Senior Splunk Security Information and Event Management Engineer

4 weeks ago


Annapolis Junction, Maryland, United States Leidos Holding Full time
About the Role

We are seeking a highly skilled Splunk Administrator to join our team in supporting a large, complex, and fast-paced program. The ideal candidate will have strong experience in system administration, log management, event correlation, and threat detection, as well as a solid understanding of Splunk Enterprise and its core components.

Key Responsibilities
  • Configure the collection, parsing, correlation, and visualization of events for a critical operational system.
  • Demonstrate strong skills in system administration, log management, event correlation, and threat detection.
  • Support building and maintaining a system that analyzes collected data and derives facts, inferences, and projections to determine if the systems being monitored are operating normally.
  • Work on a team responsible for configuring the systems which support analysts and end-users.
  • Support the collection and extraction of data used to refine existing and new reports, analytics, and dashboards.
  • Involved with the drafting and creation of reports and dashboards based on end-user requirements.
  • Support the integration of resources across teams to better define the audit data being collected to eliminate false positives and false negatives from the data.
Requirements
  • Bachelor's degree in computer science, Engineering, Information Assurance, or a related discipline and at least eight (8) years of related experience.
  • Must have Splunk Enterprise Certified Admin Certificate or higher.
  • At least 2 years of experience with one or more of the following: ArcSight, Splunk, Grafana, StealthWatch, TripWire, Zenoss.
  • Experience in design, implementation, and support of Splunk core components, including indexers, forwarders, search heads, and cluster managers.
  • Experience with configuration and administration of Splunk ingestion and forwarding for new and existing applications and data.
  • Experience with troubleshooting Splunk dataflow issues between the various Splunk core components.
  • Experience configuring and deploying data collection for a variety of operating systems and networking platforms.
  • Experience creating Dashboards and Analytics within SIEM tools.
  • Experience working with monitoring systems supporting auditing, incident response, and system health.
  • Understanding of networking components and devices, ports, protocols, and basic networking troubleshooting steps.
  • The ability to troubleshoot issues with log feeds, search time, and field extractions.
  • The ability to troubleshoot problems related to data solutions.
Preferred Qualifications
  • Network Security Operations Center (SOC) experience.
  • Experience and talent in data visualization.
  • Experience creating workflows for Incident Response within a SIEM Tool.
  • Experience working on an Agile team/program.
About Leidos

Leidos is a Fortune 500 innovation company rapidly addressing the world's most vexing challenges in national security and health. The company's global workforce of 47,000 collaborates to create smarter technology solutions for customers in heavily regulated industries.



  • Annapolis Junction, Maryland, United States General Dynamics Information Technology Full time

    Job Title: Splunk Systems EngineerJob Summary:We are seeking a highly skilled Splunk Systems Engineer to join our team at General Dynamics Information Technology. As a Splunk Systems Engineer, you will be responsible for designing, implementing, and maintaining complex Splunk Enterprise solutions for our clients. You will work closely with our cybersecurity...


  • Annapolis Junction, Maryland, United States Columbia Technology Partners Full time

    Splunk Engineer Job DescriptionWe are seeking a highly skilled Splunk Engineer to maintain and optimize our Splunk platform. The ideal candidate will have a deep understanding of Splunk architecture and best practices, as well as hands-on experience in managing large-scale Splunk deployments.Key Responsibilities:Maintain and optimize the Splunk platform,...


  • Annapolis Junction, Maryland, United States Leidos Full time

    Job SummaryWe are seeking a highly skilled Splunk Administrator to join our team at Leidos. As a key member of our National Security Group, you will be responsible for configuring and managing Splunk Enterprise to collect, parse, and visualize critical operational system data.Key Responsibilities:Configure Splunk Enterprise to collect and parse data from...


  • Annapolis Junction, Maryland, United States Leidos Full time

    Job Summary:You will be responsible for configuring the collection, parsing, correlation, and visualization of events for a critical operational system. This role requires strong skills in system administration, log management, event correlation, and threat detection.Key Responsibilities:Configure the collection, parsing, correlation, and visualization of...


  • Annapolis Junction, Maryland, United States Navstar Full time

    Navstar is an award-winning organization that has a proven track record of successfully providing IT services and solutions both as a prime and sub-contractor on mission-focused IT programs.We are seeking a highly skilled Senior Splunk Administrator to join our team.The selected candidate will be responsible for configuring the collection, parsing,...

  • Splunk Engineer

    4 weeks ago


    Annapolis, Maryland, United States Global Channel Management Full time

    About the job Splunk EngineerSplunk Engineer needs 6+ years of experienceSplunk Engineer requires:Top secret/SCI clearance with at least a CI polygraphSplunk engineering experienceSplunk Engineer duties:Establish a process to formally and proactively control and manage changes to requirements, consider impacts prior to commitment to change, gain stakeholder...


