Splunk Engineer (Sentinel)
Remote.
Contract role
Splunk to Sentinel Migration exp Mandatory
Responsibilities:
- Splunk Administration: Manage and maintain the Splunk platform, including indexers, search heads, forwarders, and apps. Perform upgrades, patching, and performance tuning. Develop and maintain Splunk dashboards, reports, and alerts. Troubleshoot Splunk performance issues and ensure system availability.
- Migration to Microsoft Sentinel: Lead and execute the migration of security logs and data from Splunk to Microsoft Sentinel. Develop and implement data ingestion pipelines. Configure and customize Sentinel rules, playbooks, and workbooks. Ensure a seamless transition with minimal disruption to security monitoring.