About The Position

Position Overview: The Splunk Team Lead will be responsible for overseeing the Splunk monitoring and analytics operations within the Applied Cybersecurity (ACS) team. This role involves managing the implementation, maintenance, and optimization of Splunk infrastructure, ensuring real-time data analytics, and providing critical insights into cybersecurity posture. The Splunk Team Lead will work closely with various departments, including the Application Services Branch (ASB), development teams, and compliance teams, to ensure the effective use of Splunk for monitoring, reporting, and security hardening.

Requirements

  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
  • Minimum of 5 years of experience in cybersecurity, with a focus on Splunk monitoring and analytics.
  • Proven experience in managing Splunk infrastructure and real-time data analytics.
  • Experience in vulnerability management and compliance.
  • Strong knowledge of Splunk, including dashboard creation, data ingestion, and alerting.
  • Excellent analytical and problem-solving skills.
  • Strong leadership and team management abilities.
  • Effective communication and collaboration skills.
  • Knowledge of cybersecurity standards and protocols.

Nice To Haves

  • Familarity with DevSecOps and Cloud (Azure > AWS)
  • Certifications: Splunk, Cloud, Security +, etc.

Responsibilities

  • Oversee the analysis and reporting of the organization's cyber posture.
  • Provide insights into vulnerabilities and recommend actions for improvement.
  • Manage the synchronization of Splunk data across all relevant platforms.
  • Ensure data consistency, accuracy, and optimal performance of Splunk infrastructure.
  • Implement and maintain monitoring solutions for various systems, including Resolve, Automated Badging Request (ABR), and development environments.
  • Develop and optimize dashboards for real-time data analytics and automated alerts.
  • Process and fulfill development account and server requests.
  • Ensure proper configuration and accessibility of accounts and servers.
  • Conduct Independent Verification and Validation (IV&V) of audit controls.
  • Update and maintain Authority to Operate (ATO) and Security Impact Analysis (SIA) documentation.
  • Ensure compliance with security standards and protocols.
  • Monitor and report on Common Vulnerabilities and Exposures (CVE) trends.
  • Prioritize and address remediation efforts based on CVE data.
  • Lead and mentor the Splunk team, providing guidance and support.
  • Coordinate with other departments to ensure effective collaboration and communication.
  • Oversee ongoing projects, including Real-time Data Analytics (RTDA) discussions, development cloud specifications, and backend maintenance.
  • Ensure timely completion and successful implementation of projects.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service