Your browser does not support javascript! Please enable it, otherwise web will not work for you.

Splunk Administrator @ Stratogent

Home > IT Security

 Splunk Administrator

Job Description

Key Responsibilities

Process

  • Day to day Operational issues, requests and Project tasks
  • Incident response and resolution within SLA's with excellent analytical and troubleshooting skills
  • Providing all the necessary details to leads about the issue, steps taken, recommendation and any other relevant information
  • Ticket Status Check and Update
  • Respond to False Positive Alerts
  • Incident Escalation and Progress Monitoring
  • Create, review, update, and maintain Standard Operating Procedures.
  • Prepare RCA for the escalated incidents.
  • Perform the Shift handovers

Security Incident Response:

  • Leads the escalation as a point for security incidents.
  • Analyze & investigate cyber threats on a real-time/day-to-day basis, involving alerts review, log analysis, and event/incident correlations.
  • Prepare Document and Maintain Procedures, Response Plan, Runbooks, and associated processes for continuous improvement.
  • Assist Analyst for security event and initial incident response to detected threats.
  • Regularly review and recommend changes to policies or controls as needed to enhance security.
  • Identifies potential gaps and offers solutions to include internal team needs, product improvements and client security posture.
  • Develop reporting with focused messages to enable the stakeholders to understand their and responsibilities.
  • Train and mentor, the peers and juniors in the team.

SPLUNK

  • Managing Splunk components such as indexer, forwarder, search head, etc
  • Prepare Splunk dashboards.
  • Install, Configure and Troubleshoot Universal forwarders.
  • Triage of non-security alerts based on priority, problem identification and escalation.
  • Escalate to designated contacts within Stratogent and Customer for issues outside SOPs, or when SOPs fail to resolve the issue.
  • Work directly with delivery teams or customers to gather logging requirements.
  • Convert Logging requirements into Splunk designs following best practices.
  • Perform environment health checks.
  • Update and / or create technical documentation.

Must-have Skills: Prior Working Experience

  • Must have worked on Splunk
  • Performing incident handling, evidence acquisition, endpoint and Network,and Security Incident management
  • Customer-focused
  • Excellent communication skills (reading, writing, speaking and listening)
  • Highly self-motivated and directed.
  • Excellent attention to detail.
  • Flexibility and willingness to work on different and multiple technologies

Ability to effectively prioritize, organize and execute tasks in a high-pressure environment

Good to have skills: Prior Work Experience

  • Worked on any of the IAM and PAM tools.
  • Certifications in Enterprise Admin or Cloud Admin of Splunk is an advantage
  • Prior training and certification in communication is added advantage

Job Classification

Industry: IT Services & Consulting
Functional Area / Department: IT & Information Security
Role Category: IT Security
Role: Cyber Security
Employement Type: Full time

Contact Details:

Company: Stratogent
Location(s): Bengaluru

+ View Contactajax loader


Keyskills:   forwarder splunk dashboard Splunk incident response Splunk Administration indexer Security Operations Center

 Fraud Alert to job seekers!

₹ 9-15 Lacs P.A

Similar positions

Databricks Administrator

  • CGI
  • 4 - 6 years
  • Hyderabad
  • 27 days ago
₹ Not Disclosed

Administrator 3

  • Cerebra
  • 8 - 13 years
  • Hyderabad
  • 30 days ago
₹ Not Disclosed

Autosys Administrator

  • Cognizant
  • 5 - 8 years
  • Hyderabad
  • 1 month ago
₹ 11-19 Lacs P.A.

Lead Administrator L1

  • Wipro
  • 5 - 8 years
  • Hyderabad
  • 1 month ago
₹ Not Disclosed

Stratogent

Stratogent Technology Services Pvt Ltd Stratogent provides managed services for on premise and cloud hosted infrastructure. Our customers are large or mid-sized corporations, predominantly in USA. We were founded in 2005 and operate out of Silicon Valley and Bangalore. Customers entrust the 24...