DL
SIEM-Splunk
Diverse Lynx India
Location not stated
Staff / Principal
3 months ago
- SIEM
- Splunk
- Azure
- AWS
- Azure Cloud
- Windows
- RHEL
- Unix
- Python
- Regulatory Compliance
3 months ago
Experience – 6 to 13 yrs
Job Description
The EnterpriseSIEM data engineering team is responsible for adhering to the Security Logging and Monitoring standard for the bank, also Governance, compliances, Access control, Automation, and data onboarding of different technologies.
This role will provide expert knowledge of Splunk platform engineering "hands on" for the proposal, data onboarding, and automation. The candidate will possess excellent subject matter expertise over a wide variety of security technologies and collaborate with other engineering teams. The Engineer must be up to date with the latest SIEM (Splunk & Azure Sentinel) security technologies and architecture.
This role will be responsible for solutions in areas such as, but not limited to:
- EnterpriseSplunk suite of applications, ITSI, UBA, CRIBL
- Microsoft Security Solutions (Sentinel, etc.)
- Virtualization and Cloud (Azure, Google, AWS)
- Advanced Security Technologies (Monitoring toolset.)
The successful candidate must have demonstrated expert ability to lead a team, drive deliverables, work with leadership on strategy, architect, engineer, design, build, support, and document solutions in these areas of Security Engineering working closely with Business, other Security Engineering teams and the wider Engineering teams to ensure built solutions enhance productivity and add business value.
Technical Requirements
It is expected that the Senior Engineer will have expert knowledge in a wide range of Security technologies, frameworks, tools, processes, and procedures. This role is looking for people with skills in as many of the below technology areas as possible:
- Advanced knowledge of Enterprise Splunk applications and robust working experience in Enterprise Splunk administration.
- Must have advance experience withCIM compliance
- Experience with Azure Cloud platform
- Expertise with Microsoft Security Solutions
- Existing knowledge of financial banks technical environment, tools, policies, procedures, and processes. This will reduce 'boot strapping' and training and allow for seamless integration for immediate capability delivery.
- Experience with Security as it applies to Cloud Solutions in Highly Virtualized Environments.
- Expert knowledge of Windows and/or RHEL/Unix log formats
- Proficient knowledge of Python scripting
- Understanding of network and server log formats
- Proficiency in Splunk ITSI and UBA is an added advantage.
- Advance dashboard and Alerting skills
- Advance knowledge of ITS and CRIBL a asset.
- Onboarding API's, DB's, and splunkbase apps.
Job Requirements
This role plays a critical role for the Security Engineering Organization in facilitating data onboarding, architectural, design, build, automation of Splunk environment. This includes interacting with leadership, Engineering teams, multiple lines of Business, Infrastructure teams, Application Development, Support, Vendors and Service Providers. The successful candidate must demonstrate an exceptional record of competence and a strong ability to communicate with other engineers, technology, and business partners.
Job Requirements include:
- Work autonomously on high profile, complex and/or high-risk technology initiatives with significant impact to the organization
- Expertise in assessing and selecting security tools and solutions that best meet the stated Security need at the Bank
- Extensive related work experience in building complex Security Engineering Infrastructure solutions with the ability to be a key contributor in a complex and critical environment.
- Experience with security regulatory / compliance requirements
- Developing and supporting less experienced team members with data onboarding which helps reduce the existing FD queue.
- Responsible for designing, implementing, and leading a Lunch and Learn program to demonstrate the value of existing and new capabilities of the PADE Team across the bank
- Enforce internal policies to maintain efficiency and responsiveness to demands made by both leadership and internal customers
- Assist with the management and allocation of staff to meet project goals and deadlines
- Ability to work with various stakeholders, understand their requirements, design, implement and support the onboarding of their data within targets set
- Experience in creating high level and technical presentations and communication skills to explain the approach to a varying audience
- Strong analytical, reasoning, and organizational skills are essential.
- Excellent verbal and written communications skills are essential.
- Ability to establish and maintain effective working relationships with all levels of personnel both internally and externally, e.g., leadership, executives, clients, vendors, and agencies.
- Proven ability to work in a fast-paced environment and manage multiple deadlines and priorities.
- Adapts to new different or changing requirements, quickly grasps new concepts adapts and reflects on lessons learned – comfortable with ambiguity, analyzes and evaluates, defines problem/challenge, identifies alternatives, and makes timely decisions
- Work closely & collaboratively with Internal Engineering, Deployment & Operations teams to drive design adoption across IT
- Experience with Vendor Management and coordination concepts from multiple facets of the industry
- Proven ability to leverage deep subject matter expertise to develop and deploy a vision and help align others to that vision.
- Attention to detail and follow through including the ability to document work.
- Ability to transfer knowledge to fellow team members.
- Ability to make engineering design decisions, efficiently build solutions, solves technical problems, and makes improvements to our systems.
- History of making an impact, developing, and executing on strategies and delivering superior results in both the short and long term
SIEM-Splunk · Diverse Lynx India