Splunk SME with Security Clearance - Ashburn, VA, United States - Base One Technologies

    Base One Technologies
    Base One Technologies Ashburn, VA, United States

    2 weeks ago

    Default job background
    Technology / Internet
    Description
    Primary Responsibilities


    • The selected candidate will provide overall engineering, and administration in supporting a very large distributed clustered Splunk environment consisting of search heads, indexers, deployers, deployment servers, heavy/universal forwarders and Splunk Enterprise Security premuim app, spanning security, performance, and operational roles
    • The candidate should be familiar with recognizing and onboarding new data sources into Splunk, analyzing the data for anomalies and trends, and building dashboards highlighting the key trends of the data
    The Splunk engineer should be familiar with a Linux environment, editing and maintaining Splunk configuration files and apps.


    • The Splunk engineer will work with other Cybersecurity Engineering team members and will be required to interact with end users to gather requirements, perform troubleshooting, and provide assistance with the creation of Splunk search queries and dashboards
    The Splunk engineer will be required interact with senior management, as necessary.


    • Knowledge of Cloud Services such as AWS, Azure, Office365
    • Ability to script in one more of the following computer languages Python, Bash, Visual Basic or Powershell Basic Qualifications
    Must be a US citizen, no clearance required and in addition, must have a current or be able to favorably pass a (BI) Background Investigation to join this program
    Minimum of a Bachelor's degree coupled with 7+ years' experience in the Information Technology arena.


    • 4+ years of experience in a senior Splunk role working in a Splunk clustered environment supporting SOC or NOC environments
    • 3+ Years experience in Linux and SQL/ODBC interfaces
    • 2+ Years experience in app interface development, using REST API's
    • Previous project management experience
    • ITIL Change & Configuration Management
    • Experience with Ansible and GIT Ability to follow Change & Configuration Management
    Strong problem solving abilities with an analytic and qualitative eye for reasoning under pressure
    Self-starter with the ability to independently prioritize and complete multiple tasks with little to no supervision
    Knowledge of Cloud Services such as AWS, Azure, Office365
    Ability to script in one more of the following computer languages Python, Bash, Visual Basic or Powershell
    Splunk Certified Architect Certification
    Splunk Certified Administrator Certification - Experience in automating Splunk Deployments Preferred Qualifications


    • Experience in SQL
    • Experience in other systems and network management products.
    • Current or former completed Splunk training
    • Prior experience a in Splunk professional services role
    • Automation/orchestration of Splunk with in a Cloud environment