Expoint – all jobs in one place
מציאת משרת הייטק בחברות הטובות ביותר מעולם לא הייתה קלה יותר

דרושים Senior Manual Ethical Hacker ב-Bank Of America ב-United States, Denver

מצאו את ההתאמה המושלמת עבורכם עם אקספוינט! חפשו הזדמנויות עבודה בתור Senior Manual Ethical Hacker ב-United States, Denver והצטרפו לרשת החברות המובילות בתעשיית ההייטק, כמו Bank Of America. הירשמו עכשיו ומצאו את עבודת החלומות שלך עם אקספוינט!
חברה (1)
אופי המשרה
קטגוריות תפקיד
שם תפקיד (1)
United States
אזור
Denver
נמצאו 17 משרות
20.08.2025
BOA

Bank Of America Senior Splunk Engineer United States, Colorado, Denver

Limitless High-tech career opportunities - Expoint
Minimum of 6+ years of experience in a technical role in the areas of Security Operations, Incident Response, Content Development or Equivalent Experience in a large Enterprise Splunk Environment performing...
תיאור:

Job Description:

Job Description:

Our Security Operations and Threat Response team within Bank of America’s Cyber Security Technology function works to continuously strengthen the bank’s cyber security posture through partnership and delivery of technology to support our content detection and threat hunt teams. This team works with partners in Cyber Security Operations to deliver robust technology solutions and support for detection engineering environments and content scenarios.

Required Qualifications:

  • Minimum of 6+ years of experience in a technical role in the areas of Security Operations, Incident Response, Content Development or Equivalent Experience in a large Enterprise Splunk Environment performing triage and administrative duties.
  • Direct experience performing content detection engineering and threat hunting in an active corporate environment.
  • Significant experience working with Splunk Procedure Language to create and tune detections.
  • Experience mapping data fields to a common data model such as CEF, OCSF.
  • Direct experience working with very large datasets and log analysis tools including but not limited to: Splunk, Python, Pandas, SQL, Hadoop, Hue
  • Ability to see the larger picture when dealing with competing requirements and needs from across the organization in order to build consensus and drive results.
  • Ability to navigate and work effectively across a complex, geographically dispersed organization.
  • Experience with enterprise scale EDR, SIEM, and SOAR tools.
  • Experience in requirements gathering around the Splunk tool, documenting requirements, requirement analysis, product testing, etc.
  • Splunk Infrastructure Management Experience/Knowledge
  • Collaborate with teams to Monitor and optimize the performance of the Splunk environment, to ensure efficient data processing and search capabilities on our search heads.
  • Ability to troubleshoot, triage and resolve issues related to Splunk Infrastructure, ensuring high availability and reliability.
  • Experience in Splunk enterprise and Splunk Cloud

Data Ingestion and Parsing:

  • Design and implement data ingestion strategies for various log sources into Splunk.
  • Develop and maintain parsing configurations to normalize and enrich incoming data for effective analysis.
  • Collaborate with application owners and IT teams to onboard new data sources into Splunk.
  • Search and Reporting:
  • Create and optimize search queries and reports to extract valuable insights from the indexed data.
  • Customize and implement Splunk dashboards for different stakeholders to visualize key performance indicators and security metrics.

Security and Compliance:

  • Implement security best practices within Splunk to safeguard sensitive data.
  • Collaborate with the security team to configure and monitor alerts for suspicious activities or security incidents.
  • Ensure compliance with industry regulations and internal policies related to log management and data retention.
  • Automation and Scripting:
  • Develop automation scripts using SPL (Search Processing Language) and other scripting languages to streamline administrative tasks.
  • Continuously seek opportunities to improve efficiency through automation in Splunk processes.

Documentation and Training:

  • Maintain thorough documentation of Splunk configurations, processes, and troubleshooting procedures.
  • Provide training and support to other IT team members on Splunk best practices and usage.
  • Experience consuming, analyzing, and reporting Cyber Threat Intelligence for actionable takeaways
  • Demonstrated ability to self-direct, with minimal supervision to achieve assigned goals.

