Job Seekers, Please send resumes to resumes@hireitpeople.com
Job Responsibilities:
- The successful candidate will work alongside a small team to provide administration and incident response to our workstation and server environment (15k+ machines) utilizing modern malware-detection and incident-response techniques and technologies.
- Primarily responsible for development, administration, and maintenance of the organization’s SIEM tool, SPLUNK.
- Maintain up-to-date security baselines for the secure configuration and operation of security tools and endpoint devices in use within the organization.
- Utilizing modern log aggregation tools and analyzers, review logs and reports, interpret the implications of activity and devise plans for appropriate resolution.
- Collaborate with IT, security, human resources, and the legal office to ensure full legal compliance of company policies, procedures, forms, notices, and materials.
- Produce procedural/process documentation pertaining to the configuration/operation of the organizations SIEM, and reviews/revises existing documentation periodically.
- Other duties as assigned
Requirements:
- Proven track record of administering SPLUNK including:
- Extensive experience with the ES Module (Enterprise Security) - 2 years minimum
- Monitoring/troubleshooting/administration - 2 years minimum
- Design/creation of SPLUNK dashboards - 2 years minimum
- Professional oral and written communication skills
- Extensive Windows security administration experience - 5 years minimum
- Linux operating systems – Preferred
- Cyber-Security related accreditations such as CISSP, CISA, CISM, CCSP, CompTIA Security+, GSEC, SSCP, or others – Preferred
- Must adhere to and pass annual background checks. – No Felony convictions.
Experience required: 5 Years