SIEM Engineer/Splunk Certified Admin

3 weeks ago


Annapolis, United States SUNAYU Full time

Location: Annapolis Jct, MD
Category: SIEM (Security Information and Event Management) Engineer / Splunk Certified Admin
Travel Required: No
Remote Type: No
Clearance: Top Secret/SCI w/ FS Polygraph (last poly must be within the past 7 years)

Job Summary / Primary Responsibilities

The selected candidate will be responsible for configuring the collection, parsing, correlation, and visualization of events for a critical operational system. She/he will demonstrate strong skills in system administration, log management, event correlation, and threat detection and will support building and maintaining a system that analyzes collected data and derives facts, inferences, and projections to determine if the systems being monitored are operating normally. The individual will work on a team responsible for configuring the systems which support analysts and end-users. The successful candidate will support the collection and extraction of data used to refine existing and new reports, analytics, and dashboards, and will be involved with the drafting and creation of reports and dashboards based on end-user requirements. She/he will also support the integration of resources across teams to better define the audit data being collected to eliminate false positives and false negatives from the data.

Basic/Required Qualifications

  • At least 8 years of related experience.

• At least 2 years of experience with one or more of the following: StealthWatch, TripWire, Zenoss, ArcSight, Splunk.
• Experience in design, implementation, and support of Splunk core components, including: indexers, forwarders, search heads, and cluster managers.
• Experience with configuration and administration of Splunk ingestion and forwarding for new and existing applications and data.
• Experience with troubleshooting Splunk dataflow issues between the various Splunk core components.
• Experience configuring and deploying data collection for a variety of operating systems and networking platforms.
• Experience creating Dashboards and Analytics within SIEM tools.
• Experience working with monitoring systems supporting auditing, incident response, and system health.
• Understanding of networking components and devices, ports, protocols, and basic networking troubleshooting steps.
• The ability to troubleshoot issues with log feeds, search time, and field extractions.
• The ability to troubleshoot problems related to data solutions.

Preferred Qualifications
• Bachelor's Degree in Computer Science, Engineering, Information Assurance, or a related discipline.
• Network Security Operations Center (SOC) experience.
• Experience and talent in data visualization.
• Experience creating workflows for Incident Response within a SIEM Tool.
• Security+ Certification.
• GIAC Certified Incident Handler Certification.
• GIAC Cyber Threat Intelligence Certification.
• Cybersecurity certifications.
• Formal SIEM training.
• Experience working on an Agile team/program.
  • SIEM Engineer

    1 day ago


    Annapolis Junction, United States Wood Consulting Full time

    Overview: SIEM (Security Information & Event Management) Engineer / Splunk Certified Admin woodcons.com The selected candidate will be responsible for configuring the collection, parsing, correlation, and visualization of events for a critical operational system. She/he will demonstrate strong skills in system administration, log management, event...

  • SIEM Engineer

    2 days ago


    Annapolis Junction, United States Wood Consulting Full time

    Overview SIEM (Security Information & Event Management) Engineer / Splunk Certified Admin woodcons.com The selected candidate will be responsible for configuring the collection, parsing, correlation, and visualization of events for a critical operational system. She/he will demonstrate strong skills in system administration, log management, event...


  • Annapolis Junction, United States Sunayu, LLC Full time

    Location: Annapolis Jct, MDCategory: SIEM (Security Information and Event Management) Engineer / Splunk Certified AdminTravel Required: NoRemote Type: NoClearance: Top Secret/SCI w/ FS Polygraph (last poly must be within the past 7 years) Job Summary / Primary Responsibilities The selected candidate will be responsible for configuring the collection,...


  • Annapolis Junction, United States Momentum Engineering Full time

    Required Qualification Must have Splunk Enterprise Certified Admin Certificate or higher. The selected candidate will be responsible for configuring the collection, parsing, correlation, and visualization of events for a critical operational system. She/he will demonstrate strong skills in system administration, log management, event correlation, and threat...


  • Annapolis, United States Navstar Full time

    Would you like to perform rewarding work while contributing to the success of an established, growing company? Navstar is an award-winning organization that has a proven track record of successfully providing IT services and solutions both as a prime and sub-contractor on mission focused IT programs. Our employees are integral players in support of...

  • Splunk Administrator

    4 weeks ago


    Annapolis Junction, United States Leidos Full time

    R-00134786 Description The Program is looking for a SIEM (Security Information and Event Management) Engineer / Splunk Certified Admin to join a high performing agile team using the Scaled Agile Framework (SAFe) methodology to support a large, complex, and fast-paced program. Program execution follows DEVOPS best practices and employs robust development,...


  • Annapolis, United States Navstar Full time

    Would you like to perform rewarding work while contributing to the success of an established, growing company? Navstar is an award-winning organization that has a proven track record of successfully providing IT services and solutions both as a prime and sub-contractor on mission focused IT programs. Our employees are integral players in support of...


