Triumph Consultants Ltd
As a Senior SOC Engineer, your main responsibilities would be:
Maintain Windows and Unix based SIEM Log collection Infrastructure.
Maintain the interconnectivity between SIEM components and SPLUNK Cloud.
Maintain the SIEM document set (HLD and LLD) ensure the single record of the SIEM deployment.
Onboard new log sources as required.
Develop and document engineering processes.
Train and develop junior engineers.
Essential:
Competent in Windows Server 12 thru 19.
Competent in UNIX deployment (RHEL, Centos, Ubuntu).
Through understanding of Azure AD architecture.
Knowledge of SPLUNK Environment.
Desirable:
Splunk Cloud Admin.
Splunk Enterprise Security Cloud Admin.
Proficient in Python and/or PowerShell.
Location: Hybrid – 3 days in office – either London, Nottingham, Sheffield, Darlington, Bristol, Manchester or Coventry
SC Clearance/eligible for SC clearance