Description


Job Description:

  • Proficiently read and analyze various logs, including Windows Event logs, firewall logs, and other relevant sources.
  • Understanding of log sources and logs required to build high fidelity alerts
  • Possess strong knowledge in understanding log formats, patterns, and anomalies.
  • Possess strong knowledge of Splunk syntax and search language (SPL).
  • Write and optimize SPL queries to extract actionable insights.
  • Understand Splunk dashboards, alerts, and visualization techniques.
  • Create and fine-tune SIEM alerts to minimize false positives and improve accuracy.
  • Collaborate with other security team members to validate the false positives.

Education

Any Graduate