Kforce Inc is seeking a Cyber Security Principal - Splunk & Cribl Engineer to support security, threat, and vulnerability resolution. The role involves delivering security analytics, conducting root cause analysis for incidents, and improving enterprise security measures.
Responsibilities:
- Deliver and support the Security, Threat and Vulnerability resolution, and report and communicate on security events and threats
- Perform and document root cause analysis for security incidents
- Perform and document vulnerability analyses
- Develop cyber security analytics and threat intelligence using multiple data sources provided to the Security Information and Event Management (SIEM) system
- Work closely to identify and recommend process and system improvements to the security program
- Drive the capabilities and execution to effectively optimize and improve enterprise security
- Demonstrate knowledge of security services and implementations
- Investigate, positively identify, and document anomalous events and incidents that are escalated
- Create cyber security incidents and oversee the cyber security incident response process
- Examine cyber adversary techniques in order to develop defensive methodologies
- Conduct risk analysis and convert it into actionable monitoring recommendations
- Conduct vulnerability assessments and recommend remediation and mitigation strategies and implementations to ensure effective achievement of the organizational objectives
- Provide support for security incidents throughout the incident lifecycle as needed and make recommendations to ensure enterprise infrastructure is protected
- Perform analyses to validate established security requirements and to recommend additional security requirements and safeguards
- Develop and oversee implementation of a metrics program for reporting on overall performance and effectiveness
Requirements:
- Bachelor's degree in Computer Science, Engineering, Information Technology, Cybersecurity or related field
- 5 years of related experience