Splunk Engineer

2 weeks ago


Durham, United States TEKsystems Full time
Job DescriptionJob Description

Job Title: Splunk Engineer

Type:18-month contract to hire

Worksite Address: On-site in the RTP Area

Requirements: Splunk experience; Linux experience; U.S. Citizen

Description

This position is for a team with our client that was created in the aftermath of 9/11 to deliver rapid-response technical support to the U.S. Federal Government.

The Splunk Engineer will work on the IT Operations Team that supports a new service offering for the government. This team is responsible for taking care of the internal needs from an IT standpoint. The demands of the role have increased, resulting in the need for an additional Splunk administrator. This position will go perm within 18 months.

The Splunk engineer will continue to maintain the health of the environment, create dashboards, and provide support to the business units when they have additional requirements. This candidate will need to be proficient in using Splunk as a primary log for devices as well as assist the security team to ensure security requirements are met. For example, this person will need to create a special dashboard, know how to gather requirements from business owners for that dashboard and communicate back and forth with that team. Other responsibilities within this role consist of: making adjustments as people send logs, run queries, and explain applications that are in Splunk. This person will not be responsible for completely configuring the applications, however. This person will likely be more seasoned with a lot of problem-solving skills, with the ability to think outside of the box. Having experience with Splunk in a virtualized environment will be helpful.

The ideal candidate for this role is a seasoned/experienced Splunk SME who has vast experience running Splunk as a SIEM, in a government organization. Experience with large-scale deployments with data feeds from multiple on premise data centers will be important.

More specifically, the successful candidate will have experience with the following:

  • Expertise in Enterprise security and developing Splunk ES correlation searches and to identify and address emerging security threats through the use of continuous monitoring, alerting and analytics.
  • Installation, configuration & administration of Splunk Enterprise Server and Splunk Universal Forwarder, Splunk Heavy Forwarders in large distributed environment.
  • Sound Knowledge in using Splunk knowledge objects.
  • Sound knowledge in using configuration files (inputs, outputs, web.conf, serverclass.conf, server.conf...etc.).
  • Experience in roles creation and user authentication.
  • Hands-on Experience using the syslog servers.
  • Develop custom visualizations dashboards, data models, reports, alerts.
  • Ability to write complex search queries and should have expertise in search optimizations and troubleshooting.
  • Expertise in Splunk cluster Administration (Search Head cluster, Indexer Cluster and Distributed Management Console) including version upgrades, permissions, and audit compliance

 

Top Skills:
1) Splunk Administrator (5+ years): Installation, Configuration, Management, care and feeding,
2) Experience on-boarding data, creating dashboards, setting and managing alerts, and writing Splunk applications
3) Experience in a clustered Splunk environment as well as Splunk enterprise security
4) Knowledge and experience of Linux Administration

Preferred one or more of the following:
Splunk Certified Administrator
Splunk Certified Architect

Additional Qualifications
· Minimum 4+ year’s Hands-on experience with SPLUNK in one of the following areas: IT Operations, compliance, dev ops, network security, and system security, supporting security event management tools (SIEMs) Minimum 2+ years Hands-on experience with rule and advanced logic creation within SPLUNK.
· Experience with integrating solutions in a multi-vendor environment, including SaaS environments.
· Knowledge of enterprise logging, with a focus on security event logging.
· Strong Knowledge on regular expressions.
· Experience with enterprise-scale operations and maintenance environments.
· Experience with Python and Shell scripting and ability to automate tasks and manipulate data.
· Experience with Windows and \*NIX environments.
· Experience with Java script, HTML, CSS and XML.
· Experience with various security tools, including Wire shark, Nessus, Nmap, Burp, Proxy, or Snort a plus.
· Strong analytical and creative problem-solving skills.
· Ability to multitask and solve complex technical problems.
· Monitor and maintain Splunk performance, availability, and capacity.
· Create and maintain documentation related to architecture and operational processes for Splunk.
· Engage application and infrastructure teams to establish best practices for utilizing Splunk data and visualizations.


Day in the life:
1) Health check: make sure log rotations working correctly, test environment set up
2) Auditing recently
3) Analyzing with soc analysts, tune data that comes in, parsing out what needs to be filtered/what does not.
4) Work with infrastructure engineers
configuring alerts

 

Benefits:

This is an opportunity for someone to get a clearance, or potentially upgrade an existing clearance level. This is also a very collaborative environment, which allows for the individual to gain experience in other technologies such UC and Security. In addition, this opportunity provides an opportunity to work with an enterprise, industry leading company with access to their Labs for certification studying and access to industry leading technology.

