SIEM Engineer/Splunk Certified Admin with Security Clearance

2 weeks ago


Annapolis Junction MD United States Momentum Engineering Full time
Required Qualification
Must have Splunk Enterprise Certified Admin Certificate or higher. The selected candidate will be responsible for configuring the collection, parsing, correlation, and visualization of events for a critical operational system. The candidate will demonstrate strong skills in system administration, log management, event correlation, and threat detection and will support building and maintaining a system that analyzes collected data and derives facts, inferences, and projections to determine if the systems being monitored are operating normally. The candidate will work on a team responsible for configuring the systems which support analysts and end‐users. The successful candidate will support the collection and extraction of data used to refine existing and new reports, analytics, and dashboards, and will be involved with the drafting and creation of reports and dashboards based on end‐user requirements. The candidate will also support the integration of resources across teams to better define the audit data being collected to eliminate false positives and false negatives from the data. Basic/Required Qualifications

• At least 8 years of related experience.

• At least 2 years of experience with one or more of the following: StealthWatch, TripWire, Zenoss, ArcSight, Splunk.

• Experience in design, implementation, and support of Splunk core components, including: indexers, forwarders, search heads, and cluster managers.

• Experience with configuration and administration of Splunk ingestion and forwarding for new and existing applications and data.

• Experience with troubleshooting Splunk dataflow issues between the various Splunk core components.

• Experience configuring and deploying data collection for a variety of operating systems and networking platforms.

• Experience creating Dashboards and Analytics within SIEM tools.

• Experience working with monitoring systems supporting auditing, incident response, and system health.

• Understanding of networking components and devices, ports, protocols, and basic networking troubleshooting steps.

• The ability to troubleshoot issues with log feeds, search time, and field extractions.

• The ability to troubleshoot problems related to data solutions. Preferred Qualifications

• Bachelor's Degree in Computer Science, Engineering, Information Assurance, or a related discipline.

• Network Security Operations Center ﴾SOC﴿ experience.

• Experience and talent in data visualization.

• Experience creating workflows for Incident Response within a SIEM Tool.

• Security+ Certification.

• GIAC Certified Incident Handler Certification.

• GIAC Cyber Threat Intelligence Certification.

• Cybersecurity certifications.

• Formal SIEM training.

• Experience working on an Agile team/program.

  • Annapolis Junction, United States Sunayu, LLC Full time

    Location: Annapolis Jct, MDCategory: SIEM (Security Information and Event Management) Engineer / Splunk Certified AdminTravel Required: NoRemote Type: NoClearance: Top Secret/SCI w/ FS Polygraph (last poly must be within the past 7 years) Job Summary / Primary Responsibilities The selected candidate will be responsible for configuring the collection,...

  • Splunk Administrator

    2 weeks ago


    Annapolis Junction, United States Leidos Full time

    R-00134786 Description The Program is looking for a SIEM (Security Information and Event Management) Engineer / Splunk Certified Admin to join a high performing agile team using the Scaled Agile Framework (SAFe) methodology to support a large, complex, and fast-paced program. Program execution follows DEVOPS best practices and employs robust development,...


  • Annapolis Jct, United States Momentum Engineering Full time

    Required QualificationMust have Splunk Enterprise Certified Admin Certificate or higher. The selected candidate will be responsible for configuring the collection, parsing, correlation, and visualization of events for a critical operational system. The candidate will demonstrate strong skills in system administration, log management, event correlation, and...

  • Splunk Administrator

    2 weeks ago


    Annapolis Junction, MD, United States Leidos Inc Full time

    Description The Program is looking for a SIEM (Security Information and Event Management) Engineer / Splunk Certified Admin to join a high performing agile team using the Scaled Agile Framework (SAFe) methodology to support a large, complex, and fast-paced program. Program execution follows DEVOPS best practices and employs robust development, test, and...


  • Annapolis Junction, MD, United States Leidos Full time

    Description The Program is looking for a SIEM (Security Information and Event Management) Engineer / Splunk Certified Admin to join a high performing agile team using the Scaled Agile Framework (SAFe) methodology to support a large, complex, and fast-paced program. Program execution follows DEVOPS best practices and employs robust development, test, and...


  • Annapolis, United States SUNAYU Full time

    Location: Annapolis Jct, MD Category: SIEM (Security Information and Event Management) Engineer / Splunk Certified Admin Travel Required: No Remote Type: No Clearance: Top Secret/SCI w/ FS Polygraph (last poly must be within the past 7 years) Job Summary / Primary Responsibilities The selected candidate will be responsible for configuring the collection,...


  • Annapolis, United States SUNAYU Full time

    Location: Annapolis Jct, MD Category: SIEM (Security Information and Event Management) Engineer / Splunk Certified Admin Travel Required: No Remote Type: No Clearance: Top Secret/SCI w/ FS Polygraph (last poly must be within the past 7 years) Job Summary / Primary Responsibilities The selected candidate will be responsible for configuring the collection,...


