In this role, you'll work in one of our IBM Consulting Client Innovation Centers (Delivery Centers), where we deliver deep technical and industry expertise to a wide range of public and private sector clients around the world. Our delivery centers offer our clients locally based skills and technical expertise to drive innovation and adoption of new technology.
Splunk Admin activities to perform:
- Install and configure Splunk components
- Perform tests
- Support to Client security accreditation process and related activities
- Perform tests and implement remediation when needed
- Write documentation (detailed design, test cases, test report, operational handbooks)
- Perform deployment to production and assist to hypercare
- Provide advice to the Solution Architecture team
- Define Tier 2 systems onboarding strategy (via ACPV Enclaves)
- Create enclave design template per enclave type
- Create and document detailed design for Splunk components as part ACPV enclaves (105 enclaves to be designed & deployed)
- Splunk component set up per Enclave
- Integration with Splunk core components
- Good knowledge of Splunk products in scope: Splunk Enterprise, Splunk IT Service Intelligence, Splunk Enterprise Security
- Hands-on experience (at least 2 years) with the configuration, build and deployment of Splunk solutions
- Good knowledge of endpoint security (hardening, patching, vulnerability management)
- Good knowledge of network security
- General cybersecurity knowledge
- Disciplined execution of procedures
- Experience with Splunk as an observability solution is a bonus
- Communication skills : Good knowledge of English verbally & written