Job description
•Build incident response playbooks for our Security Operations Center Team (SOC) for all critical and high cloud alerts
•Configure and Tune alerting on Lacework and GuardDuty
•Point CloudTrail logs to specific Splunk indexes (per op-co)
•Provide appropriate investigation resources for SOC including:
•Splunk Dashboards
•Access / Training on Cloud
•Provide IAM audit functions for AWS environments
•Work with AWS account owners to migrate from disparate SAML sources to centralized AWS SSO through Azure AD
•Create a process document for discovering, responding and documenting rogue AWS accounts
•Assist Security team in Incident Response Activities.
•Program management knowledge
Job Type: Contract
Pay: $80.00 - $100.00 per hour
Schedule:
- 8 hour shift
- Day shift
- Monday to Friday
Experience:
- Security Incident response: 3 years (Required)
- Lacework: 2 years (Required)
- Cloud security: 5 years (Required)
Work Location: Remote
seankuhnke.com is the go-to platform for job seekers looking for the best job postings from around the web. With a focus on quality, the platform guarantees that all job postings are from reliable sources and are up-to-date. It also offers a variety of tools to help users find the perfect job for them, such as searching by location and filtering by industry. Furthermore, seankuhnke.com provides helpful resources like resume tips and career advice to give job seekers an edge in their search. With its commitment to quality and user-friendliness, seankuhnke.com is the ideal place to find your next job.