Expoint – all jobs in one place
מציאת משרת הייטק בחברות הטובות ביותר מעולם לא הייתה קלה יותר

דרושים Engineer-iam Specialist-active Directory Services ב-Ey ב-India, Thiruvananthapuram

מצאו את ההתאמה המושלמת עבורכם עם אקספוינט! חפשו הזדמנויות עבודה בתור Engineer-iam Specialist-active Directory Services ב-India, Thiruvananthapuram והצטרפו לרשת החברות המובילות בתעשיית ההייטק, כמו Ey. הירשמו עכשיו ומצאו את עבודת החלומות שלך עם אקספוינט!
חברה (1)
אופי המשרה
קטגוריות תפקיד
שם תפקיד (1)
India
Thiruvananthapuram
נמצאו 22 משרות
08.10.2025
EY

EY GMS-Senior-Technology Specialist-Splunk SIEM TechOps India, Kerala, Thiruvananthapuram

Limitless High-tech career opportunities - Expoint
תיאור:

KEY Capabilities:

  • Experience in working with Splunk Enterprise, Splunk Enterprise Security & Splunk UEBA
  • Minimum of Splunk Power User Certification
  • Good knowledge in programming or Scripting languages such as Python (preferred), JavaScript (preferred), Bash, PowerShell, Bash, etc.
  • Perform remote and on-site gap assessment of the SIEM solution.
  • Define evaluation criteria & approach based on the Client requirement & scope factoring industry best practices & regulations
  • Conduct interview with stakeholders, review documents (SOPs, Architecture diagrams etc.)
  • Evaluate SIEM based on the defined criteria and prepare audit reports
  • Good experience in providing consulting to customers during the testing, evaluation, pilot, production and training phases to ensure a successful deployment.
  • Understand customer requirements and recommend best practices for SIEM solutions.
  • Offer consultative advice in security principles and best practices related to SIEM operations
  • Design and document a SIEM solution to meet the customer needs
  • Experience in onboarding data into Splunk from various sources including unsupported (in-house built) by creating custom parsers
  • Verification of data of log sources in the SIEM, following the Common Information Model (CIM)
  • Experience in parsing and masking of data prior to ingestion in SIEM
  • Provide support for the data collection, processing, analysis and operational reporting systems including planning, installation, configuration, testing, troubleshooting and problem resolution
  • Assist clients to fully optimize the SIEM system capabilities as well as the audit and logging features of the event log sources
  • Assist client with technical guidance to configure end log sources (in-scope) to be integrated to the SIEM
  • Experience in handling big data integration via Splunk
  • Expertise in SIEM content development which includes developing process for automated security event monitoring and alerting along with corresponding event response plans for systems
  • Hands-on experience in development and customization of Splunk Apps & Add-Ons
  • Builds advanced visualizations (Interactive Drilldown, Glass tables etc.)
  • Build and integrate contextual data into notable events
  • Experience in creating use cases under Cyber kill chain and MITRE attack framework
  • Capability in developing advanced dashboards (with CSS, JavaScript, HTML, XML) and reports that can provide near real time visibility into the performance of client applications.
  • Experience in installation, configuration and usage of premium Splunk Apps and Add-ons such as ES App, UEBA, ITSI etc
  • Sound knowledge in configuration of Alerts and Reports.
  • Good exposure in automatic lookup, data models and creating complex SPL queries.
  • Create, modify and tune the SIEM rules to adjust the specifications of alerts and incidents to meet client requirement
  • Work with the client SPOC to for correlation rule tuning (as per use case management life cycle), incident classification and prioritization recommendations
  • Experience in creating custom commands, custom alert action, adaptive response actions etc.

Qualification & experience:

  • Minimum of 3 to 10 years’ experience with a depth of network architecture knowledge that will translate over to deploying and integrating a complicated security intelligence solution into global enterprise environments.
  • Strong oral, written and listening skills are an essential component to effective consulting.
  • Strong background in network administration. Ability to work at all layers of the OSI models, including being able to explain communication at any level is necessary.
  • Must have knowledge of Vulnerability Management, Windows and Linux basics including installations, Windows Domains, trusts, GPOs, server roles, Windows security policies, user administration, Linux security and troubleshooting.
  • Good to have below mentioned experience with designing and implementation of Splunk with a focus on IT Operations, Application Analytics, User Experience, Application Performance and Security Management
  • Multiple cluster deployments & management experience as per Vendor guidelines and industry best practices
  • Troubleshoot Splunk platform and application issues, escalate the issue and work with Splunk support to resolve issues
  • Certification in any one of the SIEM Solution such as IBM QRadar, Exabeam, Securonix will be an added advantage
  • Certifications in a core security related discipline will be an added advantage.



