FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expert-level knowledge of Splunk Enterprise Security and extensive experience in managing SIEM systems, including the ability to develop and implement security logging and threat detection strategies. Proficient in training and mentoring team members while providing high-quality client support and consulting services.
Highest-signal resume keywords
Expert-Level Knowledge Of Splunk Enterprise Security5+ Years Managing SIEM SystemsWriting SIEM Content For SplunkExperience With Unix And Linux Operating SystemsBuilding Threat Detections Using Security Logs
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
SIEM ManagementSplunk Enterprise SecurityRegular Expressions (Regex)Security LoggingThreat DetectionLog AggregationCustom Applications DevelopmentDashboard CreationReport GenerationAlert Configuration
Soft Skills
MentorshipClient InteractionProblem-SolvingTeam DevelopmentCommunication
Tools & Technologies
Splunk CORESplunk Search HeadSplunk Indexer ClustersEDRsFirewallsActive Directory
Industry Keywords
Managed ServicesService DeliveryNetwork ArchitectureSecurity LogsClient Onboarding
Tech Stack
Tools & technologiesFirewallsLinuxSplunkUnix
About the role
Key responsibilities & impact- Help lead the Splunk team by prioritizing client work requests, projects, and service tasks
- Define processes and procedures for internal projects with Management, Service Delivery, and Principal Engineers
- Analyze and identify improvements to existing processes, procedures, and documentation
- Assist in team development by defining strategies and responsibilities
- Develop internal training methods for Managed Services and clients
- Act as an escalation point for Junior SIEM Engineers and provide guidance and mentorship
- Assist with client activation and onboarding
- Explain and demonstrate SIEM products to technical and relatively non-technical personnel
- Provide remote consulting services through interactive client sessions for implementation of multiple product vendors and technologies
- Implement and configure SIEM software and appliance-based products in Enterprise and Government environments
- Develop, deploy, and tune SIEM content and reporting
- Interact appropriately and professionally with customers and partners
- Perform knowledge transfers and train clients on security and system configuration
- Review team members’ work to confirm it meets Optiv’s quality standards
- Provide shift-based 24/7 support as required; no direct reports
Requirements
What you’ll need- 5+ years professional experience managing and maintaining SIEM systems
- 2-3 years professional experience working with networks and network architecture
- 1+ year professional experience writing SIEM content specifically for Splunk
- Ability to deal confidently with complex technical problems
- Expert-level knowledge of Splunk Enterprise Security
- Experience building intricate searches from disparate data sources and joining them together
- Extensive experience using the Enterprise Security Asset & Identity and Threat Intelligence Framework within Splunk Enterprise Security
- Proficient with managing Unix and Linux operating systems
- Strong experience writing complex regular expressions (Regex) to extract fields for structured and unstructured data
- Experience with extracting fields, multi-value fields, tags, field aliases, etc.
- Well-versed in building threat detections (correlation rules) using security logs
- In-depth knowledge of security logging for Linux, Windows, major EDRs, firewalls, and Active Directory
- Experience installing and configuring Splunk CORE and Splunk Enterprise Security
- Ability to aggregate and analyze logs from various deployed security devices
- Experience configuring and/or working with Splunk Search Head and/or Indexer Clusters
- Experience creating custom applications, dashboards, reports, and alerts
- Shift flexibility, including the ability to provide on-call support when needed
Benefits
Comp & perks- A company committed to our inclusive value through our Employee Resource Groups
- Work/life balance
- Professional training resources
- Creative problem-solving and the ability to tackle unique, complex projects
- Volunteer Opportunities through “Optiv Chips In”
- The ability and technology necessary to productively work remotely/from home (where applicable)