  • Annapolis Junction, United States Leidos Full time

    R-00133931 Description Destination...Leidos! Come join our exciting and fast-growing National Security Group! Why? Because w e offer competitive salaries, bonus programs, competitive paid leave, holidays, beyond ordinary benefits, and many opportunities for continual professional growth and development, including a robust technical upskilling program,...


  • Annapolis Junction, MD, United States Leidos Full time

    Description Destination...Leidos! Come join our exciting and fast-growing National Security Group! Why? Because we offer competitive salaries, bonus programs, competitive paid leave, holidays, beyond ordinary benefits, and many opportunities for continual professional growth and development, including a robust technical upskilling program, paid/sponsored...


  • Ashburn, VA, United States Anonymous Employer Full time

    The candidate should have experience deploying and configuring Universal Forwarders and possess demonstrable knowledge of data collection methods such as Syslog, JDBC, or APIThis position requires solid experience developing Splunk search queries, and dashboards and reportsNice to have skills include Unix administration, scripting, understanding of Federal...


  • Annapolis Junction, Maryland, United States BAE Systems Full time

    Job Description The selected candidate will join a high performing agile team that uses the Scaled Agile Framework (SAFe) methodology to support a nationally significant and fast-paced program. Program execution follows DEVOPS best practices and employs robust development, test and production environments. Test Driven Development (TDD) and test automation...


  • Linthicum Heights, MD, United States Farfield Systems, Inc Full time

    About Farfield Systems, Inc At Farfield we are committed to delivering trusted expertise to our government clientsAs we grow, our focus is on increasing opportunities for you to grow with us while still delivering the same excellence customers have grown to expect from usWe continually evaluate our environment to provide a place where your career is packed...


  • Annapolis Junction, United States Columbia Technology Partners Full time

    Description: The Senior Splunk Software Engineer (SWE) shall demonstrate the following skills: * Design and develop software solutions by analyzing stakeholder requirements and conferring with users or system engineers * Design and implement software solutions to complex problems * Develop software system installation or build procedures or scripts * Analyze...


  • McClellan Park, CA, United States TeAM Full time

    TeAM, a Veteran Owned Small Business (VOSB) and Small Disadvantaged Business (SDB), offering public and private sector organizations high quality, “best of breed” technical and management solutions is seeking an experienced Splunk Engineer/Information Security Engineer! This role is a Splunk Engineer first, and Information Security Engineer secondThe...


  • Annapolis Junction, United States BAE Systems Full time

    Job Description The selected candidate will join a high performing agile team that uses the Scaled Agile Framework (SAFe) methodology to support a nationally significant and fast-paced program. Program execution follows DEVOPS best practices and employs robust development, test and production environments. Test Driven Development (TDD) and test automation...


  • Annapolis Junction, United States SuprTek Full time

    Description Title: Splunk Engineer Job# - 2450 Location: Annapolis Junction, MD Status : Regular Full time Minimum Clearance Required to Start: TS/SCI with Polygraph Percentage of Travel Required: No ne SuprTEK is currently looking for a Splunk Engineer to join our team with the option of flexible work schedules all while developing next generation products...


  • Washington, DC, United States Base One Technologies Full time

    Our DC metro based client is looking for a  Senior Splunk EngineerIf you are interested in this positionPlease send your updated resume in word format to Have One of the Following J3 CertificationsSANS: GCWN - Windows Security Administrator, GISF - Security Fundamentals, GSSP - Secure Software Programmer, GICSP - Cyber Security ProfessionalCarnegie Mellon...


  • Annapolis Junction, United States Columbia Technology Partners Full time

    Description: We are seeking a highly skilled and detail-oriented Splunk Analyst to join our team. As a Splunk Analyst, you will play a critical role in maintaining and optimizing our Splunk platform, ensuring its effective utilization for monitoring and analyzing various system logs and data sources. Your primary responsibility will be to design, develop,...


  • Ashburn, VA, United States Leidos Full time

    R-00129222 Description Department of Homeland Security (DHS), Customs and Border Protection (CBP) Security Operations Center (SOC) is a US Government program responsible to prevent, identify, contain and eradicate cyber threats to CBP networks through monitoring, intrusion detection and protective security services to CBP information systems including local...


  • Annapolis, United States OMW Consulting Full time

    Splunk Engineer - TS/SCI w FSPAnnapolis Junction, MD$200k-$225k My client is on the hunt for an experience Splunk engineer to join them onsite in Annapolis Junction, MD. For this position you must have an active TS/SCI w FSP clearance due to the nature of the work and the client. To be considered for the position you will need experience with the following:...