Overview
Skills
Job Details
Location: Spring, TX, 77389 (Hybrid)
Duration: 12-month contract-to-hire
Qualified and interested candidates should email their resumes to Slater Davidson at
Skillset / Experience:
INSPYR Solutions is seeking a SIEM Security professional for one of its premier maritime clients in the Houston area. This position will install, configure, administer, and support the tools that monitor and protect our information assets and systems.
Responsibilities for this role include:
- Designs, Standardizes, performs PoCs, Tests, implements, and tests cybersecurity tools such as vulnerability management, SIEM, SOAR, DNS Security, Proxy, and other security tools.
- Specifically specializes in Azure Sentinel SIEM tools.
- Designing and implementing custom detection rules and analytics queries in Microsoft Sentinel to effectively identify and respond to security threats.
- Integrating Microsoft Sentinel with other Azure services and third-party security tools to create a comprehensive security monitoring and response ecosystem.
- Leveraging Microsoft Sentinel to detect, investigate, and mitigate a security incident within an Azure infrastructure.
- Planning and design - understanding data sources, log collection requirements, and incident response workflows.
- Deployment and configuration - Set up log collection, normalization, and enrichment pipelines to ensure effective detection and analysis of security events.
- Rule and Query development - Create custom detection rules, alerts, and queries to identify security threats and suspicious activities within the organization's environment
- Tuning and optimizing - Adjust alert thresholds, refine detection rules, and optimize data ingestion pipelines to enhance the effectiveness of the SIEM solution
Skills/ Requirements:
- Must have several years experience working with SIEM tools, implementing, maintaining, tooling, and tuning them, and have demonstrated continuous growth.
- Must have experience with Azure Sentinel.
- Ability to configure, deploy, maintain, and troubleshoot Splunk Enterprise infrastructure.
- Ability to develop advanced queries using SPL or other scripting tools to develop dashboards, design data models, develop correlation rules, and perform log data analysis.
- Experience working in both Windows and Linux environments. Ability to create documentation of processes, define technical specifications, and draw network & system architecture diagrams. Ability to perform ad hoc support with strong analytical skills for troubleshooting.
- Excellent verbal and written communication skills.
- Preferred: Experience implementing and supporting Security Orchestration, Automation, and Response (SOAR) tools.
Our benefits package includes:
- Comprehensive medical benefits
- Competitive pay, 401(k)
- Retirement plan
- and much more!
About INSPYR Solutions
Technology is our focus, and quality is our commitment. As a national expert in delivering flexible technology and talent solutions, we strategically align industry and technical expertise with our clients business objectives and cultural needs. Our solutions are tailored to each client and include a wide variety of professional services, projects, and talent solutions. By always striving for excellence and focusing on the human aspect of our business, we work seamlessly with our talent and clients to match the right solutions to the right opportunities. Learn more about us at inspyrsolutions.com.
INSPYR Solutions provides Equal Employment Opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, sex, national origin, age, disability, or genetics. In addition to federal law requirements, INSPYR Solutions complies with applicable state and local laws governing nondiscrimination in employment in every location in which the company has facilities.