how traffic flows within a network. • Advanced knowledge of Windows and Linux operating environments, including standard commands, file systems, and user authentication mechanisms. • Competence in using SIEM solutions (e.g., ArcSight, Azure Sentinel) for monitoring and log analysis; some exposure to additional analysis tools such as basic XDR platforms. • Able to demonstrate proficient knowledge using Kusto Query Language (KQL) to More ❯
how traffic flows within a network. * Advanced knowledge of Windows and Linux operating environments, including standard commands, file systems, and user authentication mechanisms. * Competence in using SIEM solutions (e.g., ArcSight, Azure Sentinel) for monitoring and log analysis; some exposure to additional analysis tools such as basic XDR platforms. * Able to demonstrate proficient knowledge using Kusto Query Language (KQL) to More ❯
Reading, Berkshire, South East, United Kingdom Hybrid / WFH Options
LA International Computer Consultants Ltd
tasks or create custom detection methods. o Strong experience in handling complex cyber incidents (e.g., APTs, ransomware, data breaches). o Hands-on experience with SIEM platforms (e.g., Splunk, ArcSight, LogRhythm) and endpoint detection/response (EDR) tools. *Certifications (Preferred ): o Certified Information Systems Security Professional (CISSP) o Certified Incident Handler (GCIH, EC-Council) o Certified Forensic Computer Examiner More ❯
ArcSight Data Engineer (DV Security Clearance) Position Description The Space, Defence and Intelligence business unit in CGI is a true IT Systems Integrator. We work, build, and operate bespoke, technically complex, mission-critical systems which help our clients keep us all safe and secure. We bring innovation to our clients using proven and emerging technologies, agile delivery processes and … to automate releases through CDP • Creating and maintaining design, installation and support documentation • Awareness of data engineering, either from a SQL or Big Data background. • Configure, maintain and support ArcSight SIEM toolset: - Investigating/resolving issues with ArcSight SIEM toolset - Create, maintain, and troubleshoot filters for SmartConnectors and ESM - Creating supporting bespoke custom (Flex/Regex) Connectors Desired More ❯