CareCone Group
Cyber Security Consultant
CareCone GroupSingapore9 hours ago
Full-timeInformation Technology
  • Design and architect Splunk-based SIEM solutions to meet organizational security requirements.
  • Lead the deployment and configuration of Splunk Enterprise and Splunk Enterprise Security (ES).
  • Define and implement data onboarding strategies for various log sources including servers, network devices, cloud platforms, and applications.
  • Develop and maintain Splunk architecture documentation including data flow diagrams, integration points, and system dependencies.
  • Collaborate with SOC, incident response, and IT teams to ensure effective threat detection and response capabilities.
  • Establish best practices for Splunk performance tuning, indexing strategies, and data retention policies.
  • Design and implement correlation rules, dashboards, and alerts to support security operations.
  • Ensure compliance with regulatory requirements by enabling audit logging and reporting capabilities.
  • Evaluate and integrate third-party tools and technologies with Splunk to enhance SIEM capabilities.
  • Provide guidance and mentorship to Splunk administrators and analysts on architecture and design principles.
  • Stay current with industry trends and emerging technologies in SIEM and cybersecurity.

Key Skills

Ranked by relevance