Leave us your email address and we'll send you all the new jobs according to your preferences.
Splunk Enterprise IT-Security Engineer - 95% Remote - Freelance
Posted 2 days 18 hours ago by Consol Partners
Splunk Enterprise IT-Security Engineer
Initial 9 month contract + option to extend
Remote (95%)/Essen, Germany (5%)
ASAP start
Client:
A leading energy company.
Tasks:
Cleaning up the grown and existing Splunk Enterprise Security platform/landscape
Support the administration and improvement of Splunk Enterprise Security
Creation and implementation of concepts for the connection and maintenance of data sources and expansion of an existing SIEM installation
Experience with Splunk SIEM in the cloud and on-premise
Supporting the development and optimisation of efficient security monitoring and attack detection
Design of security rules in consultation with the incident response teams
Must-haves:
Extensive experience in IT security: SOC, Splunk Enterprise Security and attack detection
Extensive experience with using Splunk to analyse log data and attack detection
Practice in the design, implementation and maintenance of use cases and playbooks
Ability to design and create dashboards and use data models
Understanding of common standards and frameworks, such as ISO 2700x, Mitre ATT&CK, CIS and NIST
Experience in the IT and OT environment
Technical and business fluent in English; German is a plus