Splunk Engineer
2 days ago
FEDITC, LLC is a fast-growing business supporting DoD and other intelligence agencies worldwide. FEDITC develops mission critical national security systems throughout the world directly supporting the Warfighter, DoD Leadership, & the country. We are proud & honored to provide these services.
Overview of position:
FEDITC is seeking Network Engineer – Senior in the DHS HQ (TSA Springfield, VA), Stennis Data Center, or CONUS - Telework Authorized, Remote Hybrid
Primary Responsibilities
- Design, configure, and maintain Splunk infrastructure to support security monitoring, data analytics, and operational efficiency.
- Develop and manage Splunk dashboards, alerts, reports, and visualizations that provide actionable insights for security operations and compliance auditing.
- Optimize Splunk queries (SPL) to meet agency-specific requirements for real-time monitoring, threat detection, and log analysis.
- Ensure timely onboarding of new data sources into Splunk, ensuring compliance with government data management and retention policies.
- Collaborate with internal cybersecurity, IT, and SOC teams to support threat hunting, incident response, and root-cause analysis using Splunk.
- Troubleshoot and resolve issues related to Splunk performance, indexing, and data accuracy, with a focus on maintaining compliance with government security standards (e.g., NIST, FISMA, CMMC).
- Manage Splunk upgrades, patches, and configuration changes in accordance with Change Management policies and procedures.
- Assist in maintaining Splunk environments in both on-premises and cloud-based government environments.
- Produce detailed documentation of system configurations, workflows, and processes for compliance audits and security reviews.
- Support the automation of incident detection and response processes through Splunk integrations with security orchestration tools.
- Create, manage, and support automation solutions for Splunk deployment and orchestration within a Cloud environment.
- Work closely with senior engineers, other team members and application owners to solve technical problems at the network, system and application levels.
- Conduct periodic architectural reviews of installed sensors to assess effectiveness and propose optimal installation alternatives as required.
- Conduct network security architecture reviews to determine the size, and placement of intrusion monitoring equipment during the customer onboarding process.
- Documentation and Reporting along with presentation, teamwork and DHS wide collaboration are among the expected duties and mission of the task order.
- Build, implement and administer Splunk in Windows and Linux environments.
- Conceptualize, Design, Build, and Maintain current and future NOSC supported tools and platforms
Preferred Qualifications
- 5 years or more of experience in Splunk engineering, administration, and data integration within government or highly regulated environments.
- Strong knowledge of Splunk SPL (Search Processing Language) to build complex queries and optimize data extraction.
- Experience with integrating, normalizing, and managing log data from various sources, including network devices, servers, cloud services, and security tools.
- Familiarity with federal security frameworks and regulations (e.g., NIST, FISMA, CMMC, FedRAMP).
- Hands-on experience with Splunk Enterprise Security (ES) and developing security use cases for monitoring and incident detection.
- Strong understanding of network security principles, operating systems (Windows, Linux), and cybersecurity tools commonly used in government environments.
- Ability to troubleshoot and resolve issues related to system performance, log ingestion, and Splunk search efficiency.
- Experience working with cross-functional teams, including IT, security operations, and compliance.
- Proficiency managing Splunk using the Splunk command-line interface and config files
- Experience onboarding data into Splunk via forwarder, scripted inputs, TCP/UDP and modular inputs from a variety of sources.
- Proficiency onboarding data using Splunk developed add-ons for Windows, Linux, and common third-party devices and applications
- Experience collaborating with separate engineering teams to configure data sources for Splunk integration
- Experience in Linux, Windows and SQL/ODBC interfaces
- Proficiency implementing and onboarding data in Splunk DB Connect
- Experience with Splunk performing systems administration, including performing installation, configuration, monitoring system performance and availability, upgrades, and troubleshooting
- Experience developing in XML, Bash, JavaScript and Python, Perl, PowerShell scripts
- General networking and security troubleshooting (firewalls, routing, NAT, etc.)
- Splunk architecture/design, implementation, and troubleshooting experience
- Experience in managing, maintaining, and administering multi-site indexer cluster
- Scripting and development skills (BASH, python, or java) with strong knowledge of regular expressions
- Proficiency developing log ingestion and aggregation strategies per Splunk best practices
- Proficiency normalizing data to Splunk Common Information Model (CIM)
- Experience implementing and optimizing Splunk data models
- Expertise developing security-focused content for Splunk, including creation of complex threat detection log and operational dashboards
- Perform integration activities to configure, connect, and pull data with 3rd party software APIs.
- Ability to autonomously prioritize and successfully deliver across a portfolio of projects
- Undertakes day-to-day operational and user support
- Must be willing to participate to a rotating on-call support (24/7/365) for nights, weekends, holiday issues.
- Knowledge of scripting languages (e.g., Python, Bash) for automating tasks and streamlining Splunk processes.
