*Please send your resumes at jake.kha...@itbtalent.com <jake.kha...@itbtalent.com> or call me at 201-75-3904*
*Job Tittle: Splunk Consultant* *Location: Chicago, IL* *Duration: 6 Months * Responsibilities: Create, test, and deploy Splunk operational search strings Create, test and deploy splunk ES search strings Develop and configure management reports (i.e. dashboards including daily, weekly & monthly reports) Develop, configure, and document specific metrics as needed for management consumption Teach and educate the Northern Trust Splunk security team on how to create complex search strings in Splunk and the ES module Maintain the Splunk instance and scale its growth appropriately based on event log generation Additional Responsibilities: Document and explain technical details clearly and concisely Review security-related events, assessing risk and validity, as well as reporting Configure & manage event feeds into event aggregation and correlation systems Configure & manage use cases into event aggregation and correlation systems Analyze host-based indicators of compromise or network traffic to assist in generating new attack search strings Analyze additional log, forensic, malware or other related data. Hands-on Splunk implementation experience in an global enterprise setting Has a clear understanding on building a multi-tiered Splunk instance Information Security experience delivering enterprise level solutions Display a level of proficiency with regular expressions (RegEx) Prior hands-on experience with other log collecting devices or SIEMS Prior experience and proficiency in all aspects of information security (e.g., system design, vulnerability management, risk analysis, data flow, intrusion management, cloud technology, endpoint security, encryption methodologies, etc) *Please send your resumes at jake.kha...@itbtalent.com <jake.kha...@itbtalent.com> or call me at 201-75-3904* -- You received this message because you are subscribed to the Google Groups "SAP or Oracle Financials" group. To unsubscribe from this group and stop receiving emails from it, send an email to sap-or-oracle-financials+unsubscr...@googlegroups.com. To post to this group, send email to sap-or-oracle-financials@googlegroups.com. Visit this group at http://groups.google.com/group/sap-or-oracle-financials. For more options, visit https://groups.google.com/groups/opt_out.