EY exists to build a better working world, helping to create long-term value for clients, people and society and build trust in the capital markets.

Expand
08.10.2025
EY

EY RC - MENA FS Risk Conduct review specialist Manager India, Kerala, Thiruvananthapuram

Limitless High-tech career opportunities - Expoint
תיאור:



Key Responsibilities

  • Craft and update Market Conduct risk management policies and procedures for clients, ensuring the effective governance of Market Conduct risks.
  • Ensure that regulated entities comply with all applicable market conduct regulations and consumer protection laws.
  • Review and analyse new regulations to determine their impact on business operations.
  • Identify key market conduct and consumer protection risks across various jurisdictions for a range of clients
  • Conduct or participate in examinations of insurance companies, banks, or other financial institutions to assess compliance with market conduct standards.
  • Investigate consumer complaints to identify potential violations of market conduct rules.
  • Work with other departments to resolve consumer complaints and issues in a timely and fair manner.
  • Prepare reports detailing findings from examinations and audits.
  • Develop key risk indicators for consumer compliance and continuously monitor metrics associated with principal market conduct risks
  • Analyse and report on client risk frameworks to enhance market conduct and compliance management
  • Stay updated with industry and regulatory developments, especially concerning consumer protection enforcement actions and new regulations, to provide informed advisory services to clients.

Required skills and experience:

  • MBA/PGDM/Legal qualification with a focus on Finance
  • 6+ years of experience in Compliance/Legal roles within the financial services industry
  • Proficient in interpreting banking CBUAE regulations, understanding their impact on consumer business processes, and identifying consumer compliance and market conduct risks.
  • Strong relationship management skills, capable of fostering trust and collaboration with clients.
  • Extensive knowledge of banking products and services, with the ability to advise clients on best practices.



EY exists to build a better working world, helping to create long-term value for clients, people and society and build trust in the capital markets.

Expand
08.10.2025
EY

EY GMS-Senior-Technology Specialist - Sentinel SOAR India, Kerala, Thiruvananthapuram

Limitless High-tech career opportunities - Expoint
תיאור:

Cyber Managed Service -Threat Detection & Response - Security Orchestration, Automation and Response (Sentinel SOAR) - Senior

KEY Capabilities:

  • Excellent teamwork skills, passion and drive to succeed and combat Cyber threats
  • Working with the customer to identify security automation strategies and provide creative integrations and playbooks.
  • Work collaboratively with other team members to find creative and practical solutions to customers’ challenges and needs.
  • Responsible for execution and maintenance of Sentinel SOAR related analytical processes and tasks
  • Management and administration of Sentinel SOAR platform
  • Developing custom scripts and playbooks to automate repetitive tasks and response actions.
  • Experienced developer with at least 2 + yrs of experience using Python programming language, REST API and JSON. Must have basic SQL knowledge.
  • Knowledge on Incident Response and Threat Intelligence tools.
  • Creation of reusable and efficient Python-based Playbooks.
  • Use Splunk SOAR platform to enable automation and orchestration on various tools and technologies by making use of existing or custom integration
  • Partner with security operations teams, threat intelligence groups and incident responders.
  • Should have worked in a security operations center and gained understanding of SIEM solutions like Splunk, Microsoft Sentinel and other log management platforms. Having experience in Splunk content development will be an added advantage
  • Willing to learn new technologies and take up new challenges. Assist in developing high-quality technical content such as automation scripts/tools, reference architectures, and white papers.
  • Good grasp in conceptualizing and/or implementing automation for business process workflows
  • Knowledge in Network monitoring technology platforms such as Fidelis XPS or others
  • Knowledge in endpoint protection tools, techniques and platforms such as Carbon Black, Tanium, Microsoft Defender ATP, Symantec, McAfee or others
  • Should be able to assist, support and mitigate production issues.
  • Should have the capability to work with partners and client stack holders to full fill their asks
  • Ability to Coordinate with Vendor to incident closure on according to the severity
  • Review, assess, benchmark and develop issue remediation action plans for all aspects of an engagement.

