The Splunk SaaS Engineer (SE) will support a progressing team environment that supports the full system engineering life cycle, including requirements analysis, design, development, integration, scripting, programming, testing, documentation, and implementation following defined best practices and operational workflows. The SE will be a Cybersecurity team member and will install and maintain Splunk infrastructure, gather customer requirements, onboard data, and assist end users with searches, dashboards, reports, and knowledge objects. SE will need to understand the importance of Knowledge Objects, how they give form to the chaos of raw data within Splunk, and how a multi-dimensional data structure is created. SE will develop apps and add-ons and will collaborate with IHS stakeholders to define the objects to be created and developed, as well as Splunk Professional Services to develop, execute, and implement a Splunk SaaS. SE will assist in designing and implementing computer security strategies and architecture.
Job Duties and Responsibilities: Manage multiple assignments with changing priorities, and work independently with little oversightBuild, implement, and administer Splunk in Windows and Linux environmentsWork with existing and custom Splunk applications and add-ons to fulfill customer needsProvide overall engineering and design support for a distributed Splunk environment consisting of heavy forwarders, indexers, and search head servers, spanning security, performance, and operational rolesEditing and maintaining Splunk configuration files and appsProvider operational support Splunk Universal Forwarder on Linux and Windows endpointsCreate, manage, and support automation solutions for Splunk deployment and orchestration in on-premise and cloud environments Job Requirements (Education/Skills/Experience): Bachelor’s degree in Computer Science, Engineering, or a related field with a minimum of five years of experience in system administration, database administration, network engineering, software engineering, or software development, with a concentration in Cybersecurity3-5 years of experience with Linux and Windows system administration or an intermediate understanding of operating systems and common operating environmentsMinimum of three years of experience with Splunk in distributed deploymentsCurrent certification in at least one of the following:Splunk Core Certified ConsultantSplunk Enterprise Certified ArchitectSplunk Enterprise Security Certified AdministratorExperience implementing FISMA, NIST, NSA, and other information security, cybersecurity, and CDM-related industry policies, procedures, guidelines, standards, and best practicesExperience with Splunk Enterprise Security or integration with other Security Information and Event Management (SIEM) platformsProficient at data onboarding activities including routing, parsing, and normalizing events to the Splunk Common Information Model (CIM)Proficiency in onboarding data using Splunk-developed add-ons for Windows, Linux, and common third-party devices and applicationsExperience onboarding data into Splunk via forwarder, scripted inputs, TCP/UDP, and modular inputs from a variety of sourcesProficiency in managing Splunk using the Splunk command-line interfaceProficiency in managing Splunk using configuration filesExcellent written and oral skills, ability to work closely with multiple customers, manage expectations, and track engagement scopeExperience collaborating with separate engineering teams to configure data sources for Splunk integrationProficiency in implementing and onboarding data in Splunk DB ConnectExperience with Splunk performing systems administration, including performing installation, configuration, monitoring system performance and availability, upgrades, and troubleshootingGeneral networking and security troubleshooting (firewalls, routing, NAT, etc.)Splunk implementation and troubleshooting experienceExperience in managing, maintaining, and administering multi-site indexer clusterProficiency in developing log ingestion and aggregation strategies per Splunk best practicesPerform integration activities to configure, connect, and pull data with 3rd party software APIsProficient in regular expressionsAbility to autonomously prioritize and successfully deliver across a portfolio of projectsExpert in the Splunk M21-31 package from Splunk Professional ServicesWell-versed in implementing Splunk SaaS, Splunk SaaS User Behavior Analysis, and Splunk SaaS Enterprise capabilities. Expert in the Splunk M21-31 package from Splunk Professional Services Expert in the SaaS Security Enterprise, User Behavioral Analysis, and Splunk SaaS
Even better if you have:
Strong interpersonal skills, including mentoring, coaching, collaborating, and team building.Strong knowledge and understanding of business needs with the ability to establish/maintain a high level of customer trust and confidence.Excellent decision-making ability, balancing what is right with what is realistic.Flexibility to adjust to multiple demands, shifting priorities, ambiguity, and rapid change.Demonstrated ability to lead through influence and to deliver results through others.Strong verbal and written communication skills for various audiences, including proven ability to deliver conference presentations.Work with various levels of project managers, modelers, data stewards, and architects to design data-loading processes and identify potential problem areasCreative approach to problem-solving with the ability to focus on details while maintaining the "big picture" view. Options Apply for this job onlineApplyShareRefer this job to a friendRefer Sorry the Share function is not working properly at this moment. Please refresh the page and try again later. Share on your newsfeed Application FAQs
Software Powered by iCIMS
www.icims.com