written).You have an eye for details and consistency.You are committed to work with a like-minded team to learn and grow in your field of expertise.You keep on top of changes in security products and breaches.You are passionate and curious about technology.You are a US Citizen and are able to be clearable to the TS level.We value creative, strategic thinkers with demonstrated interest and skills in cyber security. You will integrate threat intelligence capabilities into new and existing client enterprises and design IT security solutions based on client requirements. We are looking to grow our security team to support the prevention and detection of cyber attacks for federal and commercial enterprise clients as well as meet your individual career goals. We are a focused team of enthusiastic colleagues working together on a diverse and challenging set of projects. We work with our clients to fully profile network structures, behaviors, and security. Secunetics provides network infrastructure intelligence services to government agencies and commercial clients.









Splunk enterprise security siem