Splunk Engineers

2 months ago


Washington, Washington, D.C., United States Zivaro Full time

JOB SUMMARY:

Seeking multiple Splunk Engineers to Join Zivaro's team. Our team supports both Federal and State customers in their efforts to develop and maintain a Splunk environment. While much of this role may be conducted remotely, some positions/ programs require travel to customer sites and/or a government security clearance (Secret, Top Secret, TS/SCI + Poly).

POSITION RESPONSIBILITIES: Roles may include some or all of the following

  • Manage multiple assignments, changing priorities, and work independently with little oversight
  • Build, implement, and administer Splunk in Linux and Windows environments
  • Work with existing and custom Splunk applications and add-ons to fulfill customer needs
  • Provide overall engineering and design support for a distributed Splunk environment
  • Editing and maintaining Splunk configuration files and apps
  • Troubleshoot Splunk configuration settings needed to ensure proper operation of Splunk
  • Perform API integrations with other 3rd party vendor software
  • Able to create, modify, update, and maintain Python and PowerShell scripts
  • Onboard data to Splunk
  • Security event data normalization and practices to provide ES with data enrichment with Common Information Modal (CIM) compliance.
  • Provide assistance for detailed view of notable events, workbook for open investigations, and risk analysis scoring system.
  • Recommend actions in security operations center tier I and tier II incident response incidents.
  • ES tuning performance by editing, creating search language of searches to modify and reduce number of notables and removal of low value searches.
  • Configuration of correlation searches, dashboard searches, risk modifiers, threat intelligence feeds, workflow actions and Enterprise Security content.
  • Automate issue resolution and compliance reporting to lower time on detection, time on mitigation for security organizations.
  • Integrate Splunk Mission Control, Splunk Security Orchestration, Automation Response (SOAR), and/or other customer approved security product applications utilizing Enterprise Security.
  • Utilize data thresholds, trend-based conditions and behavioral pattern recognition.
  • Enterprise Security (ES) to support tier I alerting, investigations, and O&M of the SIEM.
  • Support hunt missions (tier II) and Defensive Cyber Operations (DCO) (tier III) as needed
  • Provide best business practices and recommendations in contribution to customers security strategy and SOC policies.
  • Design resiliency using ITSI; build out an ITSI application and implement the design to run ITSI at multiple locations and have one location have overall oversight.
  • Data onboarding, data normalization and day-to-day maintenance of Splunk platform.

QUALIFICATIONS: Roles may require some or all of the following

  • Splunk Enterprise Architect certification
  • Splunk Core Consultant Certification
  • Splunk Enterprise Security Certification
  • Splunk IT Service Intelligence Certified Admin - ITSI
  • Working knowledge of SOAP/REST APIs, JSON, HTML/CSS, JavaScript, and XML
  • Authored SOPs, playbooks, work instructions and/or other process documents
  • CISSP or Security Plus credentials
  • Experience with Python development
  • Experience working in Splunk Cloud environment
  • Willing to direct and guide junior consultants on the team
  • Data onboarding, visualizations, and use case tuning
  • Background in Linux, Python, networking, high level troubleshooting skills

YEARS OF EXPERIENCE: Minimum 3+ years of experience with Splunk

SECURITY CLEARANCE: Varies - no clearance to TS/SCI + Poly

EDUCATION: Bachelor's degree in related field, or equivalent experience preferred

U.S. Citizenship is required for most positions at Zivaro, due to security clearance and government/federal contracts held by Zivaro.

EEO STATEMENT

ZIVARO fully subscribes to the principles of Equal Employment Opportunity. It is our policy to provide employment, compensation and other benefits related to employment based on qualifications, without regard to race, color, religion, national origin, age, sex, veteran status, disability, sexual orientation, gender identity or any other basis prohibited by federal, state or local law. In accordance with requirements of the Americans with Disabilities Act, it is our policy to provide reasonable accommodation upon request during the application process to eligible applicants in order that they may be given a full and fair opportunity to be considered for employment. As an Equal Opportunity Employer, we intend to comply fully with applicable federal and state employment laws and the information requested on this application will only be used for purposes consistent with those laws.



  • Washington, Washington, D.C., United States August Schell Full time

    Job Opportunity at August SchellAbout UsAugust Schell is a leading provider of innovative solutions and engineering services to customers with complex IT needs. With 30 years of experience, we thrive on navigating intricate IT challenges and delivering expert knowledge in cyber security, big data, endpoint security, and cloud solutions.Job DescriptionWe are...


  • Washington, Washington, D.C., United States Zachary Piper Full time

    About the RoleZachary Piper Solutions is seeking a highly skilled Cyber Cribl Engineer to join a long-term federal program, supporting the Defense Intelligence Agency. This role is fully onsite, requiring 5 days on site weekly, in a secure facility.The Cyber Analytics Engineer's responsibilities for supporting the DIA include developing and implementing...


  • Washington, Washington, D.C., United States Leidos Full time

    Job SummaryLeidos is seeking an experienced Infrastructure Tools Team Lead to join our Network Services team. As a key member of our team, you will be responsible for leading a team of system administrators to manage a large suite of tools and technologies used by the Network Services Program.Key ResponsibilitiesLead a team of system administrators to manage...


  • Washington, Washington, D.C., United States Peraton Full time

    Key ResponsibilitiesOversees and coordinates all aspects of software development across various functional domains and product lines.Determines project priorities and resource allocation in collaboration with architects and project managers.Engages in strategic technology decisions, defining and implementing software solutions while making critical...