Qualification & experience:

  • Minimum of 3+ years’ experience in cyber security with a depth of network architecture knowledge that will translate over to deploying and integrating Sentinel SOAR solution in global enterprise environments.
  • Experience working in ServiceNow SOAR is also an added advantage
  • Strong oral, written and listening skills are an essential component to effective consulting.
  • Strong background in network administration. Ability to work at all layers of the OSI models, including being able to explain communication at any level is necessary.
  • Should have strong hands-on experience with scripting technologies like Python, REST, JSON, SOAP, ODBC, XML etc.
  • Must have honours degree in a technical field such as computer science, mathematics, engineering or similar field
  • Minimum 2 years of working in SOAR (Sentinel)
  • Experience in Process Development, Process Improvement, Process Architecture, and Training
  • Quick to apprehend and adapt new applications.
  • Knowledgeable in Cybersecurity and Incident Response Management
  • Certification in any one of the SIEM Solution such as Splunk or SC-200 will be an added advantage
  • Certifications in a core security related discipline will be an added advantage.
Expand
07.10.2025
EY

EY GMS-Senior-TDR Infrastructure Maintenance Specialist-TechOps India, Kerala, Thiruvananthapuram

Limitless High-tech career opportunities - Expoint
תיאור:

Cyber Managed Service -Senior – TDR/SOC Infrastructure Maintenance Specialist

TDR/SOC (Security Operations Center) infrastructure lab maintenance job typically involves the upkeep and management of the technical environment used for security monitoring, analysis, and response. This role is crucial for ensuring that the SOC has a reliable and efficient infrastructure to support its operations

The SOC Infrastructure Lab Maintenance Specialist is responsible for maintaining and improving the SOC's technical lab environment. This includes managing the hardware, software, and network components that comprise the SOC's lab infrastructure. The specialist ensures that the lab is operational, secure, and up to date with the latest technologies and security measures.

Key Responsibilities:

  • Infrastructure Management:
    • Install, configure, and maintain SOC lab hardware and software, in a highly virtualized environment, including servers, workstations, network devices, and security appliances.
    • Perform regular system updates, patches, and upgrades to ensure security and performance.
    • Monitor system performance and troubleshoot issues to minimize downtime.
  • Lab Environment Configuration:
    • Set up and maintain a variety of security tools and platforms used for training, testing, and simulation purposes.
    • Create and manage virtual environments to emulate different network configurations and scenarios for training and testing.
  • Security and Compliance:
    • Implement and enforce security policies and procedures within the lab environment.
    • Conduct regular security audits and vulnerability assessments to identify and mitigate risks.
    • Ensure compliance with industry standards and regulatory requirements.
  • Technical Support and Training:
    • Provide technical support to SOC analysts and other staff using the lab environment.
    • Assist in the development and delivery of training programs for SOC personnel on new tools, technologies, and procedures.
  • Documentation and Reporting:
    • Maintain detailed documentation of the lab infrastructure, including network diagrams, configuration settings, and inventory lists.
    • Prepare reports on lab usage, performance metrics, and maintenance activities.
  • Collaboration and Innovation:
    • Work closely with SOC analysts, engineers, and management to understand their needs and incorporate feedback into lab improvements.
    • Stay informed about emerging technologies and security trends to propose and implement innovative solutions in the lab.

Qualifications:

  • Bachelor’s degree in computer science, Information Technology, Cybersecurity, or a related field.
  • Relevant certifications (e.g., CompTIA Network+, Security+, Cisco CCNA, RHCE) are a plus.
  • Experience with network administration, system administration, and security technologies.
  • VMware Virtualization and vCenter server appliance and Virtual Networking
  • Experience with both Linux and Windows Server/Desktop Operating Systems and Cloud services (Azure, AWS)
  • Strong problem-solving skills and attention to detail.
  • Excellent communication and interpersonal skills.



EY exists to build a better working world, helping to create long-term value for clients, people and society and build trust in the capital markets.

