Security Splunk Architect/Engineer

1 month ago


Washington Highlands Washington DC, United States Node.Digital Full time
Security Splunk Architect/Engineer

Location: Washington DC metro area (Hybrid)

Must have an active Secret OR Top Secret Clearance

We are seeking a Security Splunk Architect/Engineer to support a Navy enterprise network within the Engineering and Cyber Divisions. The candidate's primary responsibility is to maintain and enhance the existing Splunk infrastructure in the enterprise. Further projects will involve the implementation of Splunk Enterprise Security (ES) and Security Orchestration, Automation, and Response (SOAR) and other vendor solutions.

Implements, tests, and operates advanced software security techniques in compliance with technical reference architecture.

Performs on-going security testing and code review to improve software security.

Troubleshoots and debugs issues that arise.

Provides engineering designs for new software solutions to help mitigate security vulnerabilities.

Contributes to all levels of the architecture and maintains technical documentation.

Consults team members on secure coding practices. Develops a familiarity with new tools and best practices.

Designing, implementing, and maintaining SIEM and SOAR solutions.

Design and implement threat detection, automate incident response processes, integration of various security tools with SIEM and SOAR platforms via APIs

Maintain SIEM applications to collect and aggregate IDS and IPS data from network sensors, raw data from collection agents, firewalls, proxy servers, DLP, antivirus, vulnerability scanner elements, and other security-relevant devices.

Utilize expertise in Splunk "Search" language, Splunk Dashboards, Reports, Lookup Tables, and Summary Indexes. Build Splunk dashboards that take inputs from various data sources such as application logs / operating system logs / middleware logs / network feeds etc. and identify / highlight anomalous activities on the dashboards by their severity levels.

Perform troubleshooting and provide assistance with the creation of Splunk search queries and dashboards.

Requirements

Qualifications

Requires a BA or BS (Cyber Security, Computer Science, Information Systems, Software Engineering, Computer Engineering, or related field); relevant experience may be a substitute for education.

Requires at least five (5) years of professional experience

Requires an active Secret OR TS/SCI

Requires experience with importing data in Splunk from various sources: endpoint security, network security (Firewalls, IPS/IDS, DNS, Proxy, etc.), data and application security, cloud security, and technologies

Requires experience with performing systems administration, including performing installation, configuration, monitoring system performance and availability, upgrades, and troubleshooting of Splunk

Requires experience with designing, implementing, configuring, operating, or testing IT systems or security infrastructure

Requires experience building dashboards highlighting the key trends of the data

Requires proficiency within a Windows and Linux environment, editing and maintaining Splunk configuration files and apps

Experience in working in a Splunk clustered environment supporting SOC or NOC environment required

Experience with virtualization technologies required

Preferred Certifications:

Splunk Architect, Splunk Admin

DoD 8570 Level 3 Certification

Company Overview:

Node.Digital is an independent Digital Automation & Cognitive Engineering company that integrates best-of-breed technologies to accelerate business impact.

Our Core Values help us in our mission. They include:

OUR CORE VALUES

Identifying the~RIGHT PEOPLE~and developing them to their full capabilities

Our customer’s “Mission” is our “Mission”. Our~MISSION FIRST~approach is designed to keep our customers fully engaged while becoming their trusted partner

We believe in~SIMPLIFYING~complex problems with a relentless focus on agile delivery excellence

Our mantra is “~Simple*Secure*Speed~” in the delivery of innovative services and solutions

Benefits

We are proud to offer competitive compensation and benefits packages to include:

Medical

Dental

Vision

Basic Life

Long-Term Disability

Health Saving Account

401K

Three weeks of PTO

10 Paid Holidays

Pre-Approved Online Training



  • Washington, United States Node.Digital Full time

    Job DescriptionJob DescriptionSecurity Splunk Architect/EngineerLocation: Washington DC metro area (Hybrid)Must have an active Secret OR Top Secret ClearanceWe are seeking a Security Splunk Architect/Engineer to support a Navy enterprise network within the Engineering and Cyber Divisions. The candidate's primary responsibility is to maintain and enhance...


