Stand out for this role — generate a tailored resume and cover letter in about a minute.
HELP INFORMATION TECHNOLOGY CONSULTANCY - SOLE PROPRIETORSHIP L.L.C. in Dubai seeks an experienced Security Operations Engineer to administer Splunk SIEM and related apps, and to extend these for specialized analytics.
You will integrate Splunk with various data sources, work with application and infrastructure teams, and support Defender ATP, Azure security products, and Nessus/Tenable deployments in a large enterprise environment.
Administering Splunk and Splunk Apps to include developing new or extending existing Apps to perform specialized functionality Integrating Splunk with a wide variety of legacy data sources Engaging application and infrastructure teams to establish best practices for utilizing Splunk data and visualizations Design implement and support solutions with Microsoft security technologies such as Azure Cloud Access Security Broker Office 365Advanced Threat Protection O365 ATP Microsoft Defender ATP and their integrations used to deliver internet-scale intelligence and managed security products Implement administer Microsoft Defender ATP Azure Cloud Access Security Broker Azure Threat Protection security products within customer environment Manage and oversee day-to-day activities of Azure IP platform and ensure adherence to enterprise standards in project execution methodology requirements gathering quality assurance and continuous improvement Handle the implementation deployment support of Nessus scan engines and Tenable Security Center and peripherals with Engineering SOC TIU and IR Maintain local and network credentials Tenable Security Center and provisions access to vulnerability scanning systems Integrate Nessus TSC with other security and IT systems management tools Document vulnerabilities and work on vulnerability mitigation with agreed SLA Managing CB sensors including deployment operation management maintenance update upgrade patching and administration Should be able to create watchlists to detect indicators of compromise IOCs and malicious behavior of new threats Hands on in writing queries in CB to search the desired events Assess customer needs and expectations design solutions to meet those needs and then implement the design Quickly build and solve a problem using a new technology to determine viability Serve as a primary responder for Managed Security customer systems taking ownership of client configuration issues and tracking through resolution