Desired Qualifications:

  • Experience with offensive security tools and integration of SIEM, SOAR, CSPM and other technical integrations within large enterprise networks.
  • Knowledge of basic Data Science concepts and processes.
  • Experience performing security analysis and threat hunting in Cloud environments such as Azure, M365, AWS
  • Experience Maintaining KV Stores.
  • Experience Performing Regular Updates/Upgrades on Splunk Apps and Add-ons. As well as the Splunk environment as a whole.

Skills:

  • Influence
  • Result Orientation
  • Solution Design
  • Stakeholder Management
  • Technical Strategy Development
  • Access and Identity Management
  • Critical Thinking
  • Cyber Security
  • Information Systems Management
  • Risk Management
  • Collaboration
  • DevOps Practices
  • Financial Management
  • Solution Delivery Process
  • Test Engineering

This job will be open and accepting applications for a minimum of seven days from the date it was posted.

1st shift (United States of America)

Show more
14.08.2025
BOA

Bank Of America Senior Engineer - Integration Lead United States, Colorado, Denver

Limitless High-tech career opportunities - Expoint
Partner with cybersecurity experts to define requirements and success criteria. Lead the design and implementation of secure, scalable integration solutions for cybersecurity platforms. Define and enforce engineering standards for secure...
תיאור:

Job Description:

Job Description:

This job is responsible for defining and leading the engineering approach for complex features to deliver significant business outcomes.

Responsibilities:

  • Partner with cybersecurity experts to define requirements and success criteria

  • Lead the design and implementation of secure, scalable integration solutions for cybersecurity platforms.

  • Define and enforce engineering standards for secure APIs, data pipelines, and microservices.

  • Collaborate with security architects and platform engineers to ensure compliance with cybersecurity policies and frameworks.

  • Develop and maintain secure RESTful APIs for real-time and batch data processing.

  • Apply encryption, access control, and auditing mechanisms to protect sensitive data in transit and at rest.

  • Integrate with SIEM, SOAR, and threat intelligence platforms to enable automated detection and response.

  • Optimize performance and resilience of data ingestion and processing pipelines.

  • Mentor junior engineers and promote secure coding and integration best practices.

  • Document integration patterns, data flows, and security controls for audit and compliance purposes.

Required Qualifications:

  • 10+ years of experience in cybersecurity engineering, secure software development, or platform integration.

  • Strong programming skills inJava and Python, with experience in secure API development.

  • Experience with container orchestration platforms (Kubernetes, OpenShift) and infrastructure automation.

  • Knowledge of data streaming and processing platforms (Kafka, Databricks, Snowflake).

  • Data Analytics Experience using common security tools(Splunk, Hadoop, Spark, Python)

  • Hands-on experience with securing databases and implementing RBAC, encryption, and audit logging.

  • Understanding of secure software development lifecycle (SSDLC) and DevSecOps practices.

  • Ability to lead technical projects and collaborate with cross-functional teams.

  • A Master’s or Bachelor’s degree in Computer Science, Information Security, or a related field is helpful but experience is highly valued.

Skills:

  • Proven Cybersecurity expertise, preferably in Detection and Response related fields but other domains are also valued.

  • Deep expertise in secure software engineering, API security, and data protection best practices.

  • Hands-on experience designing and implementing secure data pipelines, ETL processes, and real-time streaming architectures (e.g., Kafka, Databricks).

  • Proficiency in Java, Python, and scripting languages for secure application and integration development.

  • Strong understanding of API security protocols (OAuth2, OpenID Connect, JWT) and OWASP API Security Top 10.

  • Experience with containerized and virtualized environments (Kubernetes, OpenShift, Docker, VMware).

  • Significant experience with cloud-native security controls and multi cloud architectures across AWS, Azure, and GCP

  • Expertise in securing relational and NoSQL databases (PostgreSQL, MongoDB) with encryption, RBAC, and auditing.

  • Experience with infrastructure-as-code, CI/CD pipelines, and DevSecOps practices.

  • Strong communication and collaboration skills to work across cybersecurity, engineering, and architecture teams.

  • Application Development

  • Solution Design

  • Agile Practices

  • Analytical Thinking

This job will be open and accepting applications for a minimum of seven days from the date it was posted.

