Splunk Engineer

2 days ago


Springfield, United States FEDITC - Federal IT Consulting Full time

FEDITC, LLC is a fast-growing business supporting DoD and other intelligence agencies worldwide. FEDITC develops mission critical national security systems throughout the world directly supporting the Warfighter, DoD Leadership, & the country. We are proud & honored to provide these services.


Overview of position:

FEDITC is seeking Network Engineer – Senior in the DHS HQ (TSA Springfield, VA), Stennis Data Center, or CONUS - Telework Authorized, Remote Hybrid


Primary Responsibilities

  • Design, configure, and maintain Splunk infrastructure to support security monitoring, data analytics, and operational efficiency.
  • Develop and manage Splunk dashboards, alerts, reports, and visualizations that provide actionable insights for security operations and compliance auditing.
  • Optimize Splunk queries (SPL) to meet agency-specific requirements for real-time monitoring, threat detection, and log analysis.
  • Ensure timely onboarding of new data sources into Splunk, ensuring compliance with government data management and retention policies.
  • Collaborate with internal cybersecurity, IT, and SOC teams to support threat hunting, incident response, and root-cause analysis using Splunk.
  • Troubleshoot and resolve issues related to Splunk performance, indexing, and data accuracy, with a focus on maintaining compliance with government security standards (e.g., NIST, FISMA, CMMC).
  • Manage Splunk upgrades, patches, and configuration changes in accordance with Change Management policies and procedures.
  • Assist in maintaining Splunk environments in both on-premises and cloud-based government environments.
  • Produce detailed documentation of system configurations, workflows, and processes for compliance audits and security reviews.
  • Support the automation of incident detection and response processes through Splunk integrations with security orchestration tools.
  • Create, manage, and support automation solutions for Splunk deployment and orchestration within a Cloud environment.
  • Work closely with senior engineers, other team members and application owners to solve technical problems at the network, system and application levels.
  • Conduct periodic architectural reviews of installed sensors to assess effectiveness and propose optimal installation alternatives as required.
  • Conduct network security architecture reviews to determine the size, and placement of intrusion monitoring equipment during the customer onboarding process.
  • Documentation and Reporting along with presentation, teamwork and DHS wide collaboration are among the expected duties and mission of the task order.
  • Build, implement and administer Splunk in Windows and Linux environments.
  • Conceptualize, Design, Build, and Maintain current and future NOSC supported tools and platforms


Preferred Qualifications

  • 5 years or more of experience in Splunk engineering, administration, and data integration within government or highly regulated environments.
  • Strong knowledge of Splunk SPL (Search Processing Language) to build complex queries and optimize data extraction.
  • Experience with integrating, normalizing, and managing log data from various sources, including network devices, servers, cloud services, and security tools.
  • Familiarity with federal security frameworks and regulations (e.g., NIST, FISMA, CMMC, FedRAMP).
  • Hands-on experience with Splunk Enterprise Security (ES) and developing security use cases for monitoring and incident detection.
  • Strong understanding of network security principles, operating systems (Windows, Linux), and cybersecurity tools commonly used in government environments.
  • Ability to troubleshoot and resolve issues related to system performance, log ingestion, and Splunk search efficiency.
  • Experience working with cross-functional teams, including IT, security operations, and compliance.
  • Proficiency managing Splunk using the Splunk command-line interface and config files
  • Experience onboarding data into Splunk via forwarder, scripted inputs, TCP/UDP and modular inputs from a variety of sources.
  • Proficiency onboarding data using Splunk developed add-ons for Windows, Linux, and common third-party devices and applications
  • Experience collaborating with separate engineering teams to configure data sources for Splunk integration
  • Experience in Linux, Windows and SQL/ODBC interfaces
  • Proficiency implementing and onboarding data in Splunk DB Connect
  • Experience with Splunk performing systems administration, including performing installation, configuration, monitoring system performance and availability, upgrades, and troubleshooting
  • Experience developing in XML, Bash, JavaScript and Python, Perl, PowerShell scripts
  • General networking and security troubleshooting (firewalls, routing, NAT, etc.)
  • Splunk architecture/design, implementation, and troubleshooting experience
  • Experience in managing, maintaining, and administering multi-site indexer cluster
  • Scripting and development skills (BASH, python, or java) with strong knowledge of regular expressions
  • Proficiency developing log ingestion and aggregation strategies per Splunk best practices
  • Proficiency normalizing data to Splunk Common Information Model (CIM)
  • Experience implementing and optimizing Splunk data models
  • Expertise developing security-focused content for Splunk, including creation of complex threat detection log and operational dashboards
  • Perform integration activities to configure, connect, and pull data with 3rd party software APIs.
  • Ability to autonomously prioritize and successfully deliver across a portfolio of projects
  • Undertakes day-to-day operational and user support
  • Must be willing to participate to a rotating on-call support (24/7/365) for nights, weekends, holiday issues.
  • Knowledge of scripting languages (e.g., Python, Bash) for automating tasks and streamlining Splunk processes.
  • Experience with cloud environments (e.g., AWS GovCloud, Azure Government) and their integration with Splunk.
  • Experience with automation tools (e.g., Ansible, Puppet) in government infrastructure.
  • Familiarity with SIEM solutions and security orchestration tools (e.g., Swimlane, Phantom, Demisto) to enhance incident response capabilities.


