Jobs
>
Ashburn

    Senior Splunk Engineer - Ashburn, United States - Agile Defense

    Agile Defense
    Agile Defense Ashburn, United States

    2 weeks ago

    Default job background
    Description
    At Agile Defense we know that action defines the outcome and new challenges require new solutions.

    That's why we always look to the future and embrace change with an unmovable spirit and the courage to build for what comes next.

    Our vision is to bring adaptive innovation to support our nation's most important missions through the seamless integration of advanced technologies, elite minds, and unparalleled agility—leveraging a foundation of speed, flexibility, and ingenuity to strengthen and protect our nation's vital interests.

    Requisition #:

    303

    Job Title:
    Senior Splunk Engineer

    Location:
    Ashburn, VA

    Clearance Level:
    Active DoD - Secret

    Salary Range:
    $133,000 - $199,500

    Required Certification(s):
    ·

    Current Splunk Enterprise Certified Architect certification.

    SUMMARY
    The Security Operations Center (SOC) is a U.S.

    Government program responsible to prevent, identify, contain and eradicate cyber threats to the DHS's networks through monitoring, intrusion detection and protective security services to DHS's information systems.

    The SOC is responsible for the overall security of the clients Enterprise-wide information systems, and collects, investigates, and reports any suspected and confirmed security violations.

    The Splunk Engineer will install and maintain Splunk infrastructure, gather requirements from customers, onboard data, and assist end users with searches, dashboards, reports, and knowledge objects.

    The Splunk Engineer may be required to interact with senior management, as necessary.

    Conceptualize, design, build, and maintain current and future customer-supported tools and platforms Manage multiple assignments, changing priorities, and work independently with little oversight Lead team of Splunk engineers in the management of Splunk solution to optimize data availability for SOC and other stakeholders.

    Develop data storage, access, and retention strategies for a large IT enterprise using industry standards and best practices to advise Customer executive-level stakeholders Design, build, implement, and administer Splunk infrastructure in on-prem and cloud environments.


    JOB DUTIES AND RESPONSIBILITIES
    ·

    Conceptualize, design, build, and maintain current and future customer-supported tools and platforms
    ·

    Manage multiple assignments, changing priorities, and work independently with little oversight
    ·


    Lead team of Splunk engineers in the management of Splunk solution to optimize data availability for SOC and other stakeholders.

    ·

    Develop data storage, access, and retention strategies for a large IT enterprise using industry standards and best practices to advise Customer executive-level stakeholders
    ·

    Design, build, implement, and administer Splunk infrastructure in on-prem and cloud environments.
    ·

    Create, manage, and support automation solutions for Splunk deployment and orchestration in on-prem and cloud environments
    ·

    Work with existing and custom Splunk applications and add-ons to fulfill customer needs
    ·

    Provide overall engineering and design support for a distributed Splunk environment consisting of heavy forwarders, indexers, and search head servers, spanning security, performance, and operational roles
    ·

    Onboard data to Splunk via forwarder, scripted inputs, TCP/UDP, and modular inputs from various sources
    ·

    Normalize data to ensure CIM compliance, and develop data models to accelerate queries, dashboards, and correlation searches
    ·

    Work closely with all relevant stakeholders to solve technical problems at the network, system, and application levels
    ·

    Conduct periodic architectural reviews of Splunk and related systems to assess effectiveness and propose optimal installation alternatives as required
    ·

    Develop and manage comprehensive documentation, artifacts, procedures, and processes for the optimal management of the Splunk infrastructure.

