Principal Cribl Engineer

1 Month ago • 2 Years +

Job Summary

Job Description

The Principal Cribl Engineer will be responsible for creating procedures, implementing the software pipeline, focusing on monitoring and observability, and maintaining security systems for client environments. This role involves close collaboration with various internal teams and clients to deliver critical services. The engineer will serve as a primary responder for Managed Security customer systems, taking ownership of client issues and tracking them through resolution. The candidate will also be expected to provide guidance and mentoring to other engineers, assist with client onboarding, and generate reports for senior leadership. Furthermore, explaining and demonstrating how to use observability products to technical and non-technical personnel.
Must have:
  • 2+ years of Cribl Administration experience.
  • 2+ years of experience managing observability platforms.
  • Ability to deal confidently with complex technical problems.
  • Experience in designing, automating, maintaining observability platforms.
  • Knowledge of security logging for Linux, Windows and EDRs.
  • Expertise in delivering large-scale systems using big data technologies.
Good to have:
  • Previous experience working with Cloud (AWS, Azure, GCP).
  • Familiarity with DevOps.
  • Experience with various security products/technologies.
  • Experience working with Internal and client Ticketing and Knowledge Base Systems.
  • General security knowledge or certifications.
  • Knowledge of Linux and Windows Operating Systems.
  • An understanding of a wide array of server grade applications.
Perks:
  • Company committed to championing Diversity, Equality, and Inclusion.
  • Work/life balance.
  • Professional training resources.
  • Creative problem-solving and complex projects.
  • Volunteer Opportunities.
  • The ability to work remotely/from home (where applicable).

Job Details

This position will be fully remote and can be hired anywhere in the continental U.S. The Principal Cribl Engineer works in Optiv Security’s 24x7x365 Security Operations Center as a member of the Managed Security Services (MSS) team. The engineer will be responsible for creation of procedures, implementation of the software pipeline, focusing on the monitoring and observability platform and maintaining security systems for client environments. Experience and knowledge of observability pipelines, SIEM and other Security Technologies is essential. The candidate will work closely with Management, Principal Engineers, Senior Engineers, Solution Architects, Threat Analysts and other internal teams and clients to complete high profile, critical services to existing Managed Security Service clients. Serve as a primary responder for Managed Security customer systems, taking ownership of client issues and tracking through resolution. How you'll make an impact:
  • Act as a point of escalation for other Engineers and provide guidance and mentoring.

  • Assist with client transition and onboarding serve as primary point of contact for Managed Security Service clients.

  • This will require documentation of Account Governance processes and responsibility for report generation and notification to senior leadership about potential client Service Level Agreement (SLA) issues.

  • Explain and demonstrate how to use observability products to both technical and relatively non-technical personnel.

  • Provide remote consulting services via interactive client sessions to assist with implementation of multiple product vendors and technologies.

  • Implement, configure, and maintain SIEM software and appliance-based products in large enterprise and Government environments.

  • Develop, deploy and tune SIEM content such as correlation rules, dashboards, reports, and models.

  • Provide escalation support to Tier 1 for Authorized Support Customers, following processes and interacting appropriately with both customers and partners when required.

What we're looking for:
  • 2+ years of experience of Cribl Administration

  • 2+ years professional experience managing and maintaining observability platforms.

  • Ability to deal confidently with complex technical problems.

  • Willingness to learn and support multiple observability vendor platforms.

  • You should have experience in designing, automating, maintaining, and optimizing observability platforms (metrics, logging, and tracing)

  • Knowledge of security logging for Linux, Windows, major EDRs, Firewalls, & Active Directory.

  • Expertise in delivering large-scale systems using big data technologies including but not limited to: Enterprise-scale Kafka, Splunk, TSDB, etc.

  • Previous experience working with Cloud (AWS, Azure, GCP)

  • You should be abreast of industry standards and trends related to telemetry and software pipelines.

  • The ability to aggregate and analyze logs from various deployed security devices.

  • Some experience with creating custom: content, dashboards, reports, and alerts.

  • Shift flexibility, including the ability to provide on call support (24/7) when needed.

  • Experience working with Internal and client Ticketing and Knowledge Base Systems for Incident and Problem tracking as well as procedures. (i.e., Jira, Confluence, ServiceNow etc.).

  • General security knowledge (GIAC, CISSP, CCSE, CISA, HBSS, NSA, CEH, Cisco Security, Security +, or other security certifications).

  • Knowledge of Linux and Windows Operating Systems.

  • An understanding of a wide array of server grade applications such as: DBMS, Exchange, DNS, SMTP, IIS, Apache, SharePoint, Active Directory, Identity Management, Patch Management, LDAP, SQL, and others

  • Experience with various security products/technologies such as: Devo, Chronicle, EDR, XDR, Exabeam, Sentinel, QRadar, Splunk, LogRhythm, Securonix, Elastic, RSA NetWitness, SumoLogic, and infrastructure components such as proxies, firewalls, IDS/IPS, DLP etc.

