Stratogent - Splunk Admin

3 weeks ago


Bengaluru Karnataka, India ConsultBae Full time

Role: Security Consultant

**Location**:

- Bangalore, 5 days, WFO

**Shift**:

- Rotational shift

**Roles and Responsibilities**:

- The primary responsibility is to work on the existing or new Incidents, Service Requests, and Tasks
- Triage the unresolved incidents or Requests to Leads
- Continually communicates with Leads and Customer
- Process
- Day to day Operational issues, requests and Project tasks
- Incident response and resolution within SLA's with excellent analytical and troubleshooting skills
- Providing all the necessary details to leads about the issue, steps taken, recommendation and any other relevant information
- Ticket Status Check and Update
- Respond to False Positive Alerts
- Incident Escalation and Progress Monitoring
- Create, review, update, and maintain Standard Operating Procedures.
- Prepare RCA for the escalated incidents.
- Perform the Shift handovers

Security Incident Response:

- Leads the escalation as a point for security incidents.
- Analyze & investigate cyber threats on a real-time/day-to-day basis, involving alerts review, log analysis, and event/incident correlations.
- Prepare Document and Maintain Procedures, Response Plan, Runbooks, and associated processes for continuous improvement.
- Assist Analyst for security event and initial incident response to detected threats.
- Regularly review and recommend changes to policies or controls as needed to enhance security.
- Identifies potential gaps and offers solutions to include internal team needs, product improvements and client security posture.
- Develop reporting with focused messages to enable the stakeholders to understand their and responsibilities.
- Train and mentor, the peers and juniors in the team.

SPLUNK
- Managing Splunk components such as indexer, forwarder, search head, etc
- Prepare Splunk dashboards.
- Install, Configure and Troubleshoot Universal forwarders.
- Triage of non-security alerts based on priority, problem identification and escalation.
- Escalate to designated contacts within Stratogent and Customer for issues outside SOPs, or when SOPs fail to resolve the issue.
- Work directly with delivery teams or customers to gather logging requirements.
- Convert Logging requirements into Splunk designs following best practices.
- Perform environment health checks.
- Update and / or create technical documentation.

**Must have skills**:

- Performing incident handling, evidence acquisition, endpoint and Network,and Security Incident management
- Must have worked on Splunk
- Customer-focused
- Excellent communication skills (reading, writing, speaking and listening)
- Highly self-motivated and directed.
- Excellent attention to detail.
- Flexibility and willingness to work on different and multiple technologies
- Ability to effectively prioritize, organize and execute tasks in a high-pressure environment

**Good to have skills**:

- Worked on any of the IAM and PAM tools.
- Certifications in Enterprise Admin or Cloud Admin of Splunk is an advantage
- Prior training and certification in communication is added advantage

**About the company: Stratogent**

Stratogent does IT and Cybersecurity operations.

We build and operate complex infrastructure - across on-premise, data centers, and clouds. We wrap any compute-storage-network platform with monitoring, automation and security services so customers can sleep while we cure failures and block threats.

If Google’s mission is to “organize the world’s information”, ours is to “operate the world’s infrastructure”. We aren’t quite there yet, so we focus on being the best at knowing and doing operations for mid-size, high-touch and high-change IT environments. Our customer base is made up of progressive companies who are flag bearers of new technology adoption and are risk-takers. We have participated in successful (and failed) projects and bring that accumulated experience to each of our clients.

Since 2008, we have acted as an extension of internal IT and Security teams and along the way achieved a community of highly satisfied clients who rave about our “no-fluff just stuff” style.


  • Splunk Admin- Sse

    1 month ago


    Bengaluru, India CGI Full time

    Splunk Admin with 4 to 6 years hands on experience. Prerequisite - Splunk Certified Admin **Required Primary Skills**: Configure and manage Splunk components, including indexers, search heads, and forwarders. Monitor and optimize the Splunk environment for performance and resource utilization. Implement data ingestion pipelines from various sources,...

