Contract Details
- 3 month rolling contract
- Attractive rate
Requirements
As part of the log onboarding factory, SOC Onboarding & Integration Specialist will be in charge of the following activities:
- Onboarding logs following logs onboarding guidelines and process
- Identifying prerequisites for log sources to be onboarded (technology, versions, etc.)
- Defining the connectors setup and ensuring the setup of all IP configurations
- Requesting and following up on the opening of the necessary firewall flows
- Providing guidance on configuring the source devices according to logging standard
- Validating that events from log sources are received and troubleshooting when necessary
- Communicating on the progress and blocking points
- Formalize logging standards for new log sources to onboard
- Gather relevant information from the configuration guides related to the log sources technology and from the contacts managing the platform
- Define based on the collected information with the Security Monitoring and Detection and Security Incident Response teams the relevant logs to be collected
- Document the logging standard
- Manage the delivery of entities onboarding demands and ad-hoc projects
- Drive end to end log onboarding demands/projects in coordination with entities and projects stakeholders: understand the onboarding requirements, manage prioritisations and capacities
- Participate in demand requests and projects as a subject matter expert contributing to proposal and scoping, solution design
- Onboarding logs following logs onboarding guidelines and process
- Formalize logging standards for new log sources to onboard
- Liaise with the SIEM Platform Management team to ensure continuous integration within the environment
- Enable the information exchange and communication flow among the teams that implement SIEM Platform configuration change
- Perform tracking and documentation of all the change activity (i.e. on-boarding, connector configuration adjustment, etc.)
- Perform regular coordination to exchange information on the planned onboarding, identified issues, etc.