    QUALIFICATIONS
    Required Certifications
    ·

    Current Splunk Enterprise Certified Architect certification.
    Education, Background, and Years of Experience
    ·

    Minimum of a Bachelor's degree coupled with 7+ years' experience in the Information Technology arena.
    ADDITIONAL SKILLS &
    QUALIFICATIONS
    Required Skills
    ·

    8-12 of experience with Linux and Windows system administration or an expert understanding of operating systems and common operating environments
    ·

    5+ years of experience with Splunk in distributed deployments
    ·

    Current Splunk Enterprise Certified Architect certification
    ·

    Excellent written and oral skills, ability to work closely with multiple customers, manage expectations, and track engagement scope
    ·

    Experience implementing FISMA, NIST, NSA, and other information security, cybersecurity and CDM-related
    ·

    industry policies, procedures, guidelines, standards, and best practices
    ·

    Expert-level knowledge and ability with Splunk Enterprise Security or integration with other Security Information and Event Management (SIEM) platforms
    ·

    Extensive experience with advanced configuration of Splunk including Indexer Clustering and Search Head Clustering
    ·

    Proficient at data on-boarding activities including routing, parsing, and normalizing events to the Splunk Common Information Model (CIM)
    ·

    Proficiency onboarding data using Splunk-developed add-ons forWindows, Linux, and common third-party devices and applications
    ·

    Experience onboarding data into Splunk via forwarder, scripted inputs, TCP/UDP, and modular inputs from a variety of sources
    ·

    Proficiency managing Splunk using the Splunk command-line interface
    ·

    Experience collaborating with separate engineering teams to configure data sources for Splunk integration
    ·

    Intermediate understanding of SQL and common SQL dialects
    ·

    Proficiency implementing and onboarding data in Splunk DB Connect
    ·

    Experience with Splunk performing systems administration, including performing installation, configuration, monitoring system performance and availability, upgrades, and troubleshooting
    ·

    General networking and security troubleshooting (firewalls, routing, NAT, etc.)
    ·

    Splunk architecture/design, implementation, and troubleshooting experience
    ·

    Experience in managing, maintaining, and administering multi-site indexer cluster
    ·

    Proficiency developing log ingestion and aggregation strategies per Splunk best practices
    ·

    Perform integration activities to configure, connect, and pull data with 3rd party software APIs
    ·

    Experience implementing and optimizing Splunk data models
    ·

    Proficient in regular expressions
    ·

    Scripting and development skills (Bash, Python, or PowerShell)
    ·

    Ability to autonomously prioritize and successfully deliver across a portfolio of projects
    ·

    Department of Homeland Security ESOC employees are required to obtain an Entry on Duty (EOD) clearance.

    WORKING CONDITIONS
    Environmental Conditions
    ·

    Department of Homeland Security ESOC employees are required to obtain an Entry on Duty (EOD) clearance.
    Strength Demands
    ·

    Light – 20 lbs. Maximum lifting with frequent lift/carry up to 10 lbs.

    A job is light if less lifting is involved but significant walking/standing is done or if done mostly sitting but requires push/pull on arm or leg controls.

    Physical Requirements
    ·

    Stand or Sit; Walk; Repetitive Motion; Use Hands / Fingers to Handle or Feel; See; Push or Pull

    Employees of Agile Defense are our number one priority, and the importance we place on our culture here is fundamental.

    Our culture is alive and evolving, but it always stays true to its roots. Here, you are valued as a family member, and we believe that we can accomplish great things together.

    Agile Defense has been highly successful in the past few years due to our employees and the culture we create together.

    What makes us Agile? We call it the 6Hs, the values that define our culture and guide everything we do.

    Together, these values infuse vibrancy, integrity, and a tireless work ethic into advancing the most important national security and critical civilian missions.