1st shift (United States of America)

Show more

משרות נוספות שיכולות לעניין אותך

14.08.2025
BOA

Bank Of America Senior Technology Manager – Security Operations Platform United States, Colorado, Denver

Limitless High-tech career opportunities - Expoint
Deep expertise in cybersecurity operations, threat detection, and incident response workflows. Proven experience designing and deploying platforms that integrate SIEM, SOAR, TIP, EDR, and cloud-native telemetry. Strong understanding of federated...
תיאור:

Role Description:

As the development lead, you will drive the strategic vision for a multi environment platform that integrates security tools, telemetry, automation, and analytics into a unified experience. You will collaborate closely with SOC analysts, threat hunters, incident responders, and security engineers to ensure that the interface meets operational needs while reducing friction and improving response times.

Skills

  • Deep expertise in cybersecurity operations, threat detection, and incident response workflows.
  • Proven experience designing and deploying platforms that integrate SIEM, SOAR, TIP, EDR, and cloud-native telemetry
  • Strong understanding of federated data access, log normalization, and real-time streaming (e.g., Cribl, Kafka)
  • Familiarity with LLM orchestration frameworks (e.g., LangChain, LlamaIndex) and AI/ML-driven analytics
  • Experience with advanced SOAR Playbooks and/or AI Agents.
  • Experience with data modeling, schema mapping, and field correlation across hybrid/multi-cloud environments
  • Strong interpersonal and executive communication skills; ability to translate technical vision into business value
  • Demonstrated ability to lead cross-functional teams of engineers, data scientists, and security analysts
  • Experience with agile development, DevSecOps, and secure software lifecycle practices
  • Experience developing technology for MDR, or other large scale cybersecurity platform software providers.

Roles & Responsibilities

  • Partner to lead the development of an AI-augmented threat hunting and security operations platform that unifies telemetry, automation, and analytics
  • Architect and oversee the integration of federated data sources across cloud, on-prem, and legacy environments
  • Collaborate with cybersecurity teams and engineering teams to define use cases for LLMs in threat detection, log correlation, and contextual enrichment
  • Drive the implementation of a modular, scalable platform that supports real-time streaming, historical search, and AI-assisted investigation
  • Champion the use of structured data models and field taxonomies (e.g., OCSF, ECS) to enable semantic search and automation
  • Integrate LLMs to support use cases such as data cataloging, field mapping, log summarization, and hypothesis-driven hunting
  • Establish performance metrics and feedback loops to continuously improve platform usability, detection efficacy, and analyst productivity
  • Partner with SOAR teams to develop agent-based playbooks for automated context gathering and response
  • Ensure platform security, compliance, and auditability across all integrated components

Required Qualifications:

  • 10+ years of experience in cybersecurity engineering, threat detection, or security platform development
  • 7+ years of leadership experience managing cross-functional technical teams
  • Strong background in building or integrating security data platforms (e.g., Splunk, Elastic, Chronicle, Snowflake, Anvilogic)
  • Experience with cloud-native security architectures (AWS, Azure, GCP) and hybrid infrastructure
  • Familiarity with LLMs, vector databases, and AI/ML pipelines for security use cases
  • Hands-on experience with log streaming, data normalization, and federated search technologies (e.g., Cribl, Trino, Anvilogic)
  • Deep understanding of SOC workflows, threat hunting methodologies, and MITRE ATT&CK framework
  • Experience with API-based integrations, open-source security tooling, and secure platform design
  • Secure Coding experience.

Managerial Responsibilities:
This position may also have responsibilities for managing associates. At Bank of America, all managers at this level demonstrate the following responsibilities, in addition to those specific to the role, listed above.