  • Annapolis Junction, Maryland, United States Orion Consortium Full time

    Job Summary:As a Senior Splunk Infrastructure Specialist at Orion Consortium, you will be responsible for ensuring the smooth operation of our Splunk infrastructure, including PKI-based authentication, corporate authorization services, firewalls, and SSL/TLS communications. You will also contribute to the development and improvement of industry best...


  • Annapolis Junction, Maryland, United States SUNAYU Full time

    Job Summary:The selected candidate will be responsible for configuring the collection, parsing, correlation, and visualization of events for a critical operational system.She/he will demonstrate strong skills in system administration, log management, event correlation, and threat detection and will support building and maintaining a system that analyzes...


  • Annapolis Junction, Maryland, United States Dobbs Defense Solutions, LLC Full time

    About the RoleDobbs Defense Solutions is seeking a highly skilled Splunk Administrator to join our team. As a key member of our IT department, you will be responsible for maintaining and enhancing our existing Splunk infrastructure in the enterprise.The ideal candidate will have experience with importing data in Splunk from various sources, including...

  • Splunk Engineer

    4 weeks ago


    Annapolis, Maryland, United States CyberCore Technologies Full time

    Job Summary:CyberCore Technologies is seeking a highly skilled Splunk Engineer to join our team. As a key member of our cybersecurity team, you will be responsible for ensuring the Splunk infrastructure functions properly with PKI-based authentication, corporate authorization services, firewalls, and SSL/TLS communications.Key Responsibilities:Ensure the...


  • Annapolis Junction, Maryland, United States Leidos Full time

    Job Summary:The selected candidate will be responsible for configuring the collection, parsing, correlation, and visualization of events for a critical operational system.She/he will demonstrate strong skills in system administration, log management, event correlation, and threat detection and will support building and maintaining a system that analyzes...


  • Annapolis Junction, Maryland, United States Columbia Technology Partners Full time

    About the RoleColumbia Technology Partners is seeking a highly skilled Splunk Analyst to maintain and optimize our Splunk platform. As a Splunk Analyst, you will play a critical role in ensuring the effective utilization of our Splunk platform for monitoring and analyzing various system logs and data sources.Key Responsibilities:Maintain and optimize the...


  • Annapolis, Maryland, United States SPYROS I&T Consulting Full time

    Job Summary:We are seeking a highly skilled Splunk Administrator to join our team at SPYROS I&T Consulting. The successful candidate will be responsible for implementing, testing, and operating advanced software security techniques in compliance with technical reference architecture.Key Responsibilities:Implements, tests, and operates advanced software...


  • Annapolis Junction, Maryland, United States Leidos Full time

    Job Summary:The selected candidate will be responsible for configuring the collection, parsing, correlation, and visualization of events for a critical operational system.She/he will demonstrate strong skills in system administration, log management, event correlation, and threat detection and will support building and maintaining a system that analyzes...


  • Annapolis Junction, Maryland, United States Farfield Systems, Inc Full time

    About Farfield Systems, IncWe are committed to delivering trusted expertise to our government clients. Our focus is on increasing opportunities for you to grow with us while delivering excellence.We build a team where each employee is a valued member. We provide support to multiple agencies across the United States Government, offering many opportunities to...


  • Annapolis Junction, Maryland, United States Columbia Technology Partners Full time

    Job SummaryColumbia Technology Partners is seeking a highly skilled Information Systems Security Engineer to join our team. The ideal candidate will have extensive experience in security engineering, risk management, and system security design.Key Responsibilities:Perform technical security assessments of computing environments to identify vulnerabilities...


  • Annapolis Junction, Maryland, United States Orion Consortium Full time

    Job Summary:As a Splunk Infrastructure Specialist at Orion Consortium, you will be responsible for ensuring the proper functioning of our Splunk infrastructure with PKI-based authentication, corporate authorization services, firewalls, and SSL/TLS communications. You will also contribute to the development and ongoing improvement of industry best practices...


  • Annapolis Junction, Maryland, United States Farfield Systems Full time

    Job OverviewFarfield Systems is seeking a highly skilled Information Systems Security Engineer to join our team. As a key member of our engineering team, you will be responsible for designing, developing, and implementing secure networking, computing, and enclave environments.Key Responsibilities:Participate in the design, development, and implementation of...


  • Annapolis Junction, Maryland, United States ManTech Full time

    Job SummaryManTech is seeking a highly skilled Sr Engineering Project Manager to lead our engineering team in Annapolis Junction, MD. The ideal candidate will have a proven track record of project engineering support across the systems engineering lifecycle and be responsible for directing a team supporting multiple engineering and technical disciplines...


  • Annapolis Junction, Maryland, United States Columbia Technology Partners Full time

    Job OverviewColumbia Technology Partners is seeking a highly skilled Information Systems Security Engineer to join our team. As a key member of our security team, you will be responsible for designing, developing, and implementing secure systems and solutions to protect our clients' sensitive information.Key ResponsibilitiesPerform technical security...