Experience/Years of Relevant Experience:

  • Excellent verbal and written communication skills
  • Ability to meet deadlines and work independently.
  • Required Experience 5 years.


Education:

  • BA / BS in a Science, Technology, Engineering, Cybersecurity Management field


Certifications (Not Required):

  • CISSP (Certified Information Security Systems Professional)
  • CompTIA Security+
  • ITIL Foundations
  • Experience with Agile-based project management (primary Kanban)


Software/Hardware Experience Desired

  • Splunk certifications (e.g., Splunk Core Certified Power User, Admin, Architect).
  • Current Splunk Enterprise Certified Architect certification


Security Clearance:

  • Must be able to attain/maintain DHS EOD clearance.
  • Must be a US Citizen and pass a background check.
  • Maintain applicable security clearance(s) at the level required by the client and/or applicable certification(s) as Requested by FEDITC and/or required by FEDITC Client(s)/Customer(s).


FEDITC, LLC. is committed to fostering an inclusive workplace and provides equal employment opportunities (EEO) to all employees and applicants for employment. We do not employ AI tools in our decision-making processes. Regardless of race, color, religion, sex (including pregnancy), sexual orientation, gender identity or expression, national origin, age, disability, genetic information, marital status, amnesty, or status as a covered veteran, FEDITC, LLC. ensures that all employment decisions are made in accordance with applicable federal, state, and local laws. Our commitment to non-discrimination in employment extends to every location in which our company operates.



  • springfield, United States FEDITC - Federal IT Consulting Full time

    FEDITC, LLC is a fast-growing business supporting DoD and other intelligence agencies worldwide. FEDITC develops mission critical national security systems throughout the world directly supporting the Warfighter, DoD Leadership, & the country. We are proud & honored to provide these services.Overview of position:FEDITC is seeking Network Engineer – Senior...


  • Springfield, Illinois, United States Cabela's Full time

    Job SummaryWe are seeking a skilled DevOps Systems Engineer III to join our team. The ideal candidate will have a strong background in designing and implementing highly available, scalable, and self-healing systems on cloud platforms.Key ResponsibilitiesImplement and manage continuous delivery systems and methodologies.Design and manage tools to automate...


  • Springfield, Virginia, United States NextGen Federal Systems Full time

    Job RequirementsWe are seeking a highly skilled Senior IT Infrastructure Engineer to join our team at NextGen Federal Systems. The ideal candidate will have a broad engineering background and experience in supporting complex IT infrastructure.Key ResponsibilitiesVirtualization Management: Manage and maintain VMware vSphere environments, including vCenter...

  • PKI Systems Engineer

    6 months ago


    Springfield, United States SAIC Full time

    DescriptionThe Vanguard 2.2.1 contract provides enterprise IT services to the Department of State (DOS) Diplomatic Technology Bureau. The contract currently has an opening for a Senior Public Key Infrastructure (PKI) system engineer. As a Senior PKI Engineer, you will be joining the team to participate and lead in managing, securing, engineering, and...


  • Springfield, United States V2X Full time

    OverviewWorking across the globe, V2X builds smart solutions designed to integrate physical and digital infrastructure from base to battlefield. We bring 120 years of successful mission support to improve security, streamline logistics, and enhance readiness. Aligned around a shared purpose, our $3.9B company and 16,000 people work alongside our clients,...


  • Springfield, Illinois, United States GDIT Full time

    Job Summary:This position requires a highly skilled Cybersecurity Operations Specialist to provide expert-level support for the Cybersecurity Operations Cell (CSOC). The successful candidate will have extensive experience with SIEM systems, including ArcSight, Elasticsearch, and Splunk, as well as expertise in Linux administration and engineering. The ideal...


  • Springfield, United States ManTech Full time

    ManTech is seeking a motivated, career and customer-oriented Cyber Security Engineer, Detections to join our team in Springfield, VA area , to provide unparalleled support to our customer and to begin an exciting and rewarding career within ManTech. Responsibilities include, but are not limited to: Support Cyber Operations Squadron (COS) activities to...