  • Washington, United States Node.Digital Full time

    Security Splunk Architect/Engineer Location: Washington DC metro area (Hybrid) Must have an active Secret OR Top Secret Clearance We are seeking a Security Splunk Architect/Engineer to support a Navy enterprise network within the Engineering and Cyber Divisions. The candidate's primary responsibility is to maintain and enhance the existing Splunk...


  • Washington, United States Node.Digital LLC Full time

    Location: Washington DC metro area (Hybrid)Must have an active Secret OR Top Secret ClearanceWe are seeking a Security Splunk Architect/Engineer to support a Navy enterprise network within the Engineering and Cyber Divisions. The candidate's primary responsibility is to maintain and enhance the existing Splunk infrastructure in the enterprise. Further...


  • Washington, United States Node.Digital LLC Full time

    Location: Washington DC metro area (Hybrid)Must have an active Secret OR Top Secret ClearanceWe are seeking a Security Splunk Architect/Engineer to support a Navy enterprise network within the Engineering and Cyber Divisions. The candidate's primary responsibility is to maintain and enhance the existing Splunk infrastructure in the enterprise. Further...


  • Washington, United States Gray Tier Technologies LLC Full time

    Gray Tier Technologies is looking for a SIEM Support Splunk Architect with an active Secret clearance to support our DOI customer's Security Operation Center in DC or Reston Virginia. Bachelor's degree required. Minimum 12 years of experience. Provides technical direction and expertise in a variety of specialized areas including information systems...

  • Splunk Engineer

    1 week ago


    Washington, United States ASRC Federal Holding Company Full time

    ASRC Federal Data Networx is seeking candidates to provide IT security support to a government contract in Washington, DC. Position: Security Operations Center Engineer III Location: Washington, DC Clearance: Must be a US Citizen; Active Public Trust, desired. Summary : Serves as a Splunk expert on a team supporting the Security Operations...

  • Splunk Engineer

    2 weeks ago


    Washington, Washington, D.C., United States ASRC Federal Holding Company Full time

    ASRC Federal Data Networx is seeking candidates to provide IT security support to a government contract in Washington, DC.Position: Security Operations Center Engineer IIILocation: Washington, DCClearance: Must be a US Citizen; Active Public Trust, desired.Summary : Serves as a Splunk expert on a team supporting the Security Operations Center and Incident...

  • Splunk Engineer

    6 days ago


    Washington, United States ASRC Federal Holding Company Full time

    Job Description ASRC Federal Data Networx is seeking candidates to provideIT security support to a government contract in Washington, DC. Position:Security Operations Center Engineer III Location:Washington, DC Clearance:Must be a US Citizen; Active Public Trust, desired. Summary:Serves as a Splunk expert on a team supporting theSecurity Operations Centerand...


  • Washington, United States Maania Consultancy Services Full time

    Job DescriptionJob DescriptionCybersecurity Architect:The cybersecurity architect is responsible for managing all aspects of the SIEM to include operations and maintenance for all lookup files, integrating security feeds, developing the alerting framework, developing the risk framework and the orchestration of all security devices. The role...


  • Washington, United States Ark Solutions Full time

    Role: Security Engineer/ Splunk Engineer Washington, DC (Onsite) 4-6 months Contract Education: Bachelor's degree in in Cybersecurity or related field. Required Skills: "Five (5) to seven (7) years of hands-on experience with security monitoring tools such as IDS/IPS, FWs and NACs and protocols such as NetFlow (Snort, Bro, Palo Alto, Checkpoint, Cisco...


  • Washington Highlands, Washington, D.C., United States Pierce Technology Corp Full time

    ⦁ Utilizes knowledge of SiEM solutions like Splunk, Rapid7 Insight IDR etc. ⦁ Develops and maintains documentation for security systems, procedures, and security diagrams. ⦁ Analyzes, proposes, and implements solutions concerning residual risk, vulnerabilities, and other security exposures. ⦁ Installs security measures and operates software to...