- Experience with cloud environments (e.g., AWS GovCloud, Azure Government) and their integration with Splunk.
- Experience with automation tools (e.g., Ansible, Puppet) in government infrastructure.
- Familiarity with SIEM solutions and security orchestration tools (e.g., Swimlane, Phantom, Demisto) to enhance incident response capabilities.
Experience/Years of Relevant Experience:
- Excellent verbal and written communication skills
- Ability to meet deadlines and work independently.
- Required Experience 5 years.
Education:
- BA / BS in a Science, Technology, Engineering, Cybersecurity Management field
Certifications (Not Required):
- CISSP (Certified Information Security Systems Professional)
- CompTIA Security+
- ITIL Foundations
- Experience with Agile-based project management (primary Kanban)
Software/Hardware Experience Desired
- Splunk certifications (e.g., Splunk Core Certified Power User, Admin, Architect).
- Current Splunk Enterprise Certified Architect certification
Security Clearance:
- Must be able to attain/maintain DHS EOD clearance.
- Must be a US Citizen and pass a background check.
- Maintain applicable security clearance(s) at the level required by the client and/or applicable certification(s) as Requested by FEDITC and/or required by FEDITC Client(s)/Customer(s).
FEDITC, LLC. is committed to fostering an inclusive workplace and provides equal employment opportunities (EEO) to all employees and applicants for employment. We do not employ AI tools in our decision-making processes. Regardless of race, color, religion, sex (including pregnancy), sexual orientation, gender identity or expression, national origin, age, disability, genetic information, marital status, amnesty, or status as a covered veteran, FEDITC, LLC. ensures that all employment decisions are made in accordance with applicable federal, state, and local laws. Our commitment to non-discrimination in employment extends to every location in which our company operates.
-
springfield, United States FEDITC - Federal IT Consulting Full timeFEDITC, LLC is a fast-growing business supporting DoD and other intelligence agencies worldwide. FEDITC develops mission critical national security systems throughout the world directly supporting the Warfighter, DoD Leadership, & the country. We are proud & honored to provide these services.Overview of position:FEDITC is seeking Network Engineer – Senior...
-
DevOps Systems Engineer III
1 month ago
Springfield, Illinois, United States Cabela's Full timeJob SummaryWe are seeking a skilled DevOps Systems Engineer III to join our team. The ideal candidate will have a strong background in designing and implementing highly available, scalable, and self-healing systems on cloud platforms.Key ResponsibilitiesImplement and manage continuous delivery systems and methodologies.Design and manage tools to automate...
-
Senior IT Infrastructure Engineer
4 weeks ago
Springfield, Virginia, United States NextGen Federal Systems Full timeJob RequirementsWe are seeking a highly skilled Senior IT Infrastructure Engineer to join our team at NextGen Federal Systems. The ideal candidate will have a broad engineering background and experience in supporting complex IT infrastructure.Key ResponsibilitiesVirtualization Management: Manage and maintain VMware vSphere environments, including vCenter...
-
PKI Systems Engineer
6 months ago
Springfield, United States SAIC Full timeDescriptionThe Vanguard 2.2.1 contract provides enterprise IT services to the Department of State (DOS) Diplomatic Technology Bureau. The contract currently has an opening for a Senior Public Key Infrastructure (PKI) system engineer. As a Senior PKI Engineer, you will be joining the team to participate and lead in managing, securing, engineering, and...
-
Senior Computer Network Defense
2 months ago
Springfield, United States V2X Full timeOverviewWorking across the globe, V2X builds smart solutions designed to integrate physical and digital infrastructure from base to battlefield. We bring 120 years of successful mission support to improve security, streamline logistics, and enhance readiness. Aligned around a shared purpose, our $3.9B company and 16,000 people work alongside our clients,...
-
Cyber Security Operations Specialist
1 month ago
Springfield, Illinois, United States GDIT Full timeJob Summary:This position requires a highly skilled Cybersecurity Operations Specialist to provide expert-level support for the Cybersecurity Operations Cell (CSOC). The successful candidate will have extensive experience with SIEM systems, including ArcSight, Elasticsearch, and Splunk, as well as expertise in Linux administration and engineering. The ideal...
-
Cyber Security Detections Engineer, Senior
6 hours ago
Springfield, United States ManTech Full timeManTech is seeking a motivated, career and customer-oriented Cyber Security Engineer, Detections to join our team in Springfield, VA area , to provide unparalleled support to our customer and to begin an exciting and rewarding career within ManTech. Responsibilities include, but are not limited to: Support Cyber Operations Squadron (COS) activities to...
-
DevOps Systems Engineer III
1 month ago
Springfield, United States Cabela's Full timePOSITION SUMMARY: We are seeking a DevOps Systems Engineer III to help us build and operate functional systems to ensure site reliability and improve software delivery workflows. The Systems Engineer will be responsible for designing and implementing highly available, scalable, self-healing systems. This person will work in cross-functional and highly...
