Responsibilities: Build and tune Splunk SOC use cases mapped to MITRE ATT&CK. Write optimized SPL, validate logs, reduce false positives, assign severity, document detections, and deliver production-ready alerts under tight timelines.
Responsibilities: Build and tune Splunk SOC use cases mapped to MITRE ATT&CK. Write optimized SPL, validate logs, reduce false positives, assign severity, document detections, and deliver production-ready alerts under tight timelines.