Roomina Merali-Splunk Engineer – Analytics and Monitoring – Governance and Compliance
Check rate
Experience
Splunk Engineer – Analytics and Monitoring – Governance and Compliance
Solsys Corporation
- Successfully onboarded new data from a variety of different inputs including syslog, HEC, UF, HF, Cloud, various Splunk TA’s such as DB Connect and Salesforce, Windows Event Collector Servers, and other database connections
- Created and managed Splunk knowledge objects (field extractions, event types, etc.)
- Consulted with management and Technology Asset Owners to determine and implement security, logging and monitoring audit requirements
- Responsible for mapping customer data to the Splunk Common Information Model (CIM) for change and authentication audit requirements
- Coordinated and conducted event collection, log management, event management, and compliance automation
Platform Security Lead
Manulife Bank
- Provided expert guidance regarding the implementation of advanced security use cases
- Developed correlation and detection to support alerting and response capabilities for the SIEM environment
- Designed and implemented a SIEM solution using Splunk, which increased the organization’s ability to detect and respond to security incidents
- Worked with security teams to ensure compliance with regulatory requirements such as HIPAA, PCI-DSS, and SOX
- Monitored SIEM systems to detect and respond to security incidents
- Collaborated with internal customers to aid with requests such as log source configuration, app installation, data parsing, monitoring and alerting
- Installed, configured and supported Devo syslog-ng relays, including parsing of events received
- Created detailed reports, queries, dashboards, alerts, and visualizations as defined by customer requirements
- Worked with the integrations and telemetry teams to onboard Devo events from various common and complex log sources, including AWS and Azure cloud
- Created and maintained standard operating procedures, technical documents, and troubleshooting guidelines, including process improvements as it related to Devo operations
- Conducted system health checks on managed technologies and provided recommendations on performance improvements
- Configured Grafana for log analysis and visualization, resulting in improved troubleshooting and performance optimization
- Conducted regular security assessments and vulnerability scans to identify and mitigate potential risks
- Responsible for identifying, investigating, managing and documenting cyber security events as part of incident management and CSIRT processes
- Accountable for developing Devo roles and responsibilities (RACI) document and educating SOC team members in taking over day-to-day Devo support
- Acted as a subject matter expert while providing leadership, guidance, and mentorship to other security teams on the use of SIEM tools
Senior Security Specialist
BMOFG
Senior Analyst
NTT Data
Tivoli Specialist
IBM Canada
Industry Experience
See where this freelancer has spent most of their professional time.
Experienced in Information Technology and Banking and Finance.
Business Area Experience
See which departments and functions this freelancer has contributed to most.
Experienced in Information Technology, Audit, Business Intelligence, and Operations.
Summary
As an experienced Cybersecurity Engineer with extensive experience in deploying and maintaining SIEM infrastructures, I am well-versed in various security technologies and methodologies. With a strong understanding of IT security concepts and best practices, I possess a thorough understanding of risk and vulnerability management, log analysis, security monitoring, and threat detection. In my previous roles, I have successfully provided expert guidance and consultation to clients and project teams on technical guidance and troubleshooting complex problems. Additionally, I have mentored team members and possess strong leadership skills. My technical skills include proficiency in UNIX, Windows, and Linux, as well as scripting languages such as Python, Perl, and Splunk Search Language. I have also worked with various security tools such as CyberArk, IBM Security Identity Manager, RSA, and Qualys. With my experience in data analytics and reporting, I am capable of creating custom dashboards, reports, and alerts that deliver real-time insights into security events and incidents.
Skills
Business Skills**
Ability To Work Independently In A Senior/Lead Role On A Diverse Range Of Tasks, Including Coaching And Mentoring Team Members
Subject Matter Expert, Able To Effectively Consult With Clients And/Or Project Teams To Provide Technical Guidance And Highly Complex Troubleshooting And Problem Resolutions
Expertise In Risk And Vulnerability Management, Log Analysis, Security Monitoring And Threat Detection, Kpi’S, Reporting And Data Visualization, Assessment/Penetration Testing Of Web Applications And Networks
Technical Skills**
Demonstrated Ability For Deploying, Maintaining, And Supporting Siem Platforms Such As Splunk In Highly Available Distributed And Cloud Environments
Experienced In Analyzing Network, Event, And Security Logs Across A Range Of Platforms Including Applications, Storage Devices, Servers, Data Centers, And Cloud Environments
Data Analytics And Reporting: Data Extraction, Field Mapping, Event Lookup, Log Analysis, Cim Compliance, Data Modelling, Elasticsearch, Logstash, Grafana
Security: Cyberark, Ibm Security Identity Manager (Isim), Rsa, Active Directory/Ldap, Mitre, Nist, Saml, Qualys, Endpoint Security
Devops And Ticketing: Ansible, Git, Bitbucket, Splunk, Servicenow, Jira, Sourcetree
Operating System: Unix, Windows, And Linux
Scripting/Programming: Unix Shell (Korn And C) Scripts, Sql, Perl, Python, Splunk Search Language (Spl)
Languages
Education
Herzing Career College
Diploma · Systems Analysis and Programming
Certifications & licenses
Splunk Enterprise 9.0 System Administration
Splunk Certified Power User
Splunk Core Certified User
Splunk Enterprise Security Administration
CyberArk Trustee Certification
ITIL Foundation Certified
Tivoli Professional - Certified IT Specialist
Statistics
Experience
Global Experience
Expertise
Qualifications
Profile
Frequently asked questions
Have questions? Find more information here.
Average rates for similar positions
Rates are based on recent contracts and do not include FRATCH margin.
Similar Freelancers
Discover other experts with similar qualifications and experience
Experts recently working on similar projects
Freelancers with hands-on experience in comparable project as a Splunk Engineer – Analytics and Monitoring – Governance and Compliance
Nearby freelancers
Professionals working in or nearby Pickering, Canada