-
DevOps Systems Engineer III
1 month ago
Springfield, United States Bass Pro Inc Full timePOSITION SUMMARY: We are seeking a DevOps Systems Engineer III to help us build and operate functional systems to ensure site reliability and improve software delivery workflows. The Systems Engineer will be responsible for designing and implementing highly available, scalable, self-healing systems. This person will work in cross-functional and highly...
-
Deputy Operations Manager
4 weeks ago
Springfield, United States Elluminates Software Full timeIntroduction Elluminates Software's focus is on creating amazing capabilities for Developers, System Administrators and IT and Cyber Engineers and, ultimately, their users. Our mission is to have a positive impact on society through the use of technology. Elluminates Software has three core business units: Platform Engineering for Developer Teams Cloud and...
-
Springfield, United States Arcfield Full timeOverviewArcfield was purpose-built to protect the nation and its allies through innovations in digital transformation, space mission engineering and launch assurance, miniaturized sensors and satellites, advanced modeling and simulation, cybersecurity, and conventional and hypersonic missile support. Headquartered in Chantilly, VA with 16 global offices,...
-
Systems Engineer
4 hours ago
Springfield, United States NextGen Federal Systems Full timeCandidate shall have a broad engineering background to support US Marshals hosted infrastructure supporting agents in the field. Infrastructure includes Compute, Storage, Virtualization, Networking and Applications.Job Responsibilities:VMware and VirtualizationVMS Support/PatchingTracking NetworkvCenter Server Upgrade, management and updates12 ESXi...
-
Systems Engineer
2 months ago
Springfield, United States NextGen Federal Systems Full timeCandidate shall have a broad engineering background to support US Marshals hosted infrastructure supporting agents in the field. Infrastructure includes Compute, Storage, Virtualization, Networking and Applications.Job Responsibilities:VMware and VirtualizationVMS Support/PatchingTracking NetworkvCenter Server Upgrade, management and updates12 ESXi...
-
Systems Engineer
1 month ago
springfield, United States NextGen Federal Systems Full timeCandidate shall have a broad engineering background to support US Marshals hosted infrastructure supporting agents in the field. Infrastructure includes Compute, Storage, Virtualization, Networking and Applications.Job Responsibilities:VMware and VirtualizationVMS Support/PatchingTracking NetworkvCenter Server Upgrade, management and updates12 ESXi...
-
Systems Engineer
3 weeks ago
springfield, United States NextGen Federal Systems Full timeCandidate shall have a broad engineering background to support US Marshals hosted infrastructure supporting agents in the field. Infrastructure includes Compute, Storage, Virtualization, Networking and Applications.Job Responsibilities:VMware and VirtualizationVMS Support/PatchingTracking NetworkvCenter Server Upgrade, management and updates12 ESXi...
-
Cyber Security Operations Specialist
3 weeks ago
Springfield, United States General Dynamics Information Technology Full timeJob Duties Include: Provide all preventative and corrective maintenance to ensure consistent, reliable, and secure service availability. This includes all actions required to return the service to full operational capability such as vendor RMA processes, removal and proper disposal of broken equipment/software, installation and testing of new...
-
IT Lead Engnr
4 weeks ago
Springfield, United States MAXIMUS Full timeDescription & Requirements The Sr. Cloud Engineer is a hands-on position that requires the ability to plan, design, and implement technical cloud solutions. You will help combine software and systems to develop creative engineering solutions for streamlined operations. Much of our support focuses on optimizing legacy systems, deploying new infrastructure and...
-
Information Security Consultant
3 weeks ago
SPRINGFIELD, United States MassMutual Full timeThe OpportunityWithin our Enterprise Cybersecurity organization, you will work closely with the Security Intelligence team and be responsible for leverage real world adversarial techniques to perform pen tests and simulate attacks on existing and upcoming services spanning across applications, servers, and end-user assets. The TeamWithin the Security...
-
Information Security Consultant
3 weeks ago
Springfield, United States MassMutual Full timeThe Opportunity Within our Enterprise Cybersecurity organization, you will work closely with the Security Intelligence team and be responsible for leverage real world adversarial techniques to perform pen tests and simulate attacks on existing and upcoming services spanning across applications, servers, and end-user assets. The Team Within the Security...
-
Information Technology Security Architect
2 months ago
Springfield, United States Softek International Full timeSoftek International Inc. Softek. As a SBA Certified 8A Woman Owned Small Business (WOSB) with 36 years of expertise, we are not just a company; we are your partner in pushing the limits of what is possible. Our mission is simple yet powerful: we aim to astonish, not just satisfy. At Softek International Inc, we are dedicated to delivering solutions that...