Expand
07.10.2025
EY

EY Lead Architect Managed Services India, Kerala, Thiruvananthapuram

Limitless High-tech career opportunities - Expoint
תיאור:

You will primarily have 3 responsibilities:

  • Technology Architecture : As a technology leader possessing a robust understanding of technology and its application in driving business outcomes, you will offer architectural thought leadership and determine the feasibility of technical deliveries. You will propose the integration of diverse technology solutions as necessary for the most critical business solution implementations, drawing from the range of available EY Client Technology products, tools, processes, and the Partner ecosystem. Your responsibility includes developing technology architectures for Managed Services (MS) solutions in areas such as technology selection, reuse, architecture standards, design patterns, integration, and infrastructure service components. Additionally, you will need to adopt Client Technology (CT) practices such as Project Impact Assessment (PIA), Business Impact Analysis (BIA), Information Security (InfoSec), Accessibility, and Experience Design (XD).
  • Lead Architecture Review Board: Liaise with a wide variety of internal stakeholders namely product owners (CT Technology Officers and product managers), Offering Owners (in the Service Lines), CT Delivery teams and service line delivery and GDS (Global Delivery Services), design and govern the architecture blueprints for the key managed services priority solutions. You will lead the Architecture Review Board to ensure the high quality of architectural deliverables, standardize the review process across Service Lines (SLs), and reduce variability in architectural decisions. Additionally, you are tasked with creating a central repository of architecture decision records to glean insights, facilitate knowledge sharing, and promote the reuse of these insights across different SLs and portfolios.
  • Client Interaction : As a trusted advisor, you are responsible for gathering technology related requirements from the client and engagement team by liaising with Technology solution leaders, then translating these into a technology architecture and solution that aligns with the objectives and architectural principles established by the managed services service lines and engagement teams. This is achieved by drawing upon your extensive technical knowledge, experience, and a profound understanding of both the project's scope and EY's technology capabilities, including Client Technology and the Partner ecosystem. As a technical leader, you act as a liaison among business partners, delivery leadership, and project stakeholders.

Essential Functions of the Job:

  • Design integration architecture for mid to large-scale managed services opportunities, focusing on priority solutions.
  • Lead Managed Services Technology Design Authority
  • Design & architect normative technology blueprints powered by Data & AI
  • Provide thought leadership as an Enterprise Architecture specialist, collaborating with service line sales and business teams during the design of new solutions and support throughout the deal development, pursuit, and closure phases.
  • Hands-on creation of end-to-end solution architecture that aligns with the overall Enterprise Architecture (EA) and the IT Roadmap of specific clients.
  • Employ an "outside-in" approach to ensure objective analysis and provide actionable architectural recommendations by integrating available technology solutions or partnering with vendor solutions.
  • Develop both the current As-is Architecture and the Transition Architecture, including roadmap steps to achieve the Target Architecture (e.g., moving from on-premises to cloud hosting, transitioning from a monolithic architecture to a microservices architecture).
  • Apply TOGAF and SAFe principles to architecture design and implementation.
  • Integrate all architecture disciplines (Business, Data, Application, Integration, Technology, and Security) following TOGAF guidelines.
  • Understand the impact of emerging technologies, their potential, and how the business and IT can capture value from them.
  • Support Technology Solution Leads and assist with reviews through the Architecture Review Board as needed.
  • Actively contribute to the development of the Architecture community and promote good architectural practices.
  • Build an integration architecture team by recruiting and onboarding new architects.
  • Maintain relationships with relevant delivery and competence centre teams, ensuring that implemented architecture solutions adhere to approved designs throughout the application lifecycle.
  • Engage with stakeholders on architecture issues and strategic improvements where expertise is required.
  • Coach technology solution leads and deal solution designers during the deal support phase.
  • Work proactively to identify, communicate, mitigate, and resolve architecture issues and risks. If solutions cannot be fully compliant with standards, seek input from the relevant function for step-out approval.
  • Contribute to shaping RFP responses and provide sharp insights from technical experience.
  • Collaborate with Operations Leads, Delivery Managers and technology product managers to hand over detailed architecture plans after deal closure and oversee delivery implementation.