  • Washington, Washington, D.C., United States ACES, Incorporated Full time

    Host-based Security System, Endpoint Security Suite (ESS), Splunk, Cribl, ACAS, and networkincluding Trellix ESS or McAfee HBSS, ePO, and FireEye tools, and Palo Alto Firewalls, ForeScout,Splunk/Cribl, or ACASExperience with Cloud services, including AWS, Azure, or GCPExperience with DoD Risk Management FrameworkActive TS/SCI clearance; willingness to take a...


  • Washington, Washington, D.C., United States Peraton Full time

    Key ResponsibilitiesOversees and coordinates all phases of software development across various functional areas and product lines.Determines project priorities and resource allocation in collaboration with architects and management.Engages in strategic technology decisions, defining and implementing software solutions while making key employment...


  • Washington, Washington, D.C., United States Occam Solutions Full time

    Job OverviewSalary: CompetitiveOccam Solutions is seeking two qualified AWS Cloud Engineers with a Secret Clearance. The ideal candidates will possess the following expertise:AWS Cloud EngineeringAWS Networking ProficiencyExperience in federating access across various applications (including Active Directory and Access Management for platforms like Splunk...


  • Washington, Washington, D.C., United States Zachary Piper Full time

    Zachary Piper Solutions is in search of a Cybersecurity Analytics Specialist to contribute to a long-term federal initiative, supporting critical intelligence operations. This role requires a commitment to working onsite five days a week in designated locations. The Cybersecurity Analytics Specialist will play a pivotal role in crafting and executing...


  • Washington, Washington, D.C., United States Zachary Piper Full time

    Zachary Piper Solutions is in search of a Cybersecurity Analytics Specialist to contribute to a long-term federal initiative, providing support to the Defense Intelligence Agency. This role necessitates a full-time onsite presence in designated locations. The Cybersecurity Analytics Specialist will focus on the design and execution of sophisticated...


  • Washington, Washington, D.C., United States Zachary Piper Full time

    Zachary Piper Solutions is seeking a highly skilled Cybersecurity Engineer to support a Federal Agency in a dynamic security environment. This position will involve working on-site in Washington DC, with the opportunity to transition to a hybrid work setting once the candidate is up to speed.Key Responsibilities:Develop and implement comprehensive...


  • Washington, Washington, D.C., United States Peraton Full time

    Job DescriptionPeraton is seeking a highly skilled Senior SQL Database Developer to join our team. As a key member of our database development team, you will be responsible for designing, engineering, and administering SQL Server databases to support our mission-critical systems.ResponsibilitiesProvide database development and administration support in a...


  • Washington, Washington, D.C., United States Versar, Inc. Full time

    Job OverviewPosition SummaryVersar, Inc. is looking for a dedicated Security Architect specializing in Security Information and Event Management (SIEM) and Security Orchestration, Automation, and Response (SOAR) to enhance the security framework of the DHS' Homeland Security Enterprise Network (HSEN). This role is integral to the Office of the Chief...


  • Washington, Washington, D.C., United States Versar, Inc. Full time

    Job OverviewPosition SummaryVersar, Inc. is looking for a dedicated Security Architect specializing in Security Information and Event Management (SIEM) and Security Orchestration, Automation, and Response (SOAR) to enhance the Department of Homeland Security's Homeland Security Enterprise Network (HSEN). This role is crucial within the Office of the Chief...


  • Washington, Washington, D.C., United States Versar, Inc. Full time

    Job OverviewPosition SummaryVersar, Inc. is looking for a talented Security Architect specializing in Security Information and Event Management (SIEM) and Security Orchestration, Automation, and Response (SOAR) to enhance the security posture of the Department of Homeland Security's Homeland Security Enterprise Network (HSEN). This role is integral to the...


  • Washington, Washington, D.C., United States Leidos Full time

    Job SummaryLeidos is seeking a highly skilled Senior Systems Engineer to provide operations and maintenance (O&M) support for a complex Department of Homeland Security (DHS) effort. The successful candidate will work with application teams, end-users, and infrastructure teams to support production issues.Key ResponsibilitiesProvide O&M support for...


  • Washington, Washington, D.C., United States Zachary Piper Full time

    Zachary Piper Solutions is looking for a Cybersecurity Analytics Specialist to contribute to a long-term federal initiative. This position requires a commitment to working onsite in a designated location. The Cybersecurity Analytics Specialist will focus on crafting and executing sophisticated cybersecurity strategies utilizing Cribl and Splunk to safeguard...


  • Washington, Washington, D.C., United States Zachary Piper Full time

    Zachary Piper Solutions is in search of a Cybersecurity Analytics Specialist to contribute to a long-term federal initiative supporting critical intelligence operations. This role requires a commitment to working onsite on a full-time basis in designated locations. The Cybersecurity Analytics Specialist will focus on crafting and deploying sophisticated...


  • Washington, Washington, D.C., United States Zachary Piper Full time

    Zachary Piper Solutions is looking for a Cybersecurity Analytics Specialist to contribute to a long-term federal initiative, supporting critical defense operations. This role requires a commitment to working onsite full-time in designated locations. The Cybersecurity Analytics Specialist will focus on crafting and deploying sophisticated cybersecurity...


  • Washington, Washington, D.C., United States Zachary Piper Full time

    About the RoleZachary Piper Solutions is seeking a highly skilled Cyber Engineer to support a defense contract. This position requires in-person presence at the client site, with a focus on delivering exceptional results.Key ResponsibilitiesDesign, develop, and implement enterprise network cyber defense capabilities, with a focus on Next Generation...


  • Washington, Washington, D.C., United States General Dynamics Information Technology Full time

    Job DescriptionAt General Dynamics Information Technology, we are seeking a highly skilled Senior Systems Engineer to join our team. As a Senior Systems Engineer, you will play a critical role in delivering cutting-edge solutions to our clients.Key ResponsibilitiesSupport the administration and engineering of Microsoft Endpoint Configuration Manager and...