FTE Benefits:
1) Annual bonus between 10-15% of pay band.
2) Client paid CCIE test up to 3 times.
3) 11K annual bonus for CCIE cert
4) Additional annual bonus for clearance.
5) $28K annual health benefits package
6) $4K contribution to HSA

 

Work Environment

Cubicle setting. This is a casual environment, shorts and jeans are acceptable, The shift is around core hours (8-5) with flexibility. This team has created a collaborative environment. He/She needs to be able to work well in a team environment, help out other as much as possible, even if it's in another technology.

 

Additional Skills & Qualifications

Sole US Citizen
5 years’ experience with Splunk
Experience onboarding data and doing dashboards
Experience creating alerts
Experience writing Splunk Apps
Knowledge and experience of Linux Administration
Experience in a clustered Splunk environment
Experience with Splunk enterprise security

 

Impact to the Internal/External Customer

For our client to provide additional services to its external customers (DoD, FBI, etc), they must have an internal infrastructure that supports it. The IT Ops team is standing up a new service that will be essential for their peers in delivering top qualify to their external clients. Splunk is at the core of that service due to its monitoring capabilities.

 

Business Challenge

If this team cannot provide the necessary support to their customers, they will to somewhere else for the service, impacting our client's brand and revenue streams. Standing up this new service where Splunk is part of it is essential to ensuring our client can continue to deliver to its customers.

 


  • Splunk Engineer

    6 days ago


    Durham, North Carolina, United States TEKsystems Full time

    Job Title: Splunk EngineerJob Description:We are seeking a highly skilled Splunk Engineer to join our team. As a Splunk Engineer, you will be responsible for designing, implementing, and maintaining Splunk solutions to support our IT operations.Key Responsibilities:Design and implement Splunk solutions to support IT operationsConfigure and manage Splunk...


  • Durham, North Carolina, United States Splunk Full time

    About SplunkSplunk is a leading provider of unified security and observability platforms, helping enterprises build a safer and more resilient digital world. Our mission is to empower organizations to keep their digital systems secure and reliable.Job SummaryWe are seeking a highly skilled Site Reliability Engineer to join our Splunk Cloud's Traffic...


  • Durham, North Carolina, United States TEKsystems Full time

    Job DescriptionJob Title: Splunk Systems EngineerType: 18-month contract to hireCompany: TEKsystemsLocation: On-siteRequirements: Splunk, Linux experience, U.S. CitizenOverviewThis position is ideal for an experienced Splunk Systems Engineer eager to contribute to a team committed to delivering essential technical support to the U.S. Federal Government. The...


  • Durham, North Carolina, United States TEKsystems Full time

    Position Available: Cybersecurity Engineer at TEKsystemsEssential Skills Required:Experience in Vulnerability ManagementKnowledge of configuring Security Center, Nessus, and Tenable (or ACAS)Ability to conduct scans and utilize reporting for remediation actionsActive Secret ClearanceTEKsystems is a leading provider of technology services, dedicated to...


  • Durham, North Carolina, United States Dexian DISYS Full time

    Job Title: Software Engineer in TestWe are seeking a skilled Software Engineer in Test to join our team at Dexian DISYS. As a key member of our Quality Assurance team, you will be responsible for designing, developing, and executing automated tests to ensure the quality and reliability of our software applications.Key Responsibilities:Design and develop...


  • Durham, North Carolina, United States Eliassen Group Full time

    Software Development Engineer in Test OpportunityEliassen Group is seeking a skilled Software Development Engineer in Test to join our team. As a key member of our platform services team, you will play a critical role in delivering and calculating data that enables financial planning tools.Key Responsibilities:Design and develop automated testing frameworks...


  • Durham, North Carolina, United States Dexian Full time

    Job Title: Senior Cloud Software EngineerJob Summary:Dexian is seeking a highly skilled Senior Cloud Software Engineer to join our team. As a key member of our engineering team, you will be responsible for designing, developing, and deploying secure, performant, and reliable cloud-based applications using public cloud services like AWS and Azure.Key...

  • DevOps Engineer

    3 weeks ago


    Durham, North Carolina, United States NetApp Full time

    About NetAppNetApp is a leading provider of intelligent data infrastructure solutions, empowering customers to turn challenges into opportunities. Our innovative approach combines fresh thinking with proven expertise to help customers unlock the full potential of their data.We're a company that values diversity, openness, and collaboration. Our employees are...

  • Security Engineer

    2 weeks ago


    Durham, United States TEKsystems Full time

    Job DescriptionJob Description 3170633**U.S. Citizens**Top Three Skills:1) Vulnerability Management experience 2) Familiarity with setting up and configuring Security Center, Nessus, and Tenable (or even ACAS) 3) Experience running scans and using the reporting to provide corrective action and/or remediation. 4) Secret Clearance Job Description: This...

