Avance Consulting is seeking an experienced qualified in Sydney, Australia, to administer and maintain the Splunk Enterprise Security environment. The role involves managing index lifecycle, developing and optimizing correlation searches, and supporting incident response activities.
The successful candidate will integrate Splunk with other security tools and conduct deep forensic analysis while working closely with SOC analysts to enhance workflows. Strong skills in data ingestion and retention policies are essential for this position.
#J-18808-Ljbffr
📌 Senior Splunk ES Engineer for Threat Detection and IR (New South Wales)
🏢 Avance Consulting
📍 New South Wales
Reply to this offer
Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.