drjobs
Splunk - Qradar - Archsight - Certified Resource KSA Project - Remote
drjobs Splunk - Qradar - Archsight - Certified Resource KSA Project - Remote العربية

Splunk - Qradar - Archsight - Certified Resource KSA Project - Remote

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs

Job Location

drjobs

Of - Turkey

Monthly Salary

drjobs

Not Disclosed

drjobs

Salary Not Disclosed

Vacancy

1 Vacancy

Job Description

Req ID : 2636182
We are seeking candidates for a oneyear contract position with the following responsibilities:

Data Parsing: Configuring data parsers to normalize and categorize log data for analysis.
Rule Creation: Developing and maintaining correlation rules to detect security incidents and anomalies.
User Access Control: Managing user roles and permissions for the SIEM platform.
Log Retention and Archiving: Defining data retention policies and ensuring log data is archived for compliance and forensic purposes.
Software Updates and Patch Management: Keeping the SIEM software up to date with the latest patches and updates.
Integration with Other Security Tools: Integrating the SIEM with other security tools such as intrusion detection systems (IDS) and vulnerability scanners.
FineTuning: Continuously optimizing the SIEM to reduce false positives and improve detection accuracy.
Compliance Reporting: Generating reports and alerts to comply with industry standards and regulations.
Log Source Management: Adding new log sources as the organizations IT environment evolves.
Disaster Recovery Planning: Developing and testing disaster recovery plans to ensure the SIEMs availability during critical incidents.
Performance Monitoring: Monitoring the SIEMs performance and scalability ensuring it can handle the volume of log data.
Log Data Storage: Managing the storage infrastructure for log data including backups and data retention policies.
Threat Intelligence Integration: Integrating threat intelligence feeds to enhance the SIEMs ability to detect new threats.
Vendor and Support Management: Coordinating with SIEM vendors and support providers for technical assistance and updates.
Security Policy Enforcement: Ensuring that the SIEM helps enforce security policies and compliance requirements.
Evaluating logs from each log source and enhancing them.

Immediate joiners only or 30 days notice available for an interview anytime.

Contact:
Phone:
Email:

Location: Thane Solace KSA Remote

software updates and patch management,rule creation,intelligence,performance monitoring,fine-tuning,vendor and support management,log analysis,security policy enforcement,log source management,archsight,disaster recovery,compliance,siem,compliance reporting,integration,security,log data storage,user access control,data,data retention,splunk,log retention and archiving,disaster recovery planning,qradar,it,threat intelligence integration,management,integration with other security tools,data parsing

Employment Type

Full Time

Company Industry

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.