Knowledge and Skills Requirements:

  • Strong tech background – stints in delivery, architecture & strategy or being associated with a technology focused organization
  • Deep technical expertise in IT infrastructure, including cloud services, networking, storage, and security
  • Proficiency in designing, implementing, and managing scalable, high-availability systems
  • Experience with automation tools and DevOps methodologies
  • Ability to lead and mentor technical teams, ensuring knowledge transfer and skill development
  • Strategic thinking and planning abilities, with a focus on long-term technical vision and business goals
  • Understanding of enterprise architecture frameworks and their application to integration solutions
  • Ability to create and maintain comprehensive documentation for integration architectures and designs
  • Commitment to staying current with emerging technologies and industry trends
  • Knowledge of compliance standards and regulations relevant to managed services
  • Proficiency in one or more programming languages relevant to integration (e.g., Java, Python, C#)
  • Experience with integration platforms and middleware technologies (e.g., ESB, API gateways)
  • Seasoned experience with containerization and orchestration technologies (e.g., Docker, Kubernetes)
  • Knowledge of API design and management, including RESTful services and SOAP
  • Understanding of message queuing services and event-driven architecture
  • Good Communication Skills in English both written and spoken. Ability to interact with a global audience of customers, partners and a global team
  • Good business acumen with outstanding ability in developing strategic ongoing customer relationships, gaining trust of stakeholders and respect for the company through technical leadership
  • Ability to identify technical risks before they occur and to develop mitigation and avoidance strategies
  • Organized and methodical. Ability to initiate, plan and develop according to plan though coping with a level of uncertainty and risk
  • Rigorous, thorough and with a taste for detail
  • Leadership & negotiating skills and ability to drive change using influence and networking

Other Requirements:

  • TOGAF Certified and proven experience in designing multiple complex architectures
  • Experience with cloud computing services and architectures (e.g., AWS, Azure, GCP)
  • Familiarity with data formats such as XML, JSON, and Avro
  • Expertise in data modeling and database design, both relational and NoSQL
  • Knowledge of DevOps practices and CI/CD pipelines to streamline integration processes
  • Strong experience in offshore/onsite working model and working with different geographies and cultures
  • Certifications and/or experience in Agile Delivery and DevOps would be desirable
  • Architectural certifications like TOGAF or IASA is desirable
  • Knowledge on service management framework, especially on areas of service strategy and design (ITIL V3/V4) would be an added advantage
  • Regular international and domestic travel

Education:

  • BS/MS/MCA in Computer Science, Engineering, or a related field.

Experience:

  • 20+ years of technology, architecture & thought leadership.
Expand
18.09.2025
EY

EY TC - MENA Technology QA Engineer Staff India, Kerala, Thiruvananthapuram

Limitless High-tech career opportunities - Expoint
תיאור:

Requisition Id : 1638163

ASU - Audit - Standards and Methodologies :

1) Ensuring their accounts comply with the requisite audit standards

2) Providing a robust and clear perspective to audit committees and

3) Providing critical information for stakeholders.

Our Service Offerings include External Audit, Financial Accounting Advisory Services (FAAS), IFRS & US GAAP conversion, IPO and other public offering, Corporate Treasury - IFRS 9 accounting & implementation support etc.


Your key responsibilities

Technical Excellence


· Networking- Creates and manages good independent relationships with clients’ senior management

· Good Commercial Acumen- Provides a perspective to clients on trends and emerging practices in the local and global market in relation to client’s operations

· Client Management– Lead role in execution of client service and begins to serve as a Trusted Business Advisor, use in-depth knowledge of the client to anticipate and address complex issues

· Business Development- Lead preparation of high quality proposals including developing the fees/entry strategy

· Contributes to the profitability of the firm- Generates additional work from existing clients and supports in selling new client proposals

· Leads and coordinates the planning and management of assignments with guidance from the partner

· Manages projects and processes- Balances multiple priorities by considering risk, importance, level of urgency, political impacts and other linkages

· Technical competence & strategic thinking- Demonstrates a good level of technical knowledge and judgment and has the ability to develop well-reasoned and researched arguments on client issues, demonstrates expertise in auditing telecom companies.

· Risk management – Provides pertinent guidance and advices to colleagues on quality or risk management issues, enables colleagues to address risk and quality issues by providing advice based on his experience

· Knowledge management- Strong contribution to knowledge sharing efforts, reviews and continually improves processes so that the team and the firm capture and leverage knowledge

· Counseling and people development- Proactively provides guidance on development of technical, interpersonal and soft skills to improve competence of the team members and counselees

· Exhibit professional demeanor- Look and sound professional, demonstrate appropriate conduct

Skills and attributes

To qualify for the role you must have
Qualification

· Should have handled statutory audit assignments earlier

· Must have strong knowledge of auditing & accounting standards

· Strong exposure in auditing manufacturing, retail, pharmaceutical industries etc. Good presentation skills and ability to respond promptly

· Ability to prioritize work on multiple assignments & manage ambiguity

· Should be a team player with a proactive & result oriented approach


What we look for

People with the ability to work in a collaborative manner to provide services across multiple client departments while following the commercial and legal requirements. You will need a practical approach to solving issues and complex problems with the ability to deliver insightful and practical solutions. We look for people who are agile, curious, mindful and able to sustain postivie energy, while being adaptable and creative in their approach.

