Splunk Admin - 6 to 9 years - Mumbai
Experience - 6 to 9 years
Job Location - Mumbai
Primary Skills :SIEM (IBM Qradar, HP ArcSight, RSA SA, Splunk, Mcafee ESM)
Understands SIEM tools functionality and logic behind creating rules and filters, integrating with different solution e.g. AV software, IDS, IPS etc...
Good TCP /IP concepts
Diagnosing and resolving issues and problems with the clients' information technology systems involving several processes. Investigating causes, analyzing and diagnosing the problem and repairing or providing detailed alternative solutions.
Above expertise plus SIEM implementation and design, SIEM administration and custom quires writing/ custom dashboard creation
Add advantage - writing Custom parser
JD for SOC:
Security Operations (SOC ) Analyst
* Experience on SIEM
* Experience on IDS / IPS
* Experience on Vulnerability Assessment
* Expeience on Antimalware solutions