  • Security Engineer

    2 days ago


    Durham, United States TEKsystems Full time

    Job DescriptionJob Description 3170633**U.S. Citizens**Top Three Skills:1) Vulnerability Management experience 2) Familiarity with setting up and configuring Security Center, Nessus, and Tenable (or even ACAS) 3) Experience running scans and using the reporting to provide corrective action and/or remediation. 4) Secret Clearance Job Description: This...


  • Durham, North Carolina, United States Fidelity TalentSource LLC Full time

    About the RoleFidelity TalentSource is seeking a highly skilled Software Engineer in Test to join our team in Durham, NC. As a Software Engineer in Test, you will play a critical role in ensuring the quality and reliability of our software applications.Key ResponsibilitiesDesign and develop automated tests to ensure the quality and reliability of our...

  • Cloud Engineer

    1 week ago


    Durham, North Carolina, United States Fidelity TalentSource LLC Full time

    Job Description:This is a hands-on role where you will understand the requirement and write code. You will adopt and contribute to modern software development practices. You will be responsible for crafting secure, scalable, and resilient cloud-based services.The Value You Deliver: Execute on the leadership vision and drive results. Foster a culture of...


  • Durham, United States Fidelity TalentSource LLC Full time

    Job Description:Position Description: Monitors and analyzes performance metrics and application logs by leveraging application server technologies -- Tomcat, Node, or Apache. Conducts performance testing using LoadRunner, CloudTest, Datadog, Grafana and JMeter. Supports testing efforts across multiple business units supported by Enterprise Infrastructure...

  • Sr. Software Engineer

    2 weeks ago


    Durham, United States Compunnel Inc. Full time

    Job Title: Senior Software Engineer (Java, NodeJS, AWS, SOME CMS) End Client: FidelityLocation: Durham, North CarolinaDuration: Long TermWe are currently sourcing for a Sr. Software Engineer (Java, NodeJS, AWS, SOME CMS) to work in Durham, NC!Key Skills:1.) Some CMS experience (Tridion, AEM (Preferred), Wordpress, etc.)2.) Java 11 or higher (some key areas...

  • Sr. Software Engineer

    2 weeks ago


    durham, United States Compunnel Inc. Full time

    Job Title: Senior Software Engineer (Java, NodeJS, AWS, SOME CMS) End Client: FidelityLocation: Durham, North CarolinaDuration: Long TermWe are currently sourcing for a Sr. Software Engineer (Java, NodeJS, AWS, SOME CMS) to work in Durham, NC!Key Skills:1.) Some CMS experience (Tridion, AEM (Preferred), Wordpress, etc.)2.) Java 11 or higher (some key areas...

  • Sr. Software Engineer

    2 weeks ago


    Durham, United States Compunnel Inc. Full time

    Job Title: Senior Software Engineer (Java, NodeJS, AWS, SOME CMS) End Client: FidelityLocation: Durham, North CarolinaDuration: Long TermWe are currently sourcing for a Sr. Software Engineer (Java, NodeJS, AWS, SOME CMS) to work in Durham, NC!Key Skills:1.) Some CMS experience (Tridion, AEM (Preferred), Wordpress, etc.)2.) Java 11 or higher (some key areas...

  • Full Stack Engineer

    5 days ago


    Durham, United States Fidelity TalentSource LLC Full time

    Fidelity Institutional Technology is looking for a Senior Software Engineer as a member of our team. While working to deliver business capabilities across a globally distributed team of IT professionals, the team continually strives to advance engineering excellence, technology innovation and agile practices. Must be a self-starter, able to work well with...


  • Durham, United States Dexian Full time

    Software Engineer in Test (Rest Assured)Durham, NCOnsite HybridExperience:Bachelors in Computer Science RequiredDemonstrated testing and development of high-volume Batch applicationAutomated Testing and Continuous Integration enable rapid development and deployment of our best-in-class planning tools. Your ability to work cross functionally in Quality...

  • Sr. Software Engineer

    2 weeks ago


    Durham, United States Dexian Full time

    Position Details: Title: Sr. Software Engineer (Java, NodeJS, AWS, SOME CMS) Location: 2 weeks onsite , 2 weeks remote ( Durham , NC )Long term role with possible extensions Location Options - Durham, NC We are looking for self-starters who are willing to learn the current framework and start delivering/contributing value rapidly. We need passionate...


  • Durham, United States Fidelity TalentSource LLC Full time

    Job Description:The RoleThis is a hands-on role where you will understand the requirement and write code. You will adopt and contribute to modern software development practices. You will be responsible to craft secure, scalable, resilient cloud-based services. The Value You DeliverUnderstand the leadership vision and execute on that vision.Strengthen and...