  • Springfield, United States Cabela's Full time

    POSITION SUMMARY: We are seeking a DevOps Systems Engineer III to help us build and operate functional systems to ensure site reliability and improve software delivery workflows. The Systems Engineer will be responsible for designing and implementing highly available, scalable, self-healing systems. This person will work in cross-functional and highly...


  • Springfield, United States Bass Pro Inc Full time

    POSITION SUMMARY: We are seeking a DevOps Systems Engineer III to help us build and operate functional systems to ensure site reliability and improve software delivery workflows. The Systems Engineer will be responsible for designing and implementing highly available, scalable, self-healing systems. This person will work in cross-functional and highly...


  • Springfield, United States Elluminates Software Full time

    Introduction Elluminates Software's focus is on creating amazing capabilities for Developers, System Administrators and IT and Cyber Engineers and, ultimately, their users. Our mission is to have a positive impact on society through the use of technology. Elluminates Software has three core business units: Platform Engineering for Developer Teams Cloud and...


  • Springfield, United States Arcfield Full time

    OverviewArcfield was purpose-built to protect the nation and its allies through innovations in digital transformation, space mission engineering and launch assurance, miniaturized sensors and satellites, advanced modeling and simulation, cybersecurity, and conventional and hypersonic missile support. Headquartered in Chantilly, VA with 16 global offices,...

  • Systems Engineer

    4 hours ago


    Springfield, United States NextGen Federal Systems Full time

    Candidate shall have a broad engineering background to support US Marshals hosted infrastructure supporting agents in the field. Infrastructure includes Compute, Storage, Virtualization, Networking and Applications.Job Responsibilities:VMware and VirtualizationVMS Support/PatchingTracking NetworkvCenter Server Upgrade, management and updates12 ESXi...

  • Systems Engineer

    2 months ago


    Springfield, United States NextGen Federal Systems Full time

    Candidate shall have a broad engineering background to support US Marshals hosted infrastructure supporting agents in the field. Infrastructure includes Compute, Storage, Virtualization, Networking and Applications.Job Responsibilities:VMware and VirtualizationVMS Support/PatchingTracking NetworkvCenter Server Upgrade, management and updates12 ESXi...

  • Systems Engineer

    1 month ago


    springfield, United States NextGen Federal Systems Full time

    Candidate shall have a broad engineering background to support US Marshals hosted infrastructure supporting agents in the field. Infrastructure includes Compute, Storage, Virtualization, Networking and Applications.Job Responsibilities:VMware and VirtualizationVMS Support/PatchingTracking NetworkvCenter Server Upgrade, management and updates12 ESXi...

  • Systems Engineer

    3 weeks ago


    springfield, United States NextGen Federal Systems Full time

    Candidate shall have a broad engineering background to support US Marshals hosted infrastructure supporting agents in the field. Infrastructure includes Compute, Storage, Virtualization, Networking and Applications.Job Responsibilities:VMware and VirtualizationVMS Support/PatchingTracking NetworkvCenter Server Upgrade, management and updates12 ESXi...


  • Springfield, United States General Dynamics Information Technology Full time

    Job Duties Include: Provide all preventative and corrective maintenance to ensure consistent, reliable, and secure service availability. This includes all actions required to return the service to full operational capability such as vendor RMA processes, removal and proper disposal of broken equipment/software, installation and testing of new...

  • IT Lead Engnr

    4 weeks ago


    Springfield, United States MAXIMUS Full time

    Description & Requirements The Sr. Cloud Engineer is a hands-on position that requires the ability to plan, design, and implement technical cloud solutions. You will help combine software and systems to develop creative engineering solutions for streamlined operations. Much of our support focuses on optimizing legacy systems, deploying new infrastructure and...


  • SPRINGFIELD, United States MassMutual Full time

    The OpportunityWithin our Enterprise Cybersecurity organization, you will work closely with the Security Intelligence team and be responsible for leverage real world adversarial techniques to perform pen tests and simulate attacks on existing and upcoming services spanning across applications, servers, and end-user assets. The TeamWithin the Security...


  • Springfield, United States MassMutual Full time

    The Opportunity Within our Enterprise Cybersecurity organization, you will work closely with the Security Intelligence team and be responsible for leverage real world adversarial techniques to perform pen tests and simulate attacks on existing and upcoming services spanning across applications, servers, and end-user assets.  The Team Within the Security...


  • Springfield, United States Softek International Full time

    Softek International Inc. Softek. As a SBA Certified 8A Woman Owned Small Business (WOSB) with 36 years of expertise, we are not just a company; we are your partner in pushing the limits of what is possible. Our mission is simple yet powerful: we aim to astonish, not just satisfy. At Softek International Inc, we are dedicated to delivering solutions that...