  • Splunk

    4 weeks ago


    Bengaluru, India SolutionTechHr Full time

    1. Onboarding log sources into Splunk. 2. Splunk Administration 3. Splunk reporting and dashboard creation. 4. Data Analytics using Splunk. **Relevant Experience required**: 1. At least 2 years hands on experience in Splunk Admin role and log source onboarding 2. Good to have Cyber Security experience. 3. Good to have experience in Python. **Salary**:...

  • Splunk Admin

    4 weeks ago


    Bengaluru, India Tata Consultancy Services Full time

    Hands-on experience splunk development usingjavascript,html,python and shell scripting; - Experience of splunk end to end implementationand splunk upgrade - Experience in creating splunk Data models, Datamodel Acceleration and Summary indexes. - Experience in Splunk Enterprise Security. - Experience on deploymnet of splunk agents, apps,configuration changes...

  • Splunk Admin

    4 weeks ago


    Bengaluru, India Tata Consultancy Services Full time

    Experience in Splunk implementation and upgradeexperience. - Good work experience on splunk large deployments - Experience to use props.conf and transforms.confcomfortably for data manipulation. - Should have ability to troubleshoot the issuesrelated splunk environment. - Experience in configuring Search head andIndexer clusters in multisite - Expert...


  • Bengaluru, India Capgemini Full time

    Must have Splunk admin OR development knowledge OR experience on Splunk Enterprise Security- - Creative and analytical problem solving skills individually and in a group environment- - Good knowledge and experience of Security Monitoring tools- - Good knowledge and experience of Cyber Incident Response- - Good knowledge and experience of Cyber Threat...


  • Bengaluru, India Capgemini Full time

    Must have Splunk admin OR development knowledge OR experience on Splunk Enterprise Security - Creative and analytical problem solving skills individually and in a group environment - Good knowledge and experience of Security Monitoring tools - Good knowledge and experience of Cyber Incident Response - Good knowledge and experience of Cyber Threat...


  • Bengaluru, India CGI Full time

    Position Description: Slunk Developer/Engineer with 4 to 6 years hands on experience. Prerequisite – Splunk Certified Developer Required Primary Skills: Proven experience as a Splunk Developer or similar role. Proficiency in Splunk platform components, SPL, and data visualization. Strong scripting skills (e.g., Python, Bash) for data...

  • Splunk Administrator

    1 month ago


    Bengaluru, India FIS Global Full time

    **Position Type**: Full time **Type Of Hire**: Experienced (relevant combo of work and education) **Education Desired**: Bachelor of Information Technology **Travel Percentage**: 1 - 5% **Splunk Administrator - Bangalore - 5+ years** Are you curious, motivated, and forward-thinking? At FIS you’ll have the opportunity to work on some of the most...

  • Siem Admin

    4 weeks ago


    Bengaluru, Karnataka, India Innova Solutions Full time

    Delivery ManagementBangalorePosted On - 05 Feb 2024 - Required Experience - 3 - 6 Years - Share Apply - Basic SectionGrade L4A Designation Senior Software Engineer Shift Details Day C (12:00 PM-9:00 PM) - OrganisationalCountry India City Bangalore - SkillsSkill Education Qualification No data available CERTIFICATION No data available - Job...

  • Weblogic Admin

    3 days ago


    Bengaluru, India Capgemini Full time

    **Job Description**: Middleware Administration - Weblogic/tomcat/Apache Admin - Patching activitiy - Monitoring using multiple tools AppD, Grafana, APM, Splunk - Working on incidents(service now) - Autosys


  • Bengaluru, Karnataka, India FIS Global Full time

    Position Type : Full time Type Of Hire : Experienced (relevant combo of work and education) Education Desired : Bachelor of Information Technology Travel Percentage : 0%Splunk Development or AdministrationAre you curious, motivated, and forward-thinking? At FIS you'll have the opportunity to work on some of the most challenging and relevant issues in...


