|
||||||||||||||||||
الوصف الوظيفي Below are the job details: · Mode of Hire: Outsource · Client : Telecom · Duration : 1 year( extendable). · Sponsor Company : Flint Working with the Cybersecurity Incident Response Team and Threat Intelligence Team to identify content improvements. • Assisting the Cybersecurity Incident Response Team and Threat Intelligence Team with searches by acting as an expert in Splunk Search Language. • Provides input to the overall SIEM security services architecture, governance model. • Provide technical oversight, standardization and validation of the effectiveness of SIEM content service. • Participates in efforts to research, design and implement components in the SIEM content development space that are standards-based, high-performing, highly available and secure. • Educates internal and external users of security technologies to continually improve the knowledge and skill-base of the organization on how best to operate and support the technology and security services. • Supports, implements and promotes standard configuration and change management, processes and practices. المهارات • Experience with architecting, implementing, and operating Splunk or other big data platforms • Experience with IDS, IPS, and SIEM appliance architecture, operations, and management • Experience working in a globally distributed enterprise environment • Experience with monitoring use case implementation methodologies • Knowledge of Linux, Unix and Microsoft operating systems • Knowledge of TCP/IP protocols • Experience using regex (regular expressions) with a scripting language (nix shells, python, c++, ruby, etc.) is acceptable • Excellent communication skills and problem-solving ability • Troubleshooting skills and strong technical learning aptitude Please share your udpated CV to abdul .rahuman @flintmail. com تفاصيل الوظيفة https://www.bayt.com/ar/saudi-arabia/jobs/job-opening_-soc-content-development-lead_riyadh-4206744/ |
||||||||||||||||||