Back to search
Deloitte Linkedin · Posted 2d ago

Senior Cyber Defense Engineer

Kansas City

Linkedin
Continue to application Add your email once, then Caio opens the original posting.

Indexed description

Deloitte Global is the engine of the Deloitte network. Our professionals reach across disciplines and borders to develop and lead global initiatives. We deliver strategic programs and services that unite our organization.

Work you'll do

  • Partner with development and operations teams to develop practical automation solutions and custom modules.
  • Co-lead team initiatives to continuously refine our deployment practices for improved reliability, repeatability,and security. Creating plans and collaborating with other GEMS Engineering team members, while coordinating with development and business teams.
  • Develop requirements for data ingestion methods based on input from stakeholders/leadership.
  • Clearly document and diagram deployment-specific aspects of architectures and environments, working closely with various teams to create application runbooks, playbooks, and knowledge base documents.
  • Troubleshoot issues in production and other environments, applying debugging and problem-solving techniques (e.g., log analysis, non-invasive tests).
  • Suggest deployment patterns & practices improvements based on learnings from past deployments and production issues, collaborate with GEMS Engineering team members to implement these.
  • After hours on-call support occasionallyrequired.

The team

Deloitte Technology works at the forefront of technology development and processes to support and protect Deloitte around the world. In this truly global environment, we operate not in "what is" but rather "what can be" to help Deloitte deliver and connect with its clients, its communities, and one another in ways not previously conceived.

Qualifications

Required:

  • 2+ years Splunk engineering experience
  • 1+ years managing other Splunk engineers or projects
  • Strong understanding of Cloud Services - Azure, AWS
  • Strong understanding of Splunk data onboarding including Splunk App/TA configuration and CIM validation
  • Universal/Heavy Forwarder configuration experience, including encryption and compression settings
  • Experience working with a strict change control processutilizingtools such as Azure DevOps
  • Management/deployment experience with large scale/distributed Splunk environments
  • A solid understanding of Windows and Linux administrationutilizingCommand Line Interface (CLI)
  • Knowledge of networking, firewalls, loadbalancersetc.
  • Demonstrate understanding of common enterprise applications (especiallyin the area ofsecurity)
  • Knowledge of best practices for IT operations in an always-on, always-available service model
  • Excellent communication skills and the ability to communicate appropriately with/manage technical teams
  • Excellent influencing and reasoning skills; good at conflict resolution and consensus building
  • Ability to quickly explore, examine and understand complex problems

Education and experience:

  • Bachelor's degree in Computer Science, Computer Engineering, Finance, Mathematics, Business InformationSystemsor other bachelor's degree combined with relevant experience and accomplishments.
  • One or more of the following: Splunk Certified Admin, Splunk Certified Architect, Splunk Certified Consultant

Preferred:

  • Experience withCribladministration and data onboarding
  • Experience in working in a large global organization

Limited immigration sponsorship may be available.
Free. 20 seconds. No password. See every match in this search.

Create a free Caio profile to unlock more results and save your role and location preferences.

Unlock free search
Want help applying to roles like this? Search Caio for free. If repetitive applications get heavy, Managed Job Search adds supervised execution for $99/month.
View Managed Job Search