Source description
About the role
- Develops and implements advanced cyber defense solutions for the agency - Safeguards the infrastructure ensuring system specifications and successful deployment - Support Splunk SIEM to monitor, detect, analyze, and respond to security events - Continuously monitor network traffic, endpoint logs, and cloud security events for anomalies - Create, maintain, and tune Splunk correlation searches, alerts, and dashboards - Investigate potential security incidents and collaborate with IT and network teams to remediate threats - Develop and refine detection and response playbooks based on threat intelligence and MITRE ATT&CK framework - Work with infrastructure teams to onboard new data sources ensuring log integrity and normalization - Support audit readiness by collecting SIEM control evidence and generating compliance reports aligned with policies and standards
More at Aimic
Related open roles
Network Administrator 4
United States
.Net Programmer Analyst 4
Virginia Region 1, 9120 Lockwood Blvd
Software Tester/QA Analyst 3
5600 Cox rd. Glen Allen VA
Senior Azure Infrastructure Engineer
9120 Lockwood Blvd Mechanicsville, VA 23116
SharePoint Developer
Atlanta
Senior Network Security Engineer
United States