Splunk Engineer

Ashburn, VA

Agile Defense

We are in the business of innovation through information technology and cybersecurity, delivered exceptionally.

View company page

Agile Defense provides leading-edge Digital Transformation solutions to support and advance our customers' mission. We deliver innovative and high-quality services to our customers worldwide through an empowered and engaged workforce.
Job Title: Splunk EngineerLocation: RemoteClearance Level: Active Secret
Required Certification(s):· Splunk Certified Architect Certification· Splunk Certified Administrator Certification
SUMMARYThe Security Operations Center (SOC) was established in accordance with the Federal Information Security Management Act (FISMA) and the Homeland Security Presidential Directive (HSPD) 7 as a single point of management and reporting for information security incidents. The SOC is chartered to prevent, identify, contain, and eradicate cyber threats to the clients networks through monitoring, intrusion detection, and protective security services to information systems, including local area networks / wide area networks (LAN / WAN), commercial Internet connection, public facing websites, wireless, mobile / cellular, cloud, security devices, servers, and workstationThe selected candidate will provide overall engineering, and administration in supporting a very large distributed clustered Splunk environment consisting of search heads, indexers, deployers, deployment servers, heavy/universal forwarders and Splunk Enterprise Security premium app, spanning security, performance, and operational roles.
JOB DUTIES AND RESPONSIBILITIES:· The candidate should be familiar with recognizing and onboarding new data sources into Splunk, analyzing the data for anomalies and trends, and building dashboards highlighting the key trends of the data. The Splunk engineer should be familiar with a Linux environment, editing and maintaining Splunk configuration files and apps.· The Splunk engineer will work with other Cybersecurity Engineering team members and will be required to interact with end users to gather requirements, perform troubleshooting, and provide assistance with the creation of Splunk search queries and dashboards. The Splunk engineer will be required interact with senior management, as necessary.· Knowledge of Cloud Services such as AWS, Azure, Office365· Ability to script in one more of the following computer languages Python, Bash, Visual Basic or PowerShell
QUALIFICATIONS:
Required Certifications· Splunk Certified Architect Certification· Splunk Certified Administrator CertificationEducation, Background, and Years of Experience· Minimum of a Bachelor’s degree coupled with 7+ years’ experience in the Information Technology arena.· 4+ years of experience in a senior Splunk role working in a Splunk clustered environment supporting SOC or NOC environments
ADDITIONAL SKILLS & QUALIFICATIONS:
Required Skills· Must have an active Secret Clearance and in addition, must have a current or be able to favorably pass a 5 year (BI) Background Investigation to join this program.· NOC environments· 3+ Years experience in Linux and SQL/ODBC interfaces· 2+ Years experience in app interface development, using REST API’s· Previous project management experience.· ITIL Change & Configuration Management· Experience with Ansible and GIT· Ability to follow Change & Configuration Management· Strong problem solving abilities with an analytic and qualitative eye for reasoning under pressure· Self-starter with the ability to independently prioritize and complete multiple tasks with little to no supervision· Knowledge of Cloud Services such as AWS, Azure, Office365· Ability to script in one more of the following computer languages Python, Bash, Visual Basic or PowerShell· Experience in automating Splunk Deployments
Preferred Skills· Experience in SQL· Experience in other systems and network management products.· Current or former completed Splunk training· Prior experience a in Splunk professional services role· Automation/orchestration of Splunk with in a Cloud environment
WORKING CONDITIONS
Environmental Conditions· Monday - Friday, supporting remotely.
Strength Demands· Light – 20 lbs. Maximum lifting with frequent lift/carry up to 10 lbs. A job is light if less lifting is involved but significant walking/standing is done or if done mostly sitting but requires push/pull on arm or leg controls.
Physical Requirements· Stand or Sit; Walk; Repetitive Motion; Use Hands / Fingers to Handle or Feel; See
Employees of Agile Defense are our number one priority, and the importance we place on our culture here is fundamental. Our culture is alive and evolving, but it always stays true to its roots. Here, you are valued as a family member, and we believe that we can accomplish great things together. Agile Defense has been highly successful in the past few years due to our employees and the culture we create together. We believe several attributes are the root of our very best employees and extraordinary culture. We have named these attributes “The 6 H’s” – Happy, Helpful, Honest, Humble, Hungry, and Hustle.
Happy: We exhibit a positive outlook in order to create a positive environment.Helpful: We assist each other and pull together as teammates to deliver.Honest: We conduct our business with integrity.Humble: We recognize that success is not achieved alone, that there is always more to learn, and that no task is below us.Hungry: We desire to consistently improve.Hustle: We work hard and get after it.
These Core Values are present in all our employees and our organization's aspects. Learn more about us and our culture by visiting us here.
COVID-19 Vaccination RequirementsAgile Defense is subject to federal vaccine mandates or other customer/facility vaccination requirements as a federal contractor. As such, to protect its employees' health and safety and comply with customer requirements, Agile Defense may require employees in certain positions to be fully vaccinated against COVID-19. Vaccination requirements will depend on the status of the federal contractor mandate and customer site requirements.

Equal Opportunity Employer/Protected Veterans/Individuals with DisabilitiesThe contractor will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the contractor’s legal duty to furnish information. 41 CFR 60-1.35(c)
Apply now Apply later
  • Share this job via
  • or

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Tags: Agile Ansible APIs Automation AWS Azure Bash Business Intelligence C Clearance Cloud FISMA Intrusion detection ITIL Linux Monitoring PowerShell Python REST API SOC Splunk SQL

Perks/benefits: Career development

Region: North America
Country: United States
Job stats:  6  0  0

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.