What we offer

If you can confidently demonstrate that you meet the criteria above, please contact us as soon as possible.

Expand
18.09.2025
EY

EY TC - MENA Technology AI Engineer Staff India, Kerala, Thiruvananthapuram

Limitless High-tech career opportunities - Expoint
תיאור:

You will have the opportunity to provide clients an integrated, consistent, quality service that unlocks the potential of the compliance function, with tax compliance, statutory accounts preparation and tax accounting calculation support.

As part of a MENA team, you will be responsible for leading a team providing high quality tax services to clients across a range of industries. You will also lead a team looking after service delivery, coordination, issue resolution, and contract management of large-scale projects where you will need to manage and coordinate the delivery of tax services by EY teams in the region.

Your key responsibilities

You will spend your time supporting client engagements by coordinating with clients and internal team members, managing deadlines, and tracking engagement economics. You will be assisting clients in their financial digital processes (e.g. preparation and interpretation of year-end-closings, audit assistance, financial statements, etc.), tax compliance (corporate tax returns and VAT returns, etc.), general accounting, credit control and internal optimization projects. You will also be responsible for management reports, budgeting, analytical bookkeeping, financial health and competitors’ analysis.

You will be responsible for overall day to day requirements in client engagements, monitor progress and deliverables, put in place the necessary standardized processes, anticipate and identify risks, resolve or escalate issues as appropriate and drive performance-improvement solutions.

You will create, lead and motivate high performing teams and build a positive learning culture, coaching and counseling junior team members to help them develop. You will be responsible for managing engagement economics and communicating significant issues, fees and estimates-to-complete to partners and clients. You will also be responsible for ensuring adherence to our Tax Quality guidelines.

Skills and attributes for success

If you are an excellent communicator and detail oriented professional with a strong track record of management experience who is comfortable working across borders with a wide network of people and with large amount of data, you will be perfect for the role.

To qualify for the role you must have

  • A bachelor's degree with strong academic credentials in accounting, business, finance, taxation or any related essential fields.
  • MBA, Masters or another related advanced degree and/or professional qualifications e.g. CA, CPA, ACCA, CTA, ADIT or equivalent qualification.
  • Minimum 5+ years of relevant experience, ideally within a large professional services company or similar environment.
  • Extensive and in-depth knowledge of Financial Reporting Standards, relevant tax rules, procedures and guidelines.
  • Practical experience of regulatory topics including Prudential Reporting, Structural Reform; new accounting and compliance innovation; and/or Business audit skills.

Ideally, you also have

  • Experience of dealing with multinational clients and ability to work in multi-cultural environment.
  • Experience and knowledge of tax compliance, financial reporting and ERP systems such as SAP.
  • Ability to win in the market, good negotiation skill and ability to work under challenging situations.
  • Demonstrated good understanding and capability of implementing accounting concepts.

What we offer

We offer a competitive compensation package where you’ll be rewarded based on performance and recognized for the value you bring to our business. Plus, we offer:

  • Continuous learning: You’ll develop the mindset and skills to navigate whatever comes next.
  • Success as defined by you: We’ll provide the tools and flexibility, so you can make a meaningful impact, your way.
  • Transformative leadership: We’ll give you the insights, coaching and confidence to be the leader the world needs.
  • Diverse and inclusive culture: You’ll be embraced for who you are and empowered to use your voice to help others find theirs.

If you can demonstrate that you meet the criteria above, please contact us as soon as possible.

EY exists to build a better working world, helping to create long-term value for clients, people and society and build trust in the capital markets.

