Position : Security System Administrator
Duration : 1 year
Bilingualism : French and English
Temp-to-perm : Preferred!
Telework : Hybrid or 100% remote depending on the profiles
Main responsibilities :
- Configuration, management, and maintenance of the event and incident manager (SIEM).
- Ensure data integrity, implementation of security and control measures.
- Guarantee high availability of the technological ecosystem.
Team context :
The IT Cybercrimes delivery team manages the monitoring ecosystem, including Splunk Enterprise Security, Splunk SOAR, Extrahop, and other cybersecurity tools.
Required skills :
Experience in security log management and creation of use cases for cyber threat detection.Knowledge and experience in optimizing ingestion pipelines with the Cribl tool (strongly desired).Current projects :
Implementation of a data lake dedicated to cybersecurity.Complete overhaul of the ingestion pipeline to optimize the use of Splunk and improve the efficiency of detection processes.