The HR Path Group, a global player in HR consulting, assists its customers in their HR transformation projects, both on the human and tools aspects (HRIS). We intervene in Europe, America and Asia-Pacific, for our large accounts and SME customers, in order to offer them a global support in the development of their HR strategy.
Advise to Run ! HR Path, Global Leader in HR solutions
YOUR MISSIONS
HR Path is seeking a skilled and motivated SIEM Administrator with knowledge in Splunk, Tenable Security Center, and OpenCTI to join our security operations team. The role is under the Head of Security Operation (CISO manager is HR Path CEO).
This role is important to maintain, optimize, and enhance HR Path security tools to ensure our organization’s security, and compliance proactively detect and mitigate security threats.
As a SIEM Administrator, you will be responsible for managing and maintaining the Splunk platform, the Tenable Security Center for vulnerability management, and the OpenCTI platform for threat intelligence. You will work closely with incident security analysts, compliance and audit team, and other security personnel to ensure that tools are adapted to current and future needs.
o Administer, configure, and maintain the Splunk platform, including forwarders, indexers, and search heads
o Develop, deploy, and optimize Splunk dashboards, searches, and alerts to enhance visibility of security events and threats
o Troubleshoot and resolve issues related to data ingestion, indexing, and query performance
o Create and maintain Splunk apps and custom Splunk configurations as required by security operations and compliance
o Implement and maintain Splunk security best practices for data retention, storage, and compliance
o Work closely with security team members to ensure Splunk integrates seamlessly with other security and IT systems
o Go deeper in logs to investigate use cases associated to fraud
o Administer and configure Tenable Security Center for vulnerability scanning, management, and reporting
o Administer Tenable.IO scope to ensure collect from remote vulnerability scanning, management, and reporting
o Configure, schedule, and control vulnerability scans of systems, networks, and assets
o Integrate Tenable Security Center with other security platforms such as SIEMs, ticketing systems, and remediation tools
o Maintain and update Tenable plugins, scanners, and configuration settings
o You will not be in charge of remediation follow-up (managed by the SOC/VOC team)
o Manage and administer the OpenCTI platform for centralized threat intelligence management and integration (based on Kubernetes)
o Develop workflows for the collection, analysis, and sharing of threat intelligence
o Integrate OpenCTI with other security platforms (Splunk, Firewalls, WAF, Tenable, etc.)
o Configure and maintain data pipelines for automatic ingestion of threat intelligence feeds
o You will not be in charge of threat intelligence qualification and investigation (managed by the SOC/VOC team)
The position is located In either Montreal or Toronto.
YOUR PROFILE
o Advanced knowledge of Splunk search language (SPL) and dashboard creation
o Splunk Enterprise Certified Admin or associated knowledge
o Experience with Tenable vulnerability management, including configuring scans, interpreting findings, and reporting
o Understanding of OpenCTI platform workflows, intelligence sharing, and integrations with other security tools
o Familiarity with threat intelligence concepts such as IOC, TTPs, and MITRE ATT&CK framework.
WHAT WE OFFER
See you soon at HR Path !
...dentification and traceability solutions, offering a full range of reliable and innovative inkjet, thermal transfer, laser, print and label application systems. Markem-Imaje delivers fully integrated solutions that enable product quality a...
...About the Role At Care Options for Kids, a pediatric home health care company providing one-on-one care in the home, we do things a little differently. There's no revolving door of patients or hospital setting chaos blinking call lights, scurrying doctors, and wards...
...About the Job Join our team as a Pediatric Speech-Language Pathologist at Therapedia, LLC in Justin, TX ! Therapedia, LLC is... ...hour work days. Requirements: Texas speech-language pathology license or eligibility for licensure required. Pediatric...
... / WordPress SEO Web HTML ONE-VALUE WEB...
...ependently and in a fast-paced, remote team The Employer Our client is on the lookout for a Full-time Junior Unity Developer to join our team and focus on the performance development and maintenance of our recently published mobile a...