Skip to main content Skip to Footer

Job Listing

SIEM & Monitoring Integration Consultant

Job Location: Kuala Lumpur

Regional Description: Malaysia

Job Number: 00466485


- Job description

Join Accenture and help transform leading organizations and communities around the world.  The sheer scale of our capabilities and client engagements and the way we collaborate, operate and deliver value provides an unparalleled opportunity to grow and advance.  Choose Accenture, and make delivering innovative work part of your extraordinary career.
Key Responsibilities may include:
  • Develop a comprehensive SIEM and Security Analytics architecture to support real-time security monitoring operations
  • Perform as technical lead in the development and delivery of custom content, system integration and event reporting
  • Troubleshoot and configure networking devices, various platforms, and database, Windows and/or UNIX system administration
  • Build and implement reporting and visualizations to inform and assist clients' incident response teams and security managers
  • Contribute to a strong client relationship through interactions with client personnel
  • Design, develop and document Security Operations Center Procedures and Processes
  • Communicate client expectations to the engagement team
Basic Qualifications:
  • 2+ years Splunk administration (Certified Splunk Administrator preferred)
  • 2+ years of working with SIEM tools performing deployment, configuration, and maintaining operations, content development
  • 2+ years working with security tool administration (e.g. firewalls, IDS, end-point protection, content filtering, IAM, DLP)
  • 2+ years working with operational information security disciplines (e.g. incident response, security infrastructure management or monitoring services)
Preferred Skill Requirements:
  • Hands-on Splunk experience, inclusive of:
o   Field extractions, tags, event types, alerts, lookups, and data models
o   Experience creating, updating, and managing notable events
o   Experience working in Incident Review
o   Experience with creating robust reports, notable events
o   Experience with Splunk Search Language
o   Understand dashboards and data collection
  • Experience with Splunk premium apps such as Splunk ES, Cloud or ITSI
  • Statistical and analytical modeling experience
  • Custom use case and content development experience
  • Deep understanding and proven experience in Cyber Security Operations (Monitoring, Detection, Incident Response, Forensics)
  • Project and delivery management experience
  • RFP/RFI Response Knowledge (ability to work and support proposal efforts)
  • Cyber Security experience in complex global enterprise and or Govt. environment a plus
All of our consulting professionals receive comprehensive training covering business acumen, technical and professional skills development.  You’ll also have opportunities to hone your functional skills and expertise in an area of specialization.  We offer a variety of formal and informal training programs at every level to help you acquire and build specialized skills faster. Learning takes place both on the job and through formal training conducted online, in the classroom, or in collaboration with teammates. The sheer variety of work we do, and the experience it offers, provide an unbeatable platform from which to build a career.
Accenture is an equal opportunities employer and welcomes applications from all sections of society and does not discriminate on grounds of race, religion or belief, ethnic or national origin, disability, age, citizenship, marital, domestic or civil partnership status, sexual orientation, gender identity, or any other basis as protected by applicable law.

Find a job

Start your search here: Enter job title, skill, experience level or city

Stay in touch

Join the Accenture Talent Connection, follow our Careers blog, or sign up for job alerts.