  • Opportunity & Inclusion Champion: Models an inclusive environment for employees and clients, aligned to company Great Place to Work goals.
  • Manager of Process & Data: Demonstrates deep process knowledge, operational excellence and innovation through a focus on simplicity, data based decision making and continuous improvement.
  • Enterprise Advocate & Communicator: Communicates enterprise decisions, purpose, and results, and connects to team strategy, priorities and contributions.
  • Risk Manager: Ensures proper risk discipline, controls and culture are in place to identify, escalate and debate issues.
  • People Manager & Coach: Provides inspection, coaching and feedback to motivate, differentiate and improve performance.
  • Financial Steward: Actively manages expenses and budgets in alignment with objectives, making sound financial decisions.
  • Enterprise Talent Leader: Assesses talent and builds bench strength for roles across the organization.
  • Driver of Business Outcomes: Delivers results by effectively prioritizing, inspecting and appropriately delegating team work.

Skills:

  • Influence
  • Risk Management
  • Solution Design
  • Stakeholder Management
  • Technical Strategy Development
  • Analytical Thinking
  • Application Development
  • Collaboration
  • Result Orientation
  • Solution Delivery Process
  • Agile Practices
  • Architecture
  • Automation
  • Data Management
  • DevOps Practices

This job will be open and accepting applications for a minimum of seven days from the date it was posted.

1st shift (United States of America)

Show more

משרות נוספות שיכולות לעניין אותך

13.08.2025
BOA

Bank Of America Senior Manual Ethical Hacker United States, Colorado, Denver

Limitless High-tech career opportunities - Expoint
Perform assigned analysis of internal and external threats on information systems and predict future threat behavior. Incorporate threat actors' tactics, techniques, and procedures into offensive security testing to identify high-value...
תיאור:

Job Description:

Job Description:

This senior technical role is responsible performing and leading ethical hacking assessments of the bank's technologies, applications, and cyber security controls while adapting testing methods to evolving and emerging threats. Key responsibilities include leading and performing research, understanding the bank's security policies, working with appropriate partners to complete assessments and simulations, identifying misconfigurations and vulnerabilities, and reporting on associated risk. These individuals partner closely with security partners, CIO clients and multiples lines of business. These individuals are expected to perform application security-oriented dynamic and static assessments across a multitude of technologies including web UI, web APIs, mobile and cloud, including associated source code.

Key Responsibilities in order of importance:

  • Perform assigned analysis of internal and external threats on information systems and predict future threat behavior.
  • Incorporate threat actors' tactics, techniques, and procedures into offensive security testing to identify high-value vulnerabilities/chained attacks.
  • Developing Proof-of-concepts for exploitation.
  • Perform assessments of the security, effectiveness, and practicality of multiple technology systems.
  • Leverage innovative thinking to help solve problems or introduce new ideas to processes or products applicable to offensive security.
  • Prepare and present detailed technical information for various media including documents, reports, and notifications.
  • Provide clear and practical advice regarding managing risks.
  • Learn and develop advanced technical and leadership skills, mentor Junior and Intermediate assessors in technical tradecraft and soft skills.
  • Respond to security incidents and provide technical assistance to leadership across the Information Security organization.

Required Skills:

  • Minimum of 5+ years of professional pentesting, application security or ethical hacking experience, preferably in a large, complex, enterprise environment
  • Detailed technical knowledge in at least 5 of the following areas:
    • security engineering
    • application architecture
    • authentication and security protocols
    • application session management
    • applied cryptography
    • common communication protocols
    • mobile frameworks
    • single sign-on technologies
    • exploit automation platforms
    • Web APIs
    • Cloud environments
    • LLM security
  • Able to manually identify and reproduce findings, discuss remediation concepts, develop PoCs for vulnerabilities, use scripting/coding techniques, proficiently execute common penetration testing tools, triage, and support incidents, and produce high value findings
  • Experience performing manual web application assessments i.e., must be able to simulate a OWASP Top 10 vulnerabilities without the use of tools
  • Experience performing manual code reviews for security relevant issues
  • Experience working with DAST and SAST tools to identify vulnerabilities
  • Knowledge of network and Web related protocols/technologies (e.g., UNIX/LINUX, TCP/IP, Cookies)
  • Experience with vulnerability assessment tools and penetration testing techniques.
  • Solid programming/debugging skills, development frameworks, CVE and CWE research/reproduction
  • Threat Analysis, threat modelling and SBOM analysis
  • Innovative thinking, threat actor simulation
  • Technology Systems Assessment
  • Technical Documentation
  • Advisory

Desired:

  • CEH, OSCP/OSCE/OSWE/GXPN/GPEN/GWAPT/GMOB/All Practitioner Certs [Port Swigger BSP Academy]/Cloud Cert(s)/ eWPT; eWPTX; eMAPT [INE Pentester Academy]
  • Strong programming/scripting skills

This job will be open and accepting applications for a minimum of seven days from the date it was posted.

