Edgewater is seeking a Detection Engineer. As a Splunk User and Entity Behavior (UBA) Engineer, you’ll join a Cyber Security Ops organization that supports a leading federal healthcare client. This role involves maintaining and operating the Splunk application monitoring tool as part of the client's Cybersecurity network and application audit and monitoring program within the Threat Monitoring and Incident Response (TMIR) team. The position requires applying strategic, operational, and tactical cyber intelligence to improve security operations, leading efforts to prepare for, monitor, detect, analyze, contain, remediate, and recover from security incidents. The role also includes developing and implementing actionable alerts and workflows for Splunk as a CISO Monitoring tool, creating Apps & Knowledge Objects (like Dashboards and Reports), providing analyst training, developing automation, communicating with customer stakeholders, conducting deep analysis and hunting operations, configuring incident response workflows for ES, and performing technical writing for TMIR documentation. Additionally, the role involves building relationships with clients and internal teams, co-leading client calls, and demonstrating the ability to take direction and achieve quality results independently.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Senior
Education Level
No Education Listed