Description
Day Rate: £600-£650 per day
Location: Cheshire, 2 days per week onsite (may not be concurrent)
Duration: 12 months initial contract
Key Responsibilities:
- Work on Splunk Enterprise and Splunk Cloud integration projects
- Hands-on experience with Splunk Enterprise Security (ES) is mandatory
- Install and configure Splunk Forwarders for security data ingestion and extraction
- Implement Splunk Add-Ons to bring security logs into Splunk
- Develop correlation searches for security monitoring and insider threat detection
- Apply Risk-Based Analysis (RBA) and Behaviour Analytics (BA) within Splunk
- Create dashboards using Splunk Dashboard Studio
- Write and optimize SPL (Splunk Processing Language) queries
- Handle data onboarding, data mapping, and ETL engineering
- Develop machine learning models to train BA frameworks