Notice period- serving June month
Years of Experience 5 to 8 years
working experience on Splunk Certification Splunk certified
Job Description:
- Proficiently read and analyze various logs, including Windows Event logs, firewall logs, and other relevant sources.
- Understanding of log sources and logs required to build high fidelity alerts
- Possess strong knowledge in understanding log formats, patterns, and anomalies.
- Possess strong knowledge of Splunk syntax and search language (SPL).
- Write and optimize SPL queries to extract actionable insights.
- Understand Splunk dashboards, alerts, and visualization techniques.
- Create and fine-tune SIEM alerts to minimize false positives and improve accuracy.
- Collaborate with other security team members to validate the false positives.