Splunk Engineer:Signature Consultants has an opportunity for a Splunk Engineer. The Engineer serves in a technical capacity in all aspects of onboarding log sources to the Splunk Enterprise Security. In this role the candidate will log source onboarding includes coordinating security and audit log data ingestion; parsing the data, making it CIM compliant, development, tuning and validation of Use Cases and dashboards. SIEM is the repository for the collection, storage and correlation event data across the enterprise. This function includes documenting log source on boarding requirements, performing log on boarding configuration and development/validation of security monitoring Use-Cases. Additional functions include analyzing, assessing and documenting system configuration settings against established requirements for commonly used IT platforms.Responsibilities:Develop monitoring Use-Cases as required by logging and monitoring ongoing operation.Research, analyze and understand log sources utilized for the purpose of security monitoring, particularly security and networking devices.Develop and provide system configuration and log onboarding requirements to system owners.Collaborate with other teams to document and implement logging and monitoring capabilities to meet established requirements.Support project tracking by maintaining relevant log on boarding metrics and other relevant criteriaActs as influencer of peers and managementActs as resource for incident response related activities and collaborates with technical teams for security incident remediation and communicationAllocates and prioritizes security resources efficiently within the organizationAnalyzes and implements security solutions to meet customer requirementsConducts proof of concepts, vendor comparisons and recommend solutions in line with business requirementsConducts risk assessments to evaluate the effectiveness of existing controls and determine the impact of proposed changes...