Splunk Security Engineer - REF3556C (Budapest)

Splunk Security Engineer - REF3556C (Budapest)
Jelentkezem az állásra ›

 

The largest ICT employer in Hungary, Deutsche Telekom IT Solutions (formerly IT-Services Hungary, ITSH) is a subsidiary of the Deutsche Telekom Group. Established in 2006, the company provides a wide portfolio of IT and telecommunications services with more than 5000 employees. ITSH was awarded with the Best in Educational Cooperation prize by HIPA in 2019, acknowledged as one of the most attractive workplaces by PwC Hungary’s independent survey in 2021 and rewarded with the title of the Most Ethical Multinational Company in 2019. The company continuously develops its four sites in Budapest, Debrecen, Pécs and Szeged and is looking for skilled IT professionals to join its team.

Splunk Security Engineer - REF3556C

Tasks

  • Work with other members of the SOC and provide support in engineering related topics, i.e.: use-case development, maintenance, log parsing 
  • Possesses high quality knowledge about IT security tools, eg.: SIEM, SOAR, EDR 
  • Delivers complex changes on solutions which are part of the requested solution 
  • Optimizes in-place security solutions in the context of his/her specified task group 
  • Diagnoses complex issues 
  • Provides Colleagues with professional guidance, approves execution plans by SOC Colleagues 
  • Do lab testing of emerging cyber security technologies 
  • Develops technical documentation and operation manuals 
  • Works as a project resource, supports planning and execution of projects 

Requirements

  • Experience with performing systems administration, including performing installation, configuration, monitoring system performance and availability, upgrades and troubleshooting of Splunk
  • Experience in working in a Splunk clustered environment
  • Splunk forwarder deployment, configuration and maintenance on all Windows and Linux platforms
  • Knowledge of CIM 
  • Onboarding of new data sources into Splunk 
  • Analyse the data for anomalies 
  • Build new dashboards or enhance existing dashboards
  • Create alerts and trigger actions (send email, run script)
  • Utilize expertise in Splunk SPL language, Splunk Dashboards, Reports, Lookup Tables, and Summary Indexes.
  • Design and implement threat detection, automate incident response processes, integration of various security tools with SIEM and SOAR platforms via APIs.
  • Requires proficiency within a Windows and Linux environment, editing and maintaining Splunk configuration files and apps.
  • Familiarity with network topology, UDP, TCP, Proxys, Firewalls, Routers and Switches.
  • Scripting Experience (Python, etc)
  • Knowledge and Experience in GIT
  • Troubleshoots and debugs issues that arise.
  • Reliable English communication skills (both written and verbal)

PREFERRED QUALIFICATIONS

  • Splunk certification (e.g., Splunk Certified Power User, Splunk Certified Admin, etc ).
  • Experience with SIEM (Security Information and Event Management) systems.

Munkavégzés helye

Budapest

Budapest

Küldjünk emailt, ha hasonló hirdetés kerül az oldalra?

Ne maradj le egy jó állásról!

Állásajánlatok - legnépszerűbb városok