Tuesday, October 31, 2023

Project #9 Project Title: Splunk Enterprise integration with existing system Duration: 30th Mar. 2017 to 28th Dec. 2017

Role - Area:  Splunk Consultant – Developer      

Skill Used:  Splunk Enterprise 6.x
 

Description:  

  • Client wants to monitor their databases through Splunk 
  • Data insertion to MySQL database should be perform using Splunk query 
  • Client should import and export the data between database and Splunk

 

Responsibility:  

  • Design, deploy and integrate Splunk Enterprise with the existing system infrastructure 
  • Setup configuration parameters for Logging, Monitoring and Alerting 
  • Install, configure, and troubleshoot Splunk. Use Splunk to collect and index log data. 
  • List down the Splunk commands and procedure to import and export the data between Splunk and database 
  • Create the document to specify the detail procedure of database integration and communication with Splunk

Monday, October 30, 2023

Project #11 Project Title: Splunk Data and System Administration Duration: 22nd Feb. 2018 to 26th Jul. 2021

Role - Area:  Splunk Consultant – Others      

Skill Used:  Splunk 7.x, Splunk Enterprise Security
 

Description:  

  • Client wants to monitor their servers through remote location 
  • Notify any failure condition or unexpected behavior of server 
  • High and critical priority alerts should be send to managerial team 
  • Medium and low priority alerts should be send to all employee

 

Responsibility:  

  • Decide the privileges provided to each new user. 
  • Create a role based on experience and expertise in Splunk. 
  • Create various users and set appropriate roles for them to use the Splunk Enterprise. 
  • Create Macros, Tags and Event Types as per the client need 
  • Created multiple alerts as per the need of client. Decide the priority of alerts 
  • Install Universal Forwarder on all servers and connect them with Splunk Enterprise Master.

Sunday, October 29, 2023

PROFESSIONAL EXPERIENCE DETAILS

  • Technical Lead in Wipro Technologies, Pune from 21st Jul. 2022 to till date
  • Sr. Security Consultant (Permanent) in Capgemini Technology Services India Pvt. Ltd., Pune from 26th Feb. 2021 to 20th Jul. 2022 
  • Technical Analyst (Contractual Position) in GalaxE Solutions, Hyderabad from 21st Jul 2020 to 25th Feb 2021
  • Freelance Splunk and Cyber Security Consultant in String Head Technologies, Pune from 10th Feb 2016 to 16th Jul 2020.
  • Assistant Professor in Dr. D. Y. Patil School of Engineering (Permanent), Lohegaon, Pune from 23rd Jul 2015 to 20th Jul 2020
  • Assistant Prof. in Sandip Institute of Technology and Research Centre (Permanent), Nasik from 18th Dec 2012 to 22nd Jul 2015
  • Lecturer in Gokhale Education Society’s R H Sapat COE, Nasik from 5th Jan 2012 to 17th Dec 2012
  • Lecturer in Sau Shantidevi Chavan Polytechnic, Chalisgaon, Jalgaon from 22nd Dec 2010 to 14th Jul 2011

35 Use Cases using Splunk SIEM to reduce False Positives

Use Case Name 1. BRUTE FORCE ATTACK DETECTION ON WINDOWS SYSTEMS Goal Excludes routine status cod...