  • Familiarity with DevOps

#LI-TW1 What you can expect from Optiv
  • A company committed to championing Diversity, Equality, and Inclusion through our Employee Resource Groups.
  • Work/life balance
  • Professional training resources
  • Creative problem-solving and the ability to tackle unique, complex projects
  • Volunteer Opportunities. “Optiv Chips In” encourages employees to volunteer and engage with their teams and communities.
  • The ability and technology necessary to productively work remotely/from home (where applicable)
EEO Statement Optiv is an equal opportunity employer. All qualified applicants for employment will be considered without regard to race, color, religion, sex, gender identity or expression, sexual orientation, pregnancy, age 40 and over, marital status, genetic information, national origin, status as an individual with a disability, military or veteran status, or any other basis protected by federal, state, or local law. Optiv respects your privacy. By providing your information through this page or applying for a job at Optiv, you acknowledge that Optiv will collect, use, and process your information, which may include personal information and sensitive personal information, in connection with Optiv’s selection and recruitment activities.  For additional details on how Optiv uses and protects your personal information in the application process, click here to view our Applicant Privacy Notice. If you sign up to receive notifications of job postings, you may unsubscribe at any time.

Similar Jobs

Krafton  - Product Manager

Krafton

Bengaluru, Karnataka, India (On-Site)
3 Months ago
Activision - Senior Technical Producer

Activision

Warsaw, Masovian Voivodeship, Poland (On-Site)
2 Months ago
Rackspace Technology - Data Architect

Rackspace Technology

Vietnam (Remote)
4 Months ago
NOVOMATIC - Build Your Future With Us. Join Our Talent Pool.

NOVOMATIC

Zabierzów, Lesser Poland Voivodeship, Poland (Hybrid)
3 Weeks ago
Gunzilla - Lead AI Designer

Gunzilla

London, England, United Kingdom (On-Site)
1 Month ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Corsair - Firmware Software Engineer

Corsair

Taiwan (On-Site)
2 Months ago
Thales - Technical Project Manager

Thales

Bogota, Colombia (Hybrid)
3 Weeks ago
Fluence - Product Manager - Battery Systems

Fluence

Houston, Texas, United States (Hybrid)
8 Months ago
Assystems - PMO IT confirmé H/F

Assystems

Bordeaux, Nouvelle-Aquitaine, France (On-Site)
7 Months ago
Anavation - Atlassian Subject Matter Expert

Anavation

San Antonio, Texas, United States (Remote)
1 Month ago
Evolution - QA Engineer

Evolution

Riga, Latvia (Hybrid)
1 Year ago
Playtika - Technical Account Manager

Playtika

Poland (On-Site)
6 Months ago
Aptive - QA Engineer

Aptive

Bengaluru, Karnataka, India (Hybrid)
3 Weeks ago
sagecor - SADM 1 (QKS - 031)

sagecor

Fort Meade, Maryland, United States (On-Site)
2 Months ago
4A Games - QA Lead New IP

4A Games

Kyiv, Kyiv City, Ukraine (On-Site)
1 Month ago

Get notifed when new similar jobs are uploaded

Jobs in Overland Park, Kansas, United States

Whatnot - Sales Development Representative

Whatnot

Los Angeles, California, United States (On-Site)
1 Month ago
Nagarro - Staff Engineer, BI Reporting

Nagarro

California, United States (On-Site)
7 Months ago
Alphasense - Product Manager - Broker Research

Alphasense

New York, United States (Remote)
2 Weeks ago
Trailer Park Group - Content Creator

Trailer Park Group

Los Angeles, California, United States (Remote)
2 Weeks ago
Ansys - Product Sales Executive - MBSE

Ansys

Novi, Michigan, United States (Remote)
3 Weeks ago
Scout - Engineer, Thermal Systems

Scout

Novi, Michigan, United States (On-Site)
3 Weeks ago
Treck - Service Technician / Advisor

Treck

Baltimore, Maryland, United States (On-Site)
3 Weeks ago
Nintendo - Senior Consumer Programs Specialist - Nintendo San Francisco Store

Nintendo

San Francisco, California, United States (Hybrid)
6 Months ago
Epic Games - Audio Designer

Epic Games

Cary, North Carolina, United States (On-Site)
1 Month ago
Fortra - SOC Analyst

Fortra

United States (On-Site)
3 Weeks ago

Get notifed when new similar jobs are uploaded

Similar Category Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

About The Company

We work alongside clients to manage cyber risk and equip them with perspectives and programs to accelerate business progress. Our real-world experience, deep vertical expertise and diverse teams enable us to face any challenge with confidence. We put you at the center of our unmatched ecosystem of people, products, partners and programs to design and implement agile solutions. Our adaptive approach continually assesses risk in the context of cyber and broader objectives to secure today's business and fortify it for the future.

Bengaluru, Karnataka, India (On-Site)

Fort Worth, Texas, United States (Remote)

Denver, Colorado, United States (Remote)

Bengaluru, Karnataka, India (On-Site)

Overland Park, Kansas, United States (Remote)

Bengaluru, Karnataka, India (On-Site)

Bengaluru, Karnataka, India (Hybrid)

Overland Park, Kansas, United States (Remote)

Minneapolis, Minnesota, United States (Remote)

Bengaluru, Karnataka, India (On-Site)

View All Jobs

Get notified when new jobs are added by Optiv

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug