Source description
About the role
Description:
As a Splunk Application Developer you will focus on building new capabilities in Splunk via custom applications to enable a new security analytics capability within the organisation.The role will be the main responsible to build an innovative application to build, maintain and showcase a number of security use cases across the organisation.This is a highly critical role in the delivery side. They will work closely with the Customer, through daily action items, respond to Customer requests, and fulfil priority items as agreed and define. Also, they will deliver consistent results and outputs, adopt refined methodologies and procedures to better align with Customer.The Splunk Application Developer will complete a prioritized list of daily, weekly, and monthly tasks defined by Customer requests. This can include activities related to use cases, log sources, incident detection, delivery of executive reports and presentations. This role requires experience effectively communicating event details and technical analysis, technical audiences within the global cyber organization and other technology groups.
Roles and Responsibilities:
Building and maintaining Customer Splunk applications focused on security, including application content, analytics, log source enrichment and ingestion.
Creation of Splunk Search Processing Language (SPL) queries, Reports and Dashboards.
Test and deploy reporting solutions for various Use Cases.
Requirement gathering for new reporting requests and data queries from Users.
Support and advise on the creation of internal and/or external security documentation, including policies and procedures, training documents, playbooks and operations manuals
Completion of all mandatory training requirements for Customer.
Qualifications and Experience Required
-
Bachelors degree or 4 years experience in the relevant field
-
Four or more years of relevant work experience with Splunk Enterprise.
-
Splunk Certifications
-
Effectively communicate (i.e. status, issues, and escalations) to leadership and other various levels of the organization.
-
Client service and client management experience.
-
Strong leadership skills and a proactive approach to customer issues
-
Ability to excel in a dynamic environment.
-
Even better if you have:
-
Experience in information security or cyber security.
-
CISSP, SANS or other Security certifications, such as GCIA, GCIH, GREM, GPEN, CEH.
-
ITIL Foundations training/certification.
-
Knowledge of ISO 27001 requirements.
-
Experience in how to structure and operate an efficient Incident Response process.
-
Job type: Full Time/Contract Experience level: 4 Years Division: eTeam Australia Reference: 22-00781
More at eTeam