Sr. Manager of Splunk Engineering at Early Warning focusing on logging infrastructure and security compliance in the financial sector. Leading a high-performance team managing Splunk Enterprise and security ecosystems.
Responsibilities
Mentors and manages the Splunk Engineering team and provides effective leadership to drive a highly engaged, high-performance team
Leads the risk and security organization staff to identify, document, architect and develop process efficiencies
Maintains an excellent understanding of standard roles, processes and tools utilized within an information security organization
Defines, leads, gathers, writes and formalizes process use-cases, functional, and non-functional requirements
Communicates and organizes stakeholders and customers within projects to build sustainable solutions with required capabilities
Leads, architects, and designs solutions based on project use cases and requirements
Leads both the strategic and tactical management of the Splunk Enterprise, Security & User Behavioral Analytic ecosystems, concentrating on data incorporation, system fine-tuning, capacity planning, security and system updates
Develops and manages effective monitoring, alerting, and reporting to uphold service level agreements and ensure visibility into system status, usage and security threats
Leads efforts to update platforms and apply patches, addressing vulnerabilities and adhering to supported standards
Collaborates with other information security departments to augment threat detection capabilities and bolster incident response actions
Leads incident management processes, including troubleshooting, resolving outages, and conducting breach investigations
Directly engages with end-users for requirements gathering, troubleshooting, and crafting Splunk queries, alerts, reports, and dashboards, ensuring hands-on involvement in technical tasks
Produces, updates, and verifies documentation accuracy and relevance for the logging environment
Works alongside auditors and fulfills regulatory standards, employing security tools to aid in compliance initiatives
Delivers metrics related to platform performance, capacity, and user management, involving direct analysis and refinement efforts
Ensures 24x7 operational readiness and swift incident response through participation in an on-call roster
Keeps abreast of the latest technologies, trends, and strategies in the field, applying best practices for logging and monitoring
Impacts the CSIRTS team to be able to respond to threats by creating, tuning and testing high fidelity rules for our SIEM platform
Uses data collected from a variety of cyber defense tools (e.g., IDS alerts, firewalls, network traffic logs) to analyze events that occur within their environments for the purposes of detecting threats
Supports the company’s commitment to risk management and protecting the integrity and confidentiality of systems and data
Requirements
Education and/or experience typically obtained through completion of a bachelor’s degree in computer science, IT, Security, Engineering, or Math
Minimum 10 years of Splunk and/or information security technology experience
Demonstrated ability to lead, mentor, coach and guide
Ability to work within a team environment and independently
Effective communication skills to speak and write for all technology experience levels
Effective interpersonal skills, able to comfortably present to peers, coworkers, and customers
Excellent experience in analyzing technical issues and making recommendations for corrective action
A propensity for continued development of skills though research and training
Expert in analyzing advanced technical issues and solving problems or making recommendations for corrective action
In-depth knowledge of SIEM components, data ingestion processes, and querying data
Demonstrated capability to steer projects, oversee daily tasks, and directly engage in technical duties
Exceptional problem-solving, organizational, and communication skills, with the competency to elucidate technical concepts to non-technical audiences
Expert knowledge of network monitoring and network exploitation techniques
Expert experience in responding to malicious threats coming from various sources
Experience managing technical staff and direct reports
Benefits
Healthcare Coverage – Competitive medical (PPO/HDHP), dental, and vision plans
401(k) Retirement Plan – Featuring a 100% Company Safe Harbor Match on your first 6% deferral immediately upon eligibility
Paid Time Off – Flexible Time Off for Exempt (salaried) employees, as well as generous PTO for Non-Exempt (hourly) employees, plus 11 paid company holidays and a paid volunteer day
12 weeks of Paid Parental Leave
Maven Family Planning – provides support through your Parenting journey including egg freezing, fertility, adoption, surrogacy, pregnancy, postpartum, early pediatrics, and returning to work
Principal Associate in Capital One's Cyber Organization addressing security detection engineering challenges using AI and advanced methodologies. Collaborate across teams to enhance threat detection and monitoring processes.
Director of Enterprise Data Privacy Engineering shaping HP's data practices. Developing AI - driven privacy solutions that position privacy as a competitive advantage.
Capital Engineering Intern assisting the Capital Engineering team with projects in pharmaceutical manufacturing. Involves process improvements, troubleshooting, and cross - functional collaboration in a project - driven environment.
Junior Developer implementing ETL solutions and supporting data integrity for financial reporting at Sun Life. Analyzing operational problems and collaborating on complex projects with diverse teams.
Senior Email Developer delivering engaging email experiences and leading coding efforts at Providence's Digital Innovation Group. Focused on email development, coding, and personalization with AI integration.
Visualization Developer programming in clinical data management and analytics at ICON plc. Bridging communication between teams for data solutions with a focus on innovation.
Student Assistant supporting the construction and series oversight of medical equipment at MELAG. Involves CAD modeling and documentation for product specifications in the growing medtech sector.
Werkstudent in Industrial Engineering supporting data analysis and digital tool development in medical technology. Contributing to production line implementation and analysis phases.
CMM Programmer responsible for creating and updating measurement programs in collaboration with quality assurance. Optimizing measuring processes to reduce costs and time in a precision manufacturing environment.
Senior Manager leading Technology Asset and Inventory Management for GEICO’s large enterprise. Responsible for developing a strategy to manage technology assets and inventory across 40,000 associates.