Expand
Limitless High-tech career opportunities - Expoint
תיאור:

KEY Capabilities:

  • Experience in working with Splunk Enterprise, Splunk Enterprise Security & Splunk UEBA
  • Minimum of Splunk Power User Certification
  • Good knowledge in programming or Scripting languages such as Python (preferred), JavaScript (preferred), Bash, PowerShell, Bash, etc.
  • Perform remote and on-site gap assessment of the SIEM solution.
  • Define evaluation criteria & approach based on the Client requirement & scope factoring industry best practices & regulations
  • Conduct interview with stakeholders, review documents (SOPs, Architecture diagrams etc.)
  • Evaluate SIEM based on the defined criteria and prepare audit reports
  • Good experience in providing consulting to customers during the testing, evaluation, pilot, production and training phases to ensure a successful deployment.
  • Understand customer requirements and recommend best practices for SIEM solutions.
  • Offer consultative advice in security principles and best practices related to SIEM operations
  • Design and document a SIEM solution to meet the customer needs
  • Experience in onboarding data into Splunk from various sources including unsupported (in-house built) by creating custom parsers
  • Verification of data of log sources in the SIEM, following the Common Information Model (CIM)
  • Experience in parsing and masking of data prior to ingestion in SIEM
  • Provide support for the data collection, processing, analysis and operational reporting systems including planning, installation, configuration, testing, troubleshooting and problem resolution
  • Assist clients to fully optimize the SIEM system capabilities as well as the audit and logging features of the event log sources
  • Assist client with technical guidance to configure end log sources (in-scope) to be integrated to the SIEM
  • Experience in handling big data integration via Splunk
  • Expertise in SIEM content development which includes developing process for automated security event monitoring and alerting along with corresponding event response plans for systems
  • Hands-on experience in development and customization of Splunk Apps & Add-Ons
  • Builds advanced visualizations (Interactive Drilldown, Glass tables etc.)
  • Build and integrate contextual data into notable events
  • Experience in creating use cases under Cyber kill chain and MITRE attack framework
  • Capability in developing advanced dashboards (with CSS, JavaScript, HTML, XML) and reports that can provide near real time visibility into the performance of client applications.
  • Experience in installation, configuration and usage of premium Splunk Apps and Add-ons such as ES App, UEBA, ITSI etc
  • Sound knowledge in configuration of Alerts and Reports.
  • Good exposure in automatic lookup, data models and creating complex SPL queries.
  • Create, modify and tune the SIEM rules to adjust the specifications of alerts and incidents to meet client requirement
  • Work with the client SPOC to for correlation rule tuning (as per use case management life cycle), incident classification and prioritization recommendations
  • Experience in creating custom commands, custom alert action, adaptive response actions etc.

Qualification & experience:

  • Minimum of 3 to 10 years’ experience with a depth of network architecture knowledge that will translate over to deploying and integrating a complicated security intelligence solution into global enterprise environments.
  • Strong oral, written and listening skills are an essential component to effective consulting.
  • Strong background in network administration. Ability to work at all layers of the OSI models, including being able to explain communication at any level is necessary.
  • Must have knowledge of Vulnerability Management, Windows and Linux basics including installations, Windows Domains, trusts, GPOs, server roles, Windows security policies, user administration, Linux security and troubleshooting.
  • Good to have below mentioned experience with designing and implementation of Splunk with a focus on IT Operations, Application Analytics, User Experience, Application Performance and Security Management
  • Multiple cluster deployments & management experience as per Vendor guidelines and industry best practices
  • Troubleshoot Splunk platform and application issues, escalate the issue and work with Splunk support to resolve issues
  • Certification in any one of the SIEM Solution such as IBM QRadar, Exabeam, Securonix will be an added advantage
  • Certifications in a core security related discipline will be an added advantage.



EY exists to build a better working world, helping to create long-term value for clients, people and society and build trust in the capital markets.

Expand
בואו למצוא את עבודת החלומות שלכם בהייטק עם אקספוינט. באמצעות הפלטפורמה שלנו תוכל לחפש בקלות הזדמנויות Engineer-iam Specialist-active Directory Services בחברת Ey ב-India, Thiruvananthapuram. בין אם אתם מחפשים אתגר חדש ובין אם אתם רוצים לעבוד עם ארגון ספציפי בתפקיד מסוים, Expoint מקלה על מציאת התאמת העבודה המושלמת עבורכם. התחברו לחברות מובילות באזור שלכם עוד היום וקדמו את קריירת ההייטק שלכם! הירשמו היום ועשו את הצעד הבא במסע הקריירה שלכם בעזרת אקספוינט.