1st shift (United States of America)

Show more

משרות נוספות שיכולות לעניין אותך

12.08.2025
BOA

Bank Of America Manual Ethical Hacker United States, Colorado, Denver

Limitless High-tech career opportunities - Expoint
Perform assigned analysis of internal and external threats on information systems and predict future threat behavior. Incorporate threat actors' tactics, techniques, and procedures into offensive security testing. Perform assessments of...
תיאור:

Job Description:

Job Description:

This intermediate technical role is responsible for performing application security assessments of the bank's technologies, applications, and cyber security controls while adapting testing methods to evolving and emerging threats. Key responsibilities include performing research, understanding the bank’s security policies, working with the appropriate partners to complete assessments and simulations, identifying misconfigurations and vulnerabilities, and reporting on associated risk. These individuals partner closely with security partners, CIO clients and multiples lines of business.

Key Responsibilities in order of importance:

  • Perform assigned analysis of internal and external threats on information systems and predict future threat behavior
  • Incorporate threat actors' tactics, techniques, and procedures into offensive security testing
  • Perform assessments of the security, effectiveness, and practicality of multiple technology systems
  • Leverage innovative thinking to help solve problems or introduce new ideas to processes or products applicable to offensive security.
  • Prepare and present detailed technical information for various media including documents, reports, and notifications
  • Provide clear and practical advice regarding managed risks
  • Learn and develop advanced technical and leadership skills, Mentor Junior assessors in technical tradecraft and soft skills

Required Skills:

  • Minimum of 4 years of professional pentesting, application security or ethical hacking experience, preferably in a large, complex, enterprise environment
  • Detailed technical knowledge in at least 3 of the following areas: security engineering; application architecture; authentication and security protocols; application session management; applied cryptography; common communication protocols; mobile frameworks; single sign-on technologies; exploit automation platforms; RESTful web services
  • SQL injection/XSS attack without the use of tools
  • Experience performing manual code reviews for security relevant issues
  • Experience working with SAST tools to identify vulnerabilities
  • Able to manually identify and reproduce findings, discuss remediation concepts, develop PoCs for vulnerabilities, use scripting/coding techniques, proficiently execute common penetration testing tools, triage, and support incidents, and produce high value findings
  • Experience performing manual web application assessments i.e., must be able to simulate a
  • Knowledge of network and Web related protocols/technologies (e.g., UNIX/LINUX, TCP/IP, Cookies)
  • Experience with vulnerability assessment tools and penetration testing techniques
  • Solid programming/debugging skills
  • Experience of using a variety of tools, included, but not limited to, IBM AppScan, Burp and SQL Map
  • Threat Analysis
  • Innovative Thinking
  • Technology Systems Assessment
  • Technical Documentation
  • Advisory

Desired:

  • CISSP, CEH, OSCP, OSWE, GPEN, PenTest+ or similar
  • Strong programming/scripting skills

This job will be open and accepting applications for a minimum of seven days from the date it was posted.

1st shift (United States of America)

Show more

משרות נוספות שיכולות לעניין אותך

28.04.2025
BOA

Bank Of America Senior Mobile Security Engineer United States, Colorado, Denver

Limitless High-tech career opportunities - Expoint
7+ years in agile application development, SDLC and/or security officer experience. Deep experience with Mobile security for Android or iOS operating systems. Experience and hands on knowledge with Authentication security...
תיאור:

Job Description:

In this role, you will partner with Global Information Security (GIS) subject matter experts and control owners to design or review controls, governance routines, and service alternatives to ensure robust controls are in place to secure technology delivered under the program.