    It's how we show up every day. It's who we are.
    Happy

    • Be Infectious.
    Happiness multiplies and creates a positive and
    connected environment where motivation and
    satisfaction have an outsized effect on
    everything we do.
    Helpful

    • Be Supportive.
    Being helpful is the foundation of teamwork,
    resulting in a supportive atmosphere where
    collaboration flourishes, and collective success
    is celebrated.
    Honest

    • Be Trustworthy.
    Honesty serves as our compass, ensuring
    transparent communication and ethical
    conduct, essential to who we are and the
    complex domains we support.
    Humble

    • Be Grounded.
    Success is not achieved alone, humility ensures
    a culture of mutual respect, encouraging open
    communication, and a willingness to learn from
    one another and take on any task.
    Hungry

    • Be Eager.
    Our hunger for excellence drives an insatiable
    appetite for innovation and continuous
    improvement, propelling us forward in the face
    of new and unprecedented challenges.
    Hustle is reflected in our relentless work ethic,
    where we are each committed to going above
    and beyond to advance the mission and
    achieve success.
    These Core Values are present in all our employees and our organization's aspects. Learn more about us and our culture by visiting us here.
    Agile Defense is subject to federal vaccine mandates or other customer/facility vaccination requirements as a federal contractor.

    As such, to protect its employees' health and safety and comply with customer requirements, Agile Defense may require employees in certain positions to be fully vaccinated against COVID-19.

    Vaccination requirements will depend on the status of the federal contractor mandate and customer site requirements.
    Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities

    The contractor will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant.

    However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the contractor's legal duty to furnish information.

    41 CFR

    (c)

    #J-18808-Ljbffr

  • Allyon

    Splunk Engineer

    1 day ago


    Allyon Ashburn, United States

    Summary: · Allyon, Inc. is an established IT and Healthcare Services firm and we love what we do It makes our day when we are able help talented individuals achieve their career goals while at the same time helping our clients build quality teams. If you are interested in joini ...

  • Leidos

    Splunk Engineer

    9 hours ago


    Leidos Ashburn, United States Full time

    Description · Leidos Digital Modernization Sector is seeking an experienced Splunk Engineer, for this highly visible cyber security program supporting Customs and Border Protection (CBP) security operations center (SOC). CBP SOC is a US Government program responsible to prevent ...

  • Leidos

    Splunk Engineer

    1 week ago


    Leidos Ashburn, United States

    Description · Department of Homeland Security (DHS), Customs and Border Protection (CBP) Security Operations Center (SOC) is a US Government program responsible to prevent, identify, contain and eradicate cyber threats to CBP networks through monitoring, intrusion detection and ...


  • Agile Defense Ashburn, United States

    Agile Defense · We are in the business of innovation through information technology and cybersecurity, delivered exceptionally. · View company page · At Agile Defense we know that action defines the outcome and new challenges require new solutions. That's why we always look to ...

  • Gray Tier Technologies LLC

    Splunk Engineer SME

    4 days ago


    Gray Tier Technologies LLC Ashburn, United States

    Gray Tier Technologies is looking for a Splunk Engineer SME proficient with recognizing and on-boarding new data sources into Splunk, analyzing the data for anomalies and trends, and building dashboards highlighting the key trends of the data. The Splunk engineer should be profic ...


  • Base One Technologies Ashburn, United States

    Our Ashburn VA based client is looking for Splunk Engineers. All Applicants must be US CITIZENS with active Secret /Top Secret Clearance. If you are qualified for these openings, please forward a copy of your updated resume in word format to Work location: Ashburn VA Must Have On ...


  • Agile Defense, Inc. Ashburn, United States

    At Agile Defense we know that action defines the outcome and new challenges require new solutions. That's why we always look to the future and embrace change with an unmovable spirit and the courage to build for what comes next. Our vision is to bring adaptive innovation to suppo ...

  • Insight Global

    Splunk Engineer

    5 days ago


    Insight Global Reston, United States

    Job Description · A remote customer is seeking a Splunk Engineer who will be responsible for the following: · Responsible for day-day operation of large Splunk environment · Troubleshooting new and current data collection issues · Troubleshooting system issues that make the syste ...

  • Insight Global

    Splunk Engineer

    2 weeks ago


    Insight Global Reston, United States

    A remote customer is seeking a Splunk Engineer who will be responsible for the following: · Responsible for day-day operation of large Splunk environment · Troubleshooting new and current data collection issues · Troubleshooting system issues that make the system unstable or u ...


