• Job opening for - TSH5700604:RSA Archer Consultant

    From Tina dan@21:1/5 to All on Tue Oct 24 07:14:56 2017
    Please contact lina@tansoncorp.com for more info.


    Requirement - TSH5700604

    Job Title : RSA Archer Consultant
    Location : 300 South 6th Street, Minneapolis, MN 55487
    Timing : 8:00 - 5:00
    Duration : 01/01/2018 to 05/01/2018
    Type : Contract



    Description of Work to Be Performed: Perform all necessary Integration between RSA Archer V6.2 SecOps and Splunk V6.5.3.1. to generate Incident tickets in RSA Archer. This includes the following tasks;

    1. SecOps Deployment and Validation Deployment The deployment activities include:
    a. Deploying the Unified Connector Framework (UCF)
    b. Backing up existing configuration information if a prior version is in use.
    c. Installing the UCF executable file and complete the InstallShield Wizard
    d. Uninstalling previous version and upgrade to existing version, if applicable.
    e. Configuring SIEM syslog and Archer Enterprise Management endpoints to pull and push data to and from SecOps
    f. Configuring transport (TLS/SSL) with the Archer GRC Platform, if applicable.
    g. Configuring transport (TLS/SSL) with the alert source, if applicable

    2. Assisting customer Subject Matter Expert with Splunk Enterprise integration a. Download and installation of SecOps Splunk integration files
    b. Configuration of Splunk Enterprise integration via Splunk App for CEF c. Configuration of syslog output action
    d. Assist in configuration of two (2) CEF templates to send alerts to UCF e. Assist in configuration of out-of-the-box alert templates with output actions
    f. Assist in configuration of alerts to schedule rules to run continuously g. Configuration of up to two (2) custom alert fields to be consumed by the UCF from Splunk.

    3. Validation and Knowledge Transfer. Validation and knowledge transfer of the solution will include:
    a. Conducting a Functional Overview to familiarize with the implemented solution, demonstrating the normal operations as installed environment. This overview will:
    - Demonstrate that alerts are visible in Archer
    - Demonstrate search capabilities for analysis in Archer
    - DEMONSTRATE THE FUNCTIONALITY OF INCIDENT ESCALATION WITH ARCHER
    - Reviewing the "Out of the Box" reports, dashboards and key metrics
    - Reviewing the Response Procedure Library for the configured use cases
    - Reviewing and demonstrating access to RSA SecurCare On-Line (SCOL) for go- forward security administration and operations.

    Specific skills/experience required: Current knowledge of the RSA Archer V6.2 Platform within the last 2 years. Prior implementation experience integrating RSA Archer v6.2 SecOps with Splunk with outcome resulting in the creation of incident tickets
    within the RSA Archer platform.

    Project deliverables: ­Functioning Integration between RSA Archer V6.2 and Splunk resulting in incident ticket creation in RSA Archer.
    Application :
    if interested in this position, please complete the following and send back with your updated resume.

    Full Legal Name(Including Middle Initial) :
    Email:
    Phone # :
    Expected Hourly rate :
    Last four digits SSN :
    Citizen/Green Card/EAD:
    Tanson Corp. is a Minnesota based Technology Company offering competitive services in IT consulting and staff augmentation providing technology staffing, consulting, and project-based services in onsite, offsite and offshore environments. Tanson is EOE/
    AA. To view all our positions visit "Careers" at www.tansoncorp.com


    Follow us:
    www.facebook.com/TansonCorp
    twitter.com/#!/tansoncorp
    Tanson Corp

    --- SoupGate-Win32 v1.05
    * Origin: fsxNet Usenet Gateway (21:1/5)