  • Annapolis Junction, United States Leidos Full time

    R-00133931 Description Destination...Leidos! Come join our exciting and fast-growing National Security Group! Why? Because w e offer competitive salaries, bonus programs, competitive paid leave, holidays, beyond ordinary benefits, and many opportunities for continual professional growth and development, including a robust technical upskilling program,...


  • Annapolis Junction, Maryland, United States BAE Systems Full time

    Job Description The selected candidate will join a high performing agile team that uses the Scaled Agile Framework (SAFe) methodology to support a nationally significant and fast-paced program. Program execution follows DEVOPS best practices and employs robust development, test and production environments. Test Driven Development (TDD) and test automation...

  • Splunk Engineer

    2 days ago


    Annapolis, United States Artera Technologies Full time

    SPLUNK ENGINEER Job Type: Full Time Level: Mid, Senior Location: Annapolis Junction, MD Security Clearance: TS/SCI with Full Scope Polygraph (must be current) Tasking: Come join a team bringing consistency to the projects’ operations support and security posture, allowing analysts to navigate the vast ecosystem of analytic capability to accomplish mission....


  • Annapolis, United States Columbia Technology Partners Full time

    Description: The Senior Splunk Software Engineer (SWE) shall demonstrate the following skills: Design and develop software solutions by analyzing stakeholder requirements and conferring with users or system engineers Design and implement software solutions to complex problems Develop software system installation or build procedures or scripts Analyze and...


  • Annapolis, United States Columbia Technology Partners Full time

    Description: The Senior Splunk Software Engineer (SWE) shall demonstrate the following skills: Design and develop software solutions by analyzing stakeholder requirements and conferring with users or system engineers Design and implement software solutions to complex problems Develop software system installation or build procedures or scripts Analyze and...

  • Splunk Engineer

    2 weeks ago


    Annapolis Junction, United States Global Channel Management Full time

    Splunk Engineer needs 6+ years of experience Splunk Engineer requires: Top secret/SCI clearance with at least a CI polygraph. Splunk engineering experience Splunk Engineer duties: Establish a process to formally and proactively control and manage changes to requirements, consider impacts prior to commitment to change, gain stakeholder buy-in, eliminate...

  • Splunk Engineer

    2 days ago


    Annapolis Junction, United States Artera Technologies Full time

    SPLUNK ENGINEER Job Type: Full Time Level: Mid, Senior Location: Annapolis Junction, MD Security Clearance: TS/SCI with Appropriate Agency Polygraph Tasking: Come join a team bringing consistency to the projects’ operations support and security posture, allowing analysts to navigate the vast ecosystem of analytic capability to accomplish mission. We...


  • Annapolis Junction, United States BAE Systems Full time

    Job Description The selected candidate will join a high performing agile team that uses the Scaled Agile Framework (SAFe) methodology to support a nationally significant and fast-paced program. Program execution follows DEVOPS best practices and employs robust development, test and production environments. Test Driven Development (TDD) and test automation...

  • Splunk Engineer

    1 day ago


    Annapolis Junction, Maryland, United States SAIC Career Site Full time

    Description SAIC, a leading provider of systems development & deployment, targeting & intelligence analysis, systems engineering & integration, and training capabilities and solutions for the Intelligence Community, is seeking creative and dedicated professionals to fulfill their career goals and objectives while delivering mission excellence on programs of...

  • Splunk Engineer

    2 days ago


    Annapolis, United States Superlative Technologies Full time

    Description Title: Splunk Engineer Job# - 2450 Location: Annapolis Junction, MD Status: Regular Full time Minimum Clearance Required to Start: TS/SCI with Polygraph Percentage of Travel Required: None SuprTEK is currently looking for a Splunk Engineer to join our team with the option of flexible work schedules all while developing next generation...

  • Splunk Engineer

    7 hours ago


    Annapolis, United States Superlative Technologies Full time

    Description Title: Splunk Engineer Job# - 2450 Location: Annapolis Junction, MD Status: Regular Full time Minimum Clearance Required to Start: TS/SCI with Polygraph Percentage of Travel Required: None SuprTEK is currently looking for a Splunk Engineer to join our team with the option of flexible work schedules all while developing next generation products...


  • Annapolis Junction, United States Columbia Technology Partners Full time

    Job DescriptionJob DescriptionDescription:The Senior Splunk Software Engineer (SWE) shall demonstrate the following skills:Design and develop software solutions by analyzing stakeholder requirements and conferring with users or system engineersDesign and implement software solutions to complex problemsDevelop software system installation or build procedures...


  • Annapolis, United States OMW Consulting Full time

    Splunk Engineer - TS/SCI w FSPAnnapolis Junction, MD$200k-$225k My client is on the hunt for an experience Splunk engineer to join them onsite in Annapolis Junction, MD. For this position you must have an active TS/SCI w FSP clearance due to the nature of the work and the client. To be considered for the position you will need experience with the following:...