Job ID: MI-93008 (911090928)
Local QRadar Admin/Security Analyst with SIEM, PKI, syslog/jdbc/LEA experience
Location: Lansing MI (DTMB)
Duration: 12 months
Positions: 1 (1/1)
Position location: This position is located in Lansing, MI. Local candidates preferred, this person is REQUIRED to be in the office two days a week.
Top Skills & Years of Experience:
-Must be knowledgeable in QRadar SIEM Software.
-Understanding of PKI and implementation of encrypted communications
-Familiarity with various SIEM collection protocols, such as syslog, jdbc, LEA etc
-Experience with IBM QRadar implementations
-Solid communication skills and ability to interact with clients
Resource Tasks:
-Deploy and manage QRadar hosts and licenses.
-Configure user accounts and authentication.
-Configure QRadar data retention.
-Configure and troubleshoot network and security devices, various operating systems, and database services to bring data to QRadar.
-Define and improve network hierarchy.
-Define and configure log and flow data sources.
SIEM administrator (IT Security Auditor) will be familiar with product functionality and security policies. They will plan, install, configure, implement, deploy, migrate, tune, and troubleshoot the QRadar SIEM software.
The resource is responsible for the State of Michigan’s enterprise SIEM and logging environments. They will work with the engineering teams to setup new clients in existing SIEM systems or setting up new SIEM systems. The resource would also work with the SIEM monitoring team to provide training, feedback, and assistance, including AQL query and search support, therefore cybersecurity analysis skills are required. The resource must have strong communication skills as they are heavily involved with client onboarding and process development, reporting, and status and performance meetings.
This is for one full-time contract positions offsite and onsite at our Dimondale, Michigan location.
A Successful Candidate:
-Familiarity with various SIEM collection protocols, such as syslog, jdbc, LEA etc
-Understanding of PKI and implementation of encrypted communications
-Has a firm grasp of network security fundamentals
-Understands SIEM management, tuning, parsing and configurations
-Has a solid understanding of TCP/IP, the OSI Model and Underlying Protocols
-Is proficient with IBM QRadar
-Is English fluent (written and verbal)
-Has strong attention to detail