Jobs

Splunk Engineer


Job details
  • The People Network
  • Hemel Hempstead
  • 5 months ago
Applications closed





Splunk Engineer

Are you an experienced Splunk Engineer with a knack for SIEM tools and a desire for a new challenge? Join an established Cyber Security Operations team in the Aerospace, Defence, and Security Sector.
THIS ROLE IS BASED 5 DAYS A WEEK IN HEMEL HEMPSTEAD.
Essential Skills:

Must hold Splunk Cloud Certified Admin or Splunk Enterprise Certified Admin Certificate. Current or previous experience in a Senior Security Engineering role. Demonstrable experience in security incident response, malware analysis, SIEM design and configuration. Security solution design expertise. AWS and Azure certifications and practical experience. Be SC cleared or willing to undergo SC security clearance

Your Role:
Maintain and support the Security technology stack for our MSSP services. Build and Maintain Splunk solutions Manage support incidents and drive improvements in the Cyber Defence Feedback Loop. Be a Splunk specialist and offer Splunk expertise. Troubleshoot security and SIEM technologies in a fast-paced SOC environment. Resolve customer or Analyst needs by investigating health alerts, tuning rules, and making security policy recommendations.Responsibilities:
Inform security eco-system design for various environments (Cloud, on-prem, SaaS, PaaS, IaaS). Consult on third-party Splunk cloud hosting environments and best practices. Collaborate with Security Architects to shape security solutions in Splunk. Conduct security reviews and recommend improvements. Implement, maintain, and monitor operational security systems. Drive continuous service improvement. Perform extensive data analysis to enhance security controls. Share knowledge within the SOC and represent in meetings. Report on customer environment statuses and maintain log source issue tracks. Coordinate with SOC Analysts for rule updates and system administration. Assist in protecting critical cyber defence infrastructure. Investigate and respond to security incidents. Contribute to root cause analysis and lessons learned post-incident. Apply rule changes and act on behalf of the Security Engineering Lead when needed. A great opportunity to move your Splunk career forward and work on exciting security country critical projects.

If you are interested please apply ASAP. The People Network is an employment agency and will respond to all applicants within three - five working days. If you do not hear within these timescales please feel free to get in touch.

Sign up for our newsletter

The latest news, articles, and resources, sent to your inbox weekly.

Similar Jobs

SIEM Principal Engineer

The OpportunityA successful candidate will be responsible for the day-to-day support and operations of several SIEM solutions within our Leeds based SOC. Roles and responsibilities for this role include, but may not be limited to: Maintaining the NCC Group SOCs SIEM platforms Onboard and manage SIEM event sources and transition...

NCC Group

Endpoint Security Engineer

Job Opportunity: Endpoint Security EngineerOur client, a leading organisation in the technology field, is seeking a skilled and dedicated Endpoint Security Engineer to join their team on a temporary basis. This is an amazing opportunity to contribute to a renowned company and make a lasting impact in the world of...

Adecco Chester

Senior DevSecOps Engineer - OVN

Job DescriptionVisa is looking for Senior DevSecOps Engineer who will help build Open VisaNet, Visa's Next generation payment processing platform developed on Open Systems, that will fuel growth in electronic payments globally and drive financial inclusion in many parts of the world.Open VisaNet, the Next Generation VisaNet, will push the...

Visa Reading

Full Stack Engineer

Job DescriptionThis position requires ability to obtain and maintain a Secret clearance AND requires at least an Interim Secret to start.This Full Stack Engineer role will design/architect and sustain Lockheed Martin Space Fleet Ballistic Missile (FBM) disconnected/private cloud providing Platform-as-a-Service solutions for program-wide application deployments. This position will report directly...

Lockheed Martin Silverdale

Principal Security Engineer

Responsible for the planning, design and build of SIEM detections; automation and SOC workflow enrichments. Strong understanding of current threat landscape, data ingest and telemetry requirements.Experience with SIEM platforms such as Splunk, Azure Sentinel, Qradar, Exabeam, etc. Python scripting MITRE Caldera and ATT&CK  Atomic Red Team SOAR automation and enrichment...

Oracle Reading

AWS SPECIALIST - Security Operations Centre

Principal accountabilities• Mentorship and Training: Provide ongoing coaching and support to SOC team members, fostering a culture of continuous learning and improvement.• Skill Development: Design and deliver training programs on AWS, security tools, and best practices to enhance the technical skills of the SOC team.• Incident Response Support: Guide the...

Finsbury Square