Job Summary
Job Description
What is the Opportunity?
RBC Defensive Threat Operations (DTO) team is seeking an experienced Splunk Engineer with demonstrated competence and thought leadership capability to contribute toward the success of our Cyber Resiliency initiatives. Under the direction of the Director of Correlation Engineering, the Senior Splunk Engineer is responsible for maintaining the RBC Security Information Event Management (SIEM) platform.
What will you do?
The Senior Splunk Engineer is a hands-on technologist who is an expert in the use of the technologies that comprise the RBC SIEM platform architecture, and creates and tunes the SIEM rules to adjust the specifications of alerts and security incidents. The scope of this position is RBC Enterprise-wide and requires a very good understanding of the security controls RBC uses and how they provide value to the business.
The incumbent will work closely with other members of the Global Security teams in ensuring that the security posture of RBC is maintained and take a proactive approach in continually assessing the effectiveness and efficiency of the SIEM platform.
Essential Functions:
Serve as a Subject Matter Expert (SME) for the SIEM and Splunk platform
Develops and implements effective correlation rules
Tunes SIEM components to ensure maximum reliability and reduce false positives
Review security context alerts and log sources
Essential Capabilities:
Ability to relate to non-technical users in user-friendly language
Ability to understand or learn the technical implications of security threats
Ability to manage multiple concurrent objectives or activities, and effectively make judgments in prioritizing and time allocation in a high-pressure environment
What do you need to succeed?
Must-have:
Bachelor of Science in a technology-related discipline or 3 years of relevant experience
5 years of experience in a role dedicated to the configuration, maintenance and administration of Splunk and Enterprise Security
Proficiency in developing and optimizing Splunk queries, dashboards, and alerts.
Significant experience with and working knowledge of Syslog
Experience with scripting languages (e.g., Python, Bash, or PowerShell) for automation and tool integration.
Significant experience with and expertise in creating event correlation logic and rules
Hands-on experience deploying and managing Splunk in cloud environments (AWS, Azure, GCP).
Possess excellent troubleshooting, problem-solving, and verbal/written communication skills
Ability to manage critical situations, and maintain solid relationships with colleagues
Nice-to-have:
Splunk Enterprise Certified Architect (preferred).
Splunk Core Certified Power User or Admin (minimum).
Certified Information Systems Security Profession
What’s in it for you?
We thrive on the challenge to be our best, progressive thinking to keep growing, and working together to deliver trusted advice to help our clients thrive and communities prosper. We care about each other, reaching our potential, making a difference to our communities, and achieving success that is mutual.
A comprehensive Total Rewards Program including bonuses and flexible benefits, competitive compensation, commissions, and stock where applicable
Leaders who support your development through coaching and managing opportunities
Ability to make a difference and lasting impact
Work in a dynamic, collaborative, progressive, and high-performing team
A world-class training program in financial services
Flexible work/life balance options
#LI-Hybrid
#LI-POST
#TECHCPJ
Job Skills
Decision Making, Group Problem Solving, Identity Access Management (IAM), Information Security, Information Technology Security, IT Systems Integration, Negotiation, Security Controls, Security Information, Security Information and Event Management (SIEM), SIEM Tools, Software Development, Software Development Life Cycle (SDLC), Strategic ObjectivesAdditional Job Details
Address:
410 GEORGIA ST W, FLOOR 3:VANCOUVERCity:
VANCOUVERCountry:
CanadaWork hours/week:
37.5Employment Type:
Full timePlatform:
TECHNOLOGY AND OPERATIONSJob Type:
RegularPay Type:
SalariedPosted Date:
2024-11-18Application Deadline:
2025-04-07Note : Applications will be accepted until 11:59 PM on the day prior to the application deadline date above
I nclusion and Equal Opportunity Employment
At RBC, we embrace diversity and inclusion for innovation and growth. We are committed to building inclusive teams and an equitable workplace for our employees to bring their true selves to work. We are taking actions to tackle issues of inequity and systemic bias to support our diverse talent, clients and communities.
We also strive to provide an accessible candidate experience for our prospective employees with different abilities. Please let us know if you need any accommodations during the recruitment process.
...across a wide range of technologies including power generation, mining, oil and gas, and renewables to ensure structural drawing... ...authorization in the U.S. for this position. Education and experience: Associate Degree in Computer Aided Design Technology preferred...
...Investment Banking Internship Were looking for a driven undergraduate student, recent graduate, or career switcher with a genuine interest... ..., graduates, and career changers exploring finance. International or cross-cultural experience is an asset. Skilled in Microsoft...
**About this role:**Wells Fargo is seeking a Senior Cyber Security Research Consultant in Technology as part of Cybersecurity. Learn more about the career areas and lines of business at wellsfargojobs.com.Our Cyber Security's vision is to provide Wells Fargo world leading...
...Experienced Truck drivers that are able to run between Canada & U.S.A Operate and drive primarily tractor-trailer, long-combination vehicle and straight-body trucks weighing over 4500 kg to transport goods and materials over long distances Plan trip logistics and obtain...
...Radiology-Support-Hosp**Work Shift:**Day**Job Category:**Clinical... ...is full of possibilities. Medical imaging plays a pivotal role in... ...established schedule We offer a night and weekend shift... ...POSITION SUMMARYThis position assists technologists and/or nurses in...