  • Security Engineer

    3 weeks ago


    Washington, United States ARK Solutions, Inc. Full time

    CLIENT: Federal Position : Security Engineer/ Splunk Engineer 6 months ContractWashington, DC (Onsite)Education: Bachelor’s degree in in Cybersecurity or related field. Required Skills: "Five (5) to seven (7) years of hands-on experience with security monitoring tools such as IDS/IPS, FWs and NACs and protocols such as NetFlow (Snort, Bro, Palo Alto,...

  • Security Engineer

    3 weeks ago


    Washington, United States ARK Solutions, Inc. Full time

    CLIENT: Federal Position : Security Engineer/ Splunk Engineer 6 months ContractWashington, DC (Onsite)Education: Bachelor’s degree in in Cybersecurity or related field. Required Skills: "Five (5) to seven (7) years of hands-on experience with security monitoring tools such as IDS/IPS, FWs and NACs and protocols such as NetFlow (Snort, Bro, Palo Alto,...


  • Washington, United States Gray Tier Technologies LLC Full time

    Gray Tier Technologies is looking for a Senior SIEM Support Engineer (Splunk) with an active Secret clearance to support our DOI customer's Security Operation Center in DC or Reston Virginia. Master's degree (MA/MS) Required Minimum 10 years of experience Senior level, support for Information Security (INFOSEC) and trusted systems technology. Assists in the...

  • DHS HSEN

    3 weeks ago


    Washington, United States Versar, Inc. Full time

    Job DescriptionJob DescriptionPosition SummaryBayFirst Solutions, a subsidiary of Versar, Inc., is seeking a Security Architect (SIEM & SOAR) to support the DHS’ Homeland Security Enterprise Network (HSEN) within the Office of the Chief Information Officer (OCIO), IT Operations, Enterprise Engineering Division (EED). This resource will be a member of a...

  • DHS HSEN

    3 weeks ago


    Washington, United States Versar, Inc. Full time

    Job DescriptionJob DescriptionPosition SummaryBayFirst Solutions, a subsidiary of Versar, Inc., is seeking a Senior Security Architect to support the DHS Homeland Security Enterprise Network (HSEN) within the Office of the Chief Information Officer (OCIO). This candidate will be a member of a high functioning team supporting cybersecurity countermeasures to...


  • Washington, United States Stonewater LLC Full time

    **Cybersecurity Consultant** **Cybersecurity Program Manager** The Program Manager will provide overall guidance to the project and will be the primary interface between the government and the contractors. The individual performing tasks as specified in SOW section 3.1 must meet or exceed the following qualifications: - Project Management Professional...


  • Washington, United States Iron Vine Security Full time

    Job Requirements: · Strong written and verbal communication skills. · Experience designing, implementing, and maintaining IT security systems to protect digital assets from malicious cyber-attacks. · Experience developing and implementing an annual Incident Response Training and Testing Program · Experience implementing, configuring, and...


  • Washington, United States ACI Federal Defunct Full time

    ACI Federal is seeking a highly skilled Information Systems Security Engineer to join our vibrant team in Asheville, NC! _ _ W2 ONLY Required Skills: Five (5) to seven (7) years of hands-on experience with security monitoring tools such as IDS/IPS, FWs and NACs and protocols such as NetFlow (Snort, Bro, Palo Alto, Checkpoint, Cisco ISE, FireEye,...

  • Cyber Engineer

    6 days ago


    Washington, United States Avid Technology Professionals Full time

    seeking a Security Engineer to play a key role in supporting a statewide program providing cyber assessment services and management that will protect 20+ affiliates from growing and evolving cyber threats. The engineering effort will focus on cloud security, SIEM and log management, and endpoint detection/response protecting customers from the ever growing...