Required Skills:

  • 7+ years in agile application development, SDLC and/or security officer experience
  • Deep experience with Mobile security for Android or iOS operating systems.
  • Experience and hands on knowledge with Authentication security controls
  • Knowledge of User and Entity Behavior Analytics and associated technologies
  • Experience Web Proxy controls
  • Experience with Microsoft Office suite including MS Project and Visio
  • Ability to navigate and work effectively across a complex, geographically dispersed organization.
  • Exceptional communication and customer relationship skills
  • Ability to build consensus and cooperation as well as to influence, interact and negotiate with senior leadership in the organization.
  • Knowledge of change and project management methodologies and principles and the ability to integrate them into project design.
  • Broad knowledge of Information Security technologies, techniques, and processes
  • Experience leading complex technical projects, meeting target timelines, facilitating project meetings, authoring project documentation, issue resolution, and project resource identification.
  • Demonstrable ability to self-direct project outcomes, with minimal supervision to achieve program goals.
  • Excellent process design capability to improve overall efficiency, mitigate resource conflicts, and improve customer/client experience.

Desired Skills:

  • Application or Point-of-Sale penetration testing experience
1st shift (United States of America)

Show more

משרות נוספות שיכולות לעניין אותך

28.04.2025
BOA

Bank Of America Senior Splunk Detection Engineer United States, Colorado, Denver

Limitless High-tech career opportunities - Expoint
Minimum of 8+ years of experience in a technical role in the areas of Security Operation, Incident Response, Detection Engineering, Defensive Security/Purple Team, or Cyber Threat Intelligence. Direct experience performing...
תיאור:

Job Description:

Job Description:

Role Responsibilities

Required Skills:

  • Minimum of 8+ years of experience in a technical role in the areas of Security Operation, Incident Response, Detection Engineering, Defensive Security/Purple Team, or Cyber Threat Intelligence.
  • Direct experience performing content detection engineering and threat hunting in an active corporate environment.
  • Significant experience working with Splunk Procedure Language to create and tune detections.
  • Direct experience working with very large datasets and log analysis tools including but not limited to: Splunk, Python, Pandas, SQL, Hadoop, Hue.
  • Ability to see the larger picture when dealing with competing requirements and needs from across the organization in order to build consensus and drive results.
  • Ability to navigate and work effectively across a complex, geographically dispersed organization.
  • Experience with more than one or more enterprise scale EDR, SIEM, and SOAR tools.
  • Previous experience performing digital forensics or indecent response on major security incidents.
  • Experience analyzing system, network, and application logging for attack techniques at all stages of the cyber kill chain.
  • Experience consuming and analyzing Cyber Threat Intelligence for actionable takeaways
  • Ability to apply Cyber Threat Intelligence through enrichment, correlation, and attribution
  • Familiarity with offensive security strategies and assessment methodology
  • Experience explaining threat hunt objectives in plain English and able to communicate associated risk.
  • Demonstrated ability to self-direct, with minimal supervision to achieve assigned goals.

Beneficial but not required:

  • Experience with offensive security tools and integration of SIEM, SOAR, CSPM and other technical integrations within large enterprise networks.
  • Knowledge of basic Data Science concepts and processes.
  • Experience performing security analysis and threat hunting in Cloud environments such as Azure, M365, AWS

Skills:

  • Application Development
  • Automation
  • Influence
  • Solution Design
  • Technical Strategy Development

This job will be open and accepting applications for a minimum of seven days from the date it was posted.

1st shift (United States of America)

Show more

משרות נוספות שיכולות לעניין אותך

Limitless High-tech career opportunities - Expoint
Minimum of 6+ years of experience in a technical role in the areas of Security Operations, Incident Response, Content Development or Equivalent Experience in a large Enterprise Splunk Environment performing...
תיאור:

Job Description:

Job Description:

Our Security Operations and Threat Response team within Bank of America’s Cyber Security Technology function works to continuously strengthen the bank’s cyber security posture through partnership and delivery of technology to support our content detection and threat hunt teams. This team works with partners in Cyber Security Operations to deliver robust technology solutions and support for detection engineering environments and content scenarios.