  • Bengaluru, India Tata Consultancy Services Full time

    JD: Exp: 4-7 years Locations: Bangalore/Pune Splunk Specialist for Splunk Enterprise Identification of required log files forcustomer required it security use case - Identification of necessary changeswithin the current logging to detect relevant security threats - Development of security relevant usecases in customer needing - Implementation of retesting...

  • OpenShift Admin

    2 weeks ago


    Bengaluru, India Virtusa Full time

    OpenShift Admin - CREQ188631 Description Job Description Skill: OpenShift Admin Role: T2, T1 Key responsibility: Certifications: Openshift 4 Essential skills Minimum 5+ years of experience as openshift admin Understand and resolve complex interdependencies of docker, podman, kubernetes & other infrastructure components Knowledge & hands-on...

  • L2 Splunk/Kafka Admin

    1 month ago


    Bengaluru, India airbus Full time

    Job Description: Grade : E2 Location : BangaloreReporting Manager: Brief Description : L2 Splunk/Kafka Admin - Infra, are responsible to collaborate and work with Airbus internal and external organizations to provide operational technical support to business and application teams. He or she should be able to drive the optimization, reliability, efficiency...

  • Windows Admin

    9 hours ago


    Bengaluru, India Infosys BPM Full time

    WALK-IN FOR WINDOWS ADMIN ON 17th & 22nd -May‘24 at BANGALORE. Greeting from Infosys BPM Ltd., You are kindly invited for the Infosys BPM::Walk-In Drive on 17th & 22nd -May‘24 at BANGALORE. Please carry copy of this posting to the venue and make sure you register and submit your application when attending the walk-in interview. Please find below...


  • Bengaluru, India Infosys BPM Full time

    WALK-IN FOR WINDOWS ADMIN ON 17th & 22nd -May'24 at BANGALORE.Greeting from Infosys BPM Ltd.,You are kindly invited for theInfosys BPM::Walk-In Drive on 17th & 22nd -May'24 at BANGALORE.Please carry copy of this posting to the venue and make sure you register and submit your application when attending the walk-in interview. Please find below the Interview...


  • Bengaluru, India Sage IT India Full time

    JD - Expert in creating solutions using Datadog, Dynatrace, and Splunk and deploy them to production extracting best value for the customer Mandatory Skills Dynatrace, AppDynamics Admin AIOps Key Responsibilities ? End-to-end execution and implementation of Datadog, Dynatrace solutions on complex customer environments - On-Prem/Cloud/Hybrid Cloud ?...


  • Bengaluru, India Infosys BPM Full time

    Job descriptionTECHNOLOGY WALK-IN DRIVE FOR " Windows admin" SKILL ON 8th May 2024 at BANGALOREGreeting from Infosys BPM Ltd.,You are kindly invited for the Infosys BPM::Technology Walk-In Drive on 8th May 24 at JP Nagar, BANGALORE.Interview Information:- Interview Date: 8th May 2024- Interview Time: 10:00 AM till 01:00 PMInterview Venue - BANGALORE::-...


  • Bengaluru, India Amadeus Full time

    Job TitleSpecialist - Information Security AmadeusAmadeus is part of everything it takes to bring travel to life. We provide the technology that keeps the travel sector moving – from initial search to making a booking, from pricing to ticketing, from managing reservations to check-in and departure processes.Our people are driven by a passion for ‘Where...


  • Bengaluru, Karnataka, India Capgemini Full time

    **Job Description**: - Good knowledge of SIEM, SIEM Architecture and Hybrid Integrations. - Expertise with Azure Sentinel, creating/deploying Analytics Rules, Playbooks, Workbooks, Logic Apps, Log Analytics, Key Vault, IAM, Azure AD, etc - Good Knowledge of Azure DevOps & GitHub, Familiarity with GitHub, Jenkins and CI/CD pipelines. - Experience in Query...