Splunk Engineer
100% Remote - EST Business Hours
12m Contract to Hire
** Unable to do C2C or Provide Sponsorship**
Statement of Work:
The Splunk Admin/ Engineer will support a large team of infrastructure, security and application team during migration of on-prem and cloud applications to the client Azure Government enclave. The Splunk Admin/Engineer will configure, operate and maintain the Splunk environment across data sources and user needs in a multi cloud environment. In addition, will be responsible for data ingestions, search query writing, scripting, data visualization, Splunk architecture changes, and deployment. This role will also support the security assessment and authorization/ ATO team and provide input for security audits. He/She will be working closely with the SOC and incident response teams to investigate incidents.
Required Skills:
• 5+ years’ experience configuring, deploying and maintaining and optimizing Splunk:
• Administer and manage the day-to-day operations of the Splunk Environment
• Oversee Splunk indexers, search heads, forwarders to ensure optimal performance
• Implement and manage federated queries, Splunk dashboards, alerts, and reports.
• Integrate Splunk with various data sources and external platforms (including other SIEM tools) in a multi cloud environment
• Develop and maintain Splunk Knowledge objects, queries, and advanced data visualization
• Perform Splunk upgrades, patching, and routine maintenance tasks
• Troubleshoot and resolve issues related to Splunk installation, data inputs, and log parsing
• Work closely with the SOC team to monitor and analyze logs, reports and alerts
• Strong knowledge of Search Processing Language (SPL) to query and manipulate data
• Experience in Operating System administration for the platforms Splunk runs on (RHEL, Linux, Windows)
• Familiarity with Shell commands and scripting for automation
• Design, implement, and maintain Splunk apps and add-on.
Required Qualifications:
• Bachelor’s degree in a related field
• U.S. Citizen
• Ability to acquire a Public Trust Background investigation
Preferred Skills:
• Splunk Enterprise Certified Administrator (SECA)
• Familiarity with cloud platforms and integration with Splunk
• Knowledge of other security tools
• Experience with automation tools (e.g. Ansible, Puppet, or Chef)
•Certified in industry recognized areas such as CISSP, CISA, or CISM
• Excellent organization, collaboration, project management, and team leadership skills
• Strong communication skills and experience creating and delivering compliance status and metrics briefings to senior leadership
BENEFITS OF WORKING WITH BROOKSOURCE:
We are an equal opportunity employer and value diversity at our company. We do not discriminate based on race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.
...We are a growing office looking to add another dental assistant who will make the dentists office visit more efficient and pleasant for patients, and must be well-organized with great attention to detail. A full-time position and experience with eagle soft is a plus...
...Construction Design Engineer Location: St. Paul Were seeking a Construction Design Engineer to join our team and work on exciting projects across the Midwest, including rail transit, bridges, railroads, and industrial sites. Responsibilities: Design temporary...
Aonic - Field Sales Manager Location: San Francisco (On-site, full-time 5 days a week) Reports to: Vice President of Retail Sales and CEO About the Company Aonic is redefining the functional wellness space with a platform spanning a range of category-defining products...
...modern therapies to help patients achieve optimal wellness. Position Overview: We are seeking a skilled and compassionate Nurse Practitioner with experience in joint injections to join our growing team. The ideal candidate will have a strong background in...
...care system located near Grafton, ND looking for a radiologist assistant to join their team! The schedule is Monday- Friday 8:30a-4p.... ...that documentation is completed so that the needs of the radiology physician are met, i.e., appropriate reason for exam. Maintains...