Required Qualifications:

  • Minimum of 6+ years of experience in a technical role in the areas of Security Operations, Incident Response, Content Development or Equivalent Experience in a large Enterprise Splunk Environment performing triage and administrative duties.
  • Direct experience performing content detection engineering and threat hunting in an active corporate environment.
  • Significant experience working with Splunk Procedure Language to create and tune detections.
  • Experience mapping data fields to a common data model such as CEF, OCSF.
  • Direct experience working with very large datasets and log analysis tools including but not limited to: Splunk, Python, Pandas, SQL, Hadoop, Hue
  • Ability to see the larger picture when dealing with competing requirements and needs from across the organization in order to build consensus and drive results.
  • Ability to navigate and work effectively across a complex, geographically dispersed organization.
  • Experience with enterprise scale EDR, SIEM, and SOAR tools.
  • Experience in requirements gathering around the Splunk tool, documenting requirements, requirement analysis, product testing, etc.
  • Splunk Infrastructure Management Experience/Knowledge
  • Collaborate with teams to Monitor and optimize the performance of the Splunk environment, to ensure efficient data processing and search capabilities on our search heads.
  • Ability to troubleshoot, triage and resolve issues related to Splunk Infrastructure, ensuring high availability and reliability.
  • Experience in Splunk enterprise and Splunk Cloud

Data Ingestion and Parsing:

  • Design and implement data ingestion strategies for various log sources into Splunk.
  • Develop and maintain parsing configurations to normalize and enrich incoming data for effective analysis.
  • Collaborate with application owners and IT teams to onboard new data sources into Splunk.
  • Search and Reporting:
  • Create and optimize search queries and reports to extract valuable insights from the indexed data.
  • Customize and implement Splunk dashboards for different stakeholders to visualize key performance indicators and security metrics.

Security and Compliance:

  • Implement security best practices within Splunk to safeguard sensitive data.
  • Collaborate with the security team to configure and monitor alerts for suspicious activities or security incidents.
  • Ensure compliance with industry regulations and internal policies related to log management and data retention.
  • Automation and Scripting:
  • Develop automation scripts using SPL (Search Processing Language) and other scripting languages to streamline administrative tasks.
  • Continuously seek opportunities to improve efficiency through automation in Splunk processes.

Documentation and Training:

  • Maintain thorough documentation of Splunk configurations, processes, and troubleshooting procedures.
  • Provide training and support to other IT team members on Splunk best practices and usage.
  • Experience consuming, analyzing, and reporting Cyber Threat Intelligence for actionable takeaways
  • Demonstrated ability to self-direct, with minimal supervision to achieve assigned goals.

Desired Qualifications:

  • Experience with offensive security tools and integration of SIEM, SOAR, CSPM and other technical integrations within large enterprise networks.
  • Knowledge of basic Data Science concepts and processes.
  • Experience performing security analysis and threat hunting in Cloud environments such as Azure, M365, AWS
  • Experience Maintaining KV Stores.
  • Experience Performing Regular Updates/Upgrades on Splunk Apps and Add-ons. As well as the Splunk environment as a whole.

Skills:

  • Influence
  • Result Orientation
  • Solution Design
  • Stakeholder Management
  • Technical Strategy Development
  • Access and Identity Management
  • Critical Thinking
  • Cyber Security
  • Information Systems Management
  • Risk Management
  • Collaboration
  • DevOps Practices
  • Financial Management
  • Solution Delivery Process
  • Test Engineering

This job will be open and accepting applications for a minimum of seven days from the date it was posted.

1st shift (United States of America)

Show more
בואו למצוא את עבודת החלומות שלכם בהייטק עם אקספוינט. באמצעות הפלטפורמה שלנו תוכל לחפש בקלות הזדמנויות Senior Manual Ethical Hacker בחברת Bank Of America ב-United States, Denver. בין אם אתם מחפשים אתגר חדש ובין אם אתם רוצים לעבוד עם ארגון ספציפי בתפקיד מסוים, Expoint מקלה על מציאת התאמת העבודה המושלמת עבורכם. התחברו לחברות מובילות באזור שלכם עוד היום וקדמו את קריירת ההייטק שלכם! הירשמו היום ועשו את הצעד הבא במסע הקריירה שלכם בעזרת אקספוינט.