Cybersecurity professional with 8+ years of expertise in SIEM engineering, detection content development, and security automation. Skilled in Splunk (Enterprise & ES), Google Chronicle, and CrowdStrike NG-SIEM, with hands-on experience integrating diverse security products and developing ingestion pipelines. Proficient in threat detection, para security rule creation, and log engineering, with a proven track record of strengthening enterprise security monitoring and response capabilities. . Excellent reputation for resolving problems, improving customer satisfaction, and driving overall operational improvements.
Integration of Splunk with a wide variety of legacy ad security data sources that use various protocols.
Installation and configuration of Splunk apps to onboard security data sources into Splunk
Experience creating and maintaining Splunk reports, dashboards, forms, visualizations, alerts. Worked on installing Universal Forwarders and Heavy Forwarders to bring any kind of data fields into Splunk.
Writing Splunk Queries, Expertise in searching, monitoring, analyzing and visualizing Splunk logs.
Experience in integration using web services (REST,SOAP)
Designing, optimizing and executing Splunk-based enterprise solutions.
Installed and configured Splunk Universal Forwarders on both UNIX (Linux, Solaris, and AIX) and Windows Servers.
Hands on experience in customizing Splunk dashboards, visualizations, configurations using customized Splunk queries.
Responsible with Splunk Searching and Reporting modules, Knowledge Objects, Administration, Add-On's, Dashboards, Clustering and Forwarder Management.
Splunk
Python
CrowdStrike
undefined