  • Base One Technologies Ashburn, United States

    Senior Splunk Engineer · Primary Responsibilities · • The selected candidate will provide overall engineering, and administration in supporting a very large distributed clustered Splunk environment consisting of search heads, indexers, deployers, deployment servers, heavy/univers ...


  • Agile Defense, Inc. Ashburn, United States

    At Agile Defense we know that action defines the outcome and new challenges require new solutions. That's why we always look to the future and embrace change with an unmovable spirit and the courage to build for what comes next. Our vision is to bring adaptive innovation to suppo ...

  • Workday

    SPLUNK Engineer

    2 weeks ago


    Workday Chantilly, United States

    SPLUNK Engineer ( Clearance Sponsorship) · Job Category: Information Technology · Time Type: Full time · Minimum Clearance Required to Start: TS/SCI with Polygraph · Employee Type: Regular · Percentage of Travel Required: None · Type of Travel: None · CACI is seeking a hig ...

  • Computer World Services (CWS)Corporation

    Splunk Engineer

    1 week ago


    Computer World Services (CWS)Corporation Washington, United States

    · Job Description · The Splunk Engineer will be responsible for the entire end to end deployment of the Splunk family of software to support OFR's log retention, aggregation and analysis requirements. It is required that the candidate be well versed in Splunk technology and impl ...

  • RapidSoft

    Splunk Engineer

    2 weeks ago


    RapidSoft Reston, United States

    RapidSoft established in 2003, with a mission of providing clients with experiened and talented resources in timely manner. We specialize in in Independent Verification and Validation, Test Automation and DevOps, Static Code Analysis. · Our Staffing division handles, niche staffi ...

  • Leidos Inc

    Splunk Engineer

    2 weeks ago


    Leidos Inc Arlington, VA, United States

    Description · Leidos has an immediate need for a Splunk Engineer for a new customer on a highly-visible and strategic · Cybersecurity Task Order. · The Splunk Engineer will install and maintain Splunk infrastructure, gatherrequirements from customers, onboard data, and assist e ...

  • Parsons Corporation

    Splunk Engineer

    2 days ago


    Parsons Corporation Centreville, United States

    In a world of possibilities, pursue one with endless opportunities. Imagine Next · When it comes to what you want in your career, if you can imagine it, you can do it at Parsons. Imagine a career working with intelligent, diverse people sharing a common quest. Imagine a workplace ...

  • Leidos

    Splunk Engineer

    1 week ago


    Leidos Arlington, United States

    Description · Leidos has an immediate need for a Splunk Engineer for a new customer on a highly-visible and strategic · Cybersecurity Task Order. · The Splunk Engineer will install and maintain Splunk infrastructure, gather requirements from customers, onboard data, and assist en ...

  • OneZero Solutions

    Splunk Engineer

    2 weeks ago


    OneZero Solutions Arlington, United States

    We are an employee-centric company that truly appreciates our team members and their value to our customers and the missions they support. We pride ourselves on being forward-leaning thinkers and fostering teams that are and continue to be technically proficient and technically c ...

  • Gray Tier Technologies LLC

    Splunk Engineer

    1 week ago


    Gray Tier Technologies LLC Arlington, United States

    10 years of relevant professional experience · 2+ years' experience with Splunk Enterprise, including: · Search Processing Language and the basics of writing Reports, Alerts, and Dashboards · Management of infrastructure components (e.g., Indexers/Index Clusters, Search Heads, Un ...

  • CACI International

    Splunk Engineer

    1 week ago


    CACI International Arlington, VA, United States

    Splunk EngineerJob Category: EngineeringTime Type: Full timeMinimum Clearance Required to Start: SecretEmployee Type: RegularPercentage of Travel Required: NoneType of Travel: None* * *What You'll Get to Do:The System Integration Team for Increment II of the US Army's Integrated ...