Connecting...

"We tell it like it is!"

Splunk Expert

Job Title: Splunk Expert
Contract Type: Contract
Location: Leeds, West Yorkshire
Industry:
Salary: Up to £550 per day
Start Date: ASAP
Reference: JO0000000734_1524673543
Contact Name: Prospectus
Contact Email: Ian@prospectus.co.uk
Job Published: April 25, 2018 17:25

Job Description

Contract Splunk Expert

Candidates in this role will analyse information and intelligence relevant to threats facing the systems, infrastructure, and resources critical to Client. Ideal candidates will be experienced in analysing cyber threats and security intelligence and determining indicators of compromise that are relevant to the Client environment. Must display enthusiasm for and interest in Information Security. Must have experience in Linux and Windows operating systems. Candidates in this role may also be required to follow the incident response plan and assist SOC Response Analysts when necessary. Must display enthusiasm for and interest in Information Security.

Standard Job Requirements
* Provide L2 triage investigation of security incidents
* Provide communication and escalation throughout the incident per the CSIRT guidelines
* Communicates directly with data asset owners and business response plan owners during high severity incidents
* Hunting for suspicious anomalous activity based on data alerts or data outputs from various toolsets
* Perform analysis of log files
* Takes an active part in the containment of incidents, even after they are escalated
* Escalating issues when necessary

Technical Competencies
* Knowledge of network security zones, firewall, IDS
* Knowledge of log formats for syslog, http logs, DB logs and how to gather forensics for traceability back to event
* Knowledge of packet capture and analysis
* Experience with log management or security information management tools
* Experience with Security Assessment tools (NMAP, Nessus, Metasploit, Netcat)
* Ability to make information security risk determinations
* Effective verbal and written communication skills

Training, Qualifications, and Certifications

Preferred:
Splunk
Security Essentials
Intrusion Detection In Depth
CEH/CISSP
QRadar SIEM

Recommended:
Hacker Guard: Security Baseline Training
Advanced Security Essentials
Hacker Techniques,
Exploits & Incident Handling

Get similar jobs like these by email

By submitting your details you agree to our T&C's