Splunk Developer (Threat Detection Consultant) in Dartford

Splunk Developer (Threat Detection Consultant) in Dartford

Dartford Freelance 40000 - 64000 £ / year (est.) Home office (partial)
Salt

At a Glance

  • Tasks: Join us as a Splunk Developer to enhance threat detection for our banking clients.
  • Company: Work with a leading financial institution in vibrant cities like London, Paris, Brussels, or Amsterdam.
  • Benefits: Enjoy hybrid work options and competitive daily rates between £500 - £800.
  • Other info: Opportunity to coach a team and influence security processes in a fast-paced environment.
  • Why this job: Be part of a dynamic team, improving cybersecurity while developing your technical skills.
  • Qualifications: Experience with SIEM use cases and proficiency in Splunk's search processing language (SPL) required.

The predicted salary is between 40000 - 64000 £ per year.

Duration: 1 year

Rate: 500 - 800 per day

Hybrid: 2 days onsite per week (London, Paris, Brussels or Amsterdam)

Role:

  • Interact with the different customers to capture and define requirements for the development and testing of the threat detection capabilities.
  • Cooperate with log source onboarding team to assure correct log source onboarding and log mapping to data models according to Splunk standard processes.
  • The development and tuning and continuous improvement of correlation rules.
  • Develop and maintain dashboards, reports, and alerts.
  • Create Splunk Knowledge Objects to address customers' needs in context of using Splunk as a security tool.
  • Prepare correlation search tests, conduct tests, and document evidence from tests that show correlation search addresses scenario described in use case.
  • Responsible for the creation of procedures, high-level/low-level documentation, implementation of processes and development of staff in relation to SIEM detection logic.
  • Coach a team (from a technical perspective); review work outputs and provide quality assurance.
  • Analyse and identify areas of improvement with existing processes, procedures, and documentation.
  • Demonstrate how to use SIEM & Enterprise Security products to both technical/non-technical personnel.
  • Provide expert technical advice and counsel in the design, monitoring and improvement of SIEM security systems.
  • Prioritise and coordinate backlog of threat detection requests, making sure we have a healthy balance between defect resolution and new features.

Qualifications:

Technical Skills:

  • In-depth experience in development and maintenance of SIEM use cases.
  • Fluent in Splunk's search processing language (SPL).
  • Excellent knowledge of Splunk Enterprise and Splunk Enterprise Security.
  • Sound knowledge about Splunk Common Information Model and log normalization using Data Models.
  • Solid understanding of cybersecurity technologies, protocols, and applications.
  • Excellent English communication skills (written and oral).

Nice to have:

  • Splunk Core Certified (Advanced) Power User (crucial).
  • Splunk Certified Developer (nice to have).
  • Splunk Enterprise Certified Admin (nice to have).
  • Splunk Enterprise Security Certified Admin (nice to have).
  • Any other Security Certifications (e.g. CEH, GIAC, CISSP, OSCP).

Soft Skills:

  • Strong analytical skills to evaluate sophisticated multivariate problems and find a systematic approach to gain a quick resolution, often under stress.
  • Strong problem solving, documentation, process execution, time management and organisational skills.
  • Ability to communicate sophisticated information, concepts, or ideas in a confident and well-organised manner through verbal, written, and/or visual means.
  • Fast and independent learner, with ambition to self-improve.
  • At ease in a fast-changing environment, flexible and pragmatic, open-minded.
  • Accurate, acting with attention to details.
  • Client focus and delivery oriented.
  • A team-focused mentality with ability to work & collaborate effectively in a team environment.
  • Good leadership and communication skills, whether on the field, in the team or with management.
  • A keen standout colleague and coordinate work among people from different areas or divisions.
  • A good relationship builder with strong diplomacy skills.
  • Ability to work autonomously.

Remote working: A minimum office presence of eight days per month is required.

Salt

Contact Details:

Salt Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Splunk Developer (Threat Detection Consultant) in Dartford

Get Active on Cybersecurity Forums

Join platforms like Stack Exchange and Reddit’s r/cybersecurity to hang out with industry pros, learn the latest, and share your insights. This will not only boost your visibility but also help you connect with potential clients who might need your freelance services.

Show Off Your Skills with Public Projects

Create a few open-source projects or contribute to existing ones that showcase your cybersecurity skills. Use GitHub to display your work, as this is an excellent way to attract clients looking for freelancers with a proven track record.

Attend Local Conferences and Meetups

Make sure to hit up cybersecurity meetups, workshops, and conferences in your area. These events are goldmines for networking, and you’ll often find people looking for freelancers after a chat over a coffee – so come prepared with your business cards and a killer elevator pitch!

Market Yourself Smartly

Set up a professional website that showcases your portfolio, expertise, and client testimonials. Optimise it for SEO with relevant keywords so potential clients searching for cybersecurity freelancers can easily find you. Don’t forget to link to your site on all your social media and profiles!

We think you need these skills to ace Splunk Developer (Threat Detection Consultant) in Dartford

Splunk Search Processing Language (SPL)
SIEM Use Case Development
Splunk Enterprise and Splunk Enterprise Security
Splunk Common Information Model
Log Normalisation using Data Models
Cybersecurity Technologies Knowledge
Analytical Skills

Some tips for your application 🫡

Show Your Skills Through a Strong Portfolio:Since you're applying for a freelance role in cybersecurity, it's crucial to showcase your technical skills through a detailed portfolio. Include case studies of projects you've worked on, any security tools you've developed or assessed, and specifics on the methodologies you’ve used. This will help Salt understand what you're capable of.

Certifications Matter!:Make sure to list any relevant certifications you hold, such as CISSP, CEH, or CompTIA Security+. Freelance clients often value these credentials as they reflect your expertise and commitment to the field. If you’re actively pursuing more certifications, don’t hesitate to mention that too!

Rates, Availability, and Your Work Style:In your application, it’s essential to be clear about your freelance rates and availability. Clients appreciate transparency. Mention how many hours a week you can dedicate and your preferred working hours, as this sets expectations from the start and shows you're organised and professional.

Tailor Your CV to Highlight Cybersecurity Experience:When crafting your CV, make sure to tailor it specifically to cybersecurity. Highlight projects, tasks, and achievements related to security assessments, vulnerabilities you've mitigated, or compliance work you've undertaken. Keywords relevant to the job can grab attention and increase your chances of landing a spot at Salt.

How to prepare for a job interview at Salt

Showcase Your Cybersecurity Skills

As a freelancer in cybersecurity, it’s crucial we demonstrate not just our knowledge but our practical skills too. Be ready to discuss specific tools you’ve used, like Wireshark or Metasploit, and share relevant experiences where you identified vulnerabilities or mitigated risks in past projects.

Prepare Your Portfolio

Unlike traditional roles, freelancing relies heavily on your portfolio. Let’s curate a selection of past work that showcases our best projects. If we’ve handled penetration tests, audits, or incident responses, be sure to highlight these in your portfolio, and share any client testimonials if we have them.

Stay Updated on Trends and Tools

Cybersecurity is an ever-evolving field, so we should be prepared to chat about recent developments and how they impact our work. Familiarise ourselves with the latest threats, tools, and frameworks, like MITRE ATT&CK, that are pertinent to the projects we’re pitching.

Pitching Your Value as a Freelancer

When freelancing, we often need to negotiate our rates and value propositions. Be ready to explain how our skills can help Salt protect their assets and manage risks. It can help to outline some potential strategies or improvements we could implement for them based on their current setup.