Job Information
Honeywell Cybersecurity Data Scientist in Phoenix, Arizona
Honeywell (www.honeywell.com) is a Fortune 100 technology company that delivers industry-specific solutions that include aerospace products and services; control technologies for buildings and industry; and performance materials globally. Our technologies help aircraft, buildings, manufacturing plants, supply chains, and workers become more connected to make our world smarter, safer, and more sustainable.
We strive to be a company of thinkers, doers, dreamers, and makers – let’s do this together!
Engaging to catch the right talent’s eye, should you be daring enough to use it: We are on the hunt for a Splunk Security Data Scientist wizard, someone who can conjure up security solutions using Splunk Enterprise Security (ES) like it’s their native tongue. This isn't just any role; it’s a quest for the bold. The chosen one will not only take the reins of our Splunk ES data realm but also lead our valiant team through the intricacies of data analysis, design, implementation, and the seamless integration of data across our enterprise kingdom.
KEY RESPONSIBILITIES:
Assume the mantle of guardian and custodian for all Splunk ES security data
Decode the mystical runes of requirements into actionable Splunk ES designs
Craft and sustain the Splunk ES infrastructure, ensuring its strength and resilience
Weave together diverse data sources into harmonious data models and integration patterns, ensuring data flows like the great rivers across our enterprise
Serve as the beacon of technical wisdom, guiding our development team through the thickets of big data projects with your knowledge and expertise
Embark on the noble path of mentorship, lighting the way for others to follow
Understanding of possible attack activities such as network reconnaissance probing/ scanning, DDOS, malicious code activity, etc.
Ability to demonstrate Splunk Machine Learning Toolkit (MLTK), Splunk Search Processing Language (SPL) expertise and Regular Expression Language
Experience with using scripting languages such as CSS, HTML, JavaScript, Python, and shell scripting to automate tasks and manipulate data
Intermediate expertise with Red Hat Enterprise Linux (RHEL)
Experience with programming a plus
Experience with security tool data, including Network & Host Firewall, Tenable, Tanium
CompTIA Security+ Certification
YOU MUST HAVE
A minimum of 5 years in the arts of data exploration, cleansing, analysis, visualization, and mining
A 3-year pilgrimage in the realms of Splunk Enterprise Security, fortified with experience in leveraging Splunk or audit logs for incident response and behavioral analytics
At least a year spent in the company of open-source, corporate, or legally acquired data for large-scale analysis
Mastery in crafting quantitative analyses and visual representations of targeted data sources
A history of evaluating and enhancing the sacred texts of data utilization
Proficiency in the ancient techniques of pivot tables, graph analytics, and time series anomaly detection
Versatility in scripting languages, capable of automating tasks and bending data to your will
The ability to commune with end-users of varying degrees of technical enlightenment
Deep insights into the cloud and hybrid cloud environments, with a keen understanding of security frameworks such as MITRE ATT&CK, OWASP, & NIST
A troubleshooter’s eye for detail and a knack for resolving the darkest of incidents and service requests
The eloquence to translate technical security scrolls for those not versed in the arcane
Familiarity with the shadows of attack activities, including reconnaissance, DDOS, and malicious code
Proficiency in Splunk MLTK, SPL, and Regular Expression Language
A wizard in scripting languages like CSS, HTML, JavaScript, Python, and shell scripting
Intermediate command over Red Hat Enterprise Linux (RHEL)
A plus for programming prowess, experience with security tool data, and CompTIA Security+ Certification
US Citizenship is required due to export control restrictions and contractual requirements
WE VALUE
Potential to unlock USG Security Clearance
Experience in foreseeing the future through predictive data models
Knowledge of defense, intelligence, and incident response lore
A year’s journey with Python and Linux OS in your satchel
CISSP Certification or equivalent DoD 8570 Certification
Splunk certification, a mark of true distinction
The gift of training language models
Exceptional verbal and written communication skills, to spread wisdom and insight across the realm
Honeywell is an equal opportunity employer. Qualified applicants will be considered without regard to age, race, creed, color, national origin, ancestry, marital status, affectional or sexual orientation, gender identity or expression, disability, nationality, sex, religion, or veteran status.