Splunk Engineer
Arlington, VA, USA
OneZero Solutions
OneZero Solutions is an 8(a), Service-Disabled Veteran-Owned Small Business (SDVOSB) that is problem-solving and solutions-oriented. OneZero specializes in cybersecurity operations, information assurance, computer network operations, solutions...We are an employee-centric company that truly appreciates our team members and their value to our customers and the missions they support. We pride ourselves on being forward-leaning thinkers and fostering teams that are and continue to be technically proficient and technically capable across a comprehensive range of cyber mission areas. OneZero full-time employees receive an extremely competitive benefits package that includes health/dental/vision/life insurance plans, 401K with company matching, PTO & paid holidays, employee referral program, and educational assistance. Additional details can be found on our website at: https://www.onezerollc.com/careers/
Position Title: Splunk Engineer
Location: Arlington, VA
Clearance: Secret
OneZero is seeking a talented Splunk Engineer to join our team to support a new customer on a highly-visible and strategic Cybersecurity Task Order. The Splunk Engineer will be a member of the Cybersecurity Engineering team and will install and maintain Splunk infrastructure, gather requirements from customers, onboard data, and assist end users with search, dashboards, reports, and knowledge objects.
Responsibilities
Manage multiple assignments, changing priorities, and work independently with little oversight
Build, implement, and administer Splunk in Windows and Linux environments
Work with existing and custom Splunk applications and add-ons to fulfill customer needs
Provide operations and maintenance support for a distributed Splunk environment consisting of heavy forwarders, indexers, and search head servers, spanning security, performance, and operational roles
Editing and maintaining Splunk configuration files and apps
Onboard data to Splunk via forwarder, scripted inputs, TCP/UDP, and modular inputs from a variety of sources.
Provider operational support for Splunk Universal Forwarder on Linux and Windows endpoints
Manage, and support automation solutions for Splunk deployment and orchestration in on-premise and cloud environment.
Qualification
Bachelor's degree in Computer Science, Engineering, or a related field and a minimum of six (6) years of experience in system administration, database administration, network engineering, software engineering, or software development, with a concentration in Cybersecurity. Current Splunk Enterprise Certified Admin certification
Experience with Splunk Enterprise Security or integration with other Security Information and Event Management (SIEM) platforms
Proficient at data on-boarding activities including routing, parsing, and normalizing events to the Splunk Common Information Model (CIM)
Proficiency onboarding data using Splunk developed add-ons for Windows, Linux, and common third-party devices and applications
Experience onboarding data into Splunk via forwarder, scripted inputs, TCP/UDP, and modular inputs from a variety of sources
Proficiency managing Splunk using the Splunk command-line interface * Proficiency managing Splunk using configuration files
Experience collaborating with separate engineering teams to configure data sources for Splunk integration
Proficiency implementing and onboarding data in Splunk DB Connect
Experience with Splunk performing systems administration, including performing installation, configuration, monitoring system performance and availability, upgrades, and troubleshooting
General networking and security troubleshooting (firewalls, routing, NAT, etc.)
Splunk implementation and troubleshooting experience
Experience in managing, maintaining, and administering multi-site indexer cluster
Proficiency developing log ingestion and aggregation strategies per Splunk best practices
Perform integration activities to configure, connect, and pull data with 3rd party software APIs
Proficient in regular expressions
Ability to autonomously prioritize and successfully deliver across a portfolio of projects
DHS Entry on Duty (EOD) is required to support this program
One of the following Certifications
CCIE Security
Cisco Certified Network Professional (CCNP)
CCNP Security
CCSP - Certified Cloud Security Professional
CEH - Certified Ethical Hacker
OneZero Solutions, LLC is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status and will not be discriminated against on the basis of disability.
If you are a qualified individual with a disability or a disabled veteran, you have the right to request an accommodation if you are unable or limited in your ability to use or access www.onezerollc.com/careers as a result of your disability.
To request an accommodation, please contact us at recruiting@onezerollc.com or call (202) 987-2580.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: APIs Automation CCNP CCSP CEH Clearance Cloud Computer Science Firewalls Linux Monitoring SIEM Splunk Windows
Perks/benefits: Career development Health care Insurance Team events
More jobs like this
Explore more InfoSec / Cybersecurity career opportunities
Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.
- Open Information Security Officer jobs
- Open Information Security Specialist jobs
- Open Information Systems Security Officer (ISSO) jobs
- Open Ethical hacker / Pentester H/F jobs
- Open Senior Cyber Security Engineer jobs
- Open Cyber Security Architect jobs
- Open Cyber Security Specialist jobs
- Open Cybersecurity Analyst jobs
- Open Manager Pentest H/F jobs
- Open Product Security Engineer jobs
- Open Chief Information Security Officer jobs
- Open Staff Security Engineer jobs
- Open Security Specialist jobs
- Open Senior Information Security Analyst jobs
- Open Consultant infrastructure sécurité H/F jobs
- Open Consultant SOC / CERT H/F jobs
- Open Senior Information Security Engineer jobs
- Open Senior Penetration Tester jobs
- Open Cybersecurity Consultant jobs
- Open IT Security Analyst jobs
- Open IT Security Engineer jobs
- Open Security Researcher jobs
- Open Security Operations Analyst jobs
- Open Sr. Security Engineer jobs
- Open Cybersecurity Specialist jobs
- Open CISM-related jobs
- Open Windows-related jobs
- Open Network security-related jobs
- Open Pentesting-related jobs
- Open ISO 27001-related jobs
- Open Agile-related jobs
- Open Application security-related jobs
- Open GCP-related jobs
- Open Vulnerability management-related jobs
- Open CISA-related jobs
- Open IAM-related jobs
- Open Analytics-related jobs
- Open Threat intelligence-related jobs
- Open SaaS-related jobs
- Open Security assessment-related jobs
- Open APIs-related jobs
- Open Malware-related jobs
- Open Java-related jobs
- Open Forensics-related jobs
- Open Security Clearance-related jobs
- Open CEH-related jobs
- Open EDR-related jobs
- Open IDS-related jobs
- Open DevOps-related jobs
- Open Kubernetes-related jobs