ARCSight/Splunk Administrator

4 weeks ago


Fort GreggAdams, United States Logistics Management Institute Full time
Overview

LMI is seeking an experienced ARCSight/Splunk Administrator to support a Program Office for a Government Client, located in Virginia. Remote work is anticipated with travel to various Client sites as needed.

At LMI, we’re reimagining the path from insight to outcome at The New Speed of Possible™. Combining a legacy of over 60 years of federal expertise with our innovation ecosystem, we minimize time to value and accelerate mission success. We energize the brightest minds with emerging technologies to inspire creative solutioning and push the boundaries of capability. LMI advances the pace of progress, enabling our customers to thrive while adapting to evolving mission needs. 

Responsibilities

Responsibilities are, but no limitted to the following:

  • Perform all major Administrator functions to operate and tune ArcSight for current systems and prepare for migration to Splunk SIEM
  • Coordinate and manage future Splunk SIEM migration and implementation.
  • Ensure interoperability between Splunk and new tool/sensor data feeds.
  • Design and architect logs IAW Army Cyber Technical Capabilities Requirements
  • Provide data analysis, log analysis, logging solution details.
  • Use Splunk SIEM tool to monitor and analyze network performance and Cyber Security incidents and reports to detect vulnerabilities and anomalies or problems or issues.
  • Develop monitoring and response rules, reports, dashboards, data monitors, active channels, trends, and use cases to identify threats and optimize data mining.
  • Perform analysis of current configuration and proposed configurations to ensure compatibility within the overall system.
  • Analyze threat information gathered from logs, Intrusion Detection Systems, intelligence reports, vendor sites, and a variety of other sources.
  • Research, plan, install, configure, troubleshoot, maintain, and back up all components in ArcSight first, and upon migration to Splunk, in Splunk
  • Apply knowledge of SIEM tools expertise to conceptualize, design, and build secure technical solutions, including operationally viable and efficient applications, systems, architectures, and infrastructure.
  • Direct on the design and integration of Cybersecurity toolsets to enable more automated discovery, remediation, and alerting of network and device vulnerabilities as a means of improving the security posture while reducing manpower requirements.
  • Troubleshoot and develop solutions for anomalies both remotely and locally for Splunk based solutions.
  • Experience with any or all of these technologies:  Splunk, Qmulos, AMQP (RabbitMQ), Nessus, SQL Server, PostGRE SQL, Red Hat Satellite, Nagios, McAfee ePO, Phantom, IPSEC, PKI, ForeScout, Qualys, CA PAM/Xceedium, CyberARK, SailPoint
  • Experience in utilizing the COTS products identified such as the following:
  • Operating System: IBM AIX, Solaris OS, Red Hat Enterprise Linux, Microsoft Windows Server 2008/2016 and later
  • Oracle: Oracle Application Server; Oracle Grid Infrastructure; Oracle Database; Oracle Clients; Oracle SQL Developer; WebLogic,
  • Data Loss Prevention: McAfee Agent; McAfee Host Intrusion Prevention; McAfee Policy Auditor; Policy Auditor Content Update; Policy Auditor Agent; SQL Server
  • COTS: Internet Explorer; Adobe Acrobat Reader X; ActivClient CAC; ActivCard Gold for CAC -“PKI; ForgeRock Open AM Java EE Policy Agent; Tivoli Client, Veritas Volume Manager & NetBackup
  • Experience assisting with Federal Government Certification and Accreditation information assurance following Risk Management Framework (RMF) process.
  • Responsible for making moderate to significant improvements of systems or products to enhance performance of programs and projects.
Qualifications
  • BA/BS in IT related field or equivalent experience and minimum 5 years related work experience.
  • Demonstrated experience with the integration and sustainment of the ArcSight Connector Appliance, Logger components, ArcSight Management Center, and ArcSight ESM.
  • Experience with Splunk and migration to the Cloud environment.
  • Previous experience in a Security Operations Center (SOC) environment is a plus. 
  • Knowledge of administration of SIEM tools backend database infrastructure related to upgrades and daily maintenance.
  • Detail and team oriented – able to work via MS Teams and in person as needed.
  • Flexible – The environment is highly dynamic. You will be expected to keep up with the changing environment while ensuring a high level of operational effectiveness.
  • Team Player – This role is part of a much larger team and needs to stay connected and involved in the daily operations battle rythm of the program.
  • Position will most likely be remote authorized – with the requirements to be able to travel to the Fort Gregg-Adams, VA, Redstone Arsenal, Huntsville, AL, or Radford. VA -as needed for IT support or site surveys. (less than 20%).
  • Must have current DOD Security Clearance - Secret

#LI-SH1



  • Fort Gregg-Adams, United States LMI Full time

    OverviewLMI is seeking an experienced ARCSight/Splunk Administrator to support a Program Office for a Government Client, located in Virginia. Remote work is anticipated with travel to various Client sites as needed.At LMI, we’re reimagining the path from insight to outcome at The New Speed of Possible™. Combining a legacy of over 60 years of federal...


  • Fort Gregg-Adams, United States LMI Full time

    OverviewLMI is seeking an experienced ARCSight/Splunk Administrator to support a Program Office for a Government Client, located in Virginia. Remote work is anticipated with travel to various Client sites as needed.At LMI, we’re reimagining the path from insight to outcome at The New Speed of Possible™. Combining a legacy of over 60 years of federal...


  • Fort Meade, United States Constellation Technologies, Inc Full time

    About us: Mission Driven, Employee Focused At CTI, you'll be at the center of an award-winning corporate culture, breaking technological barriers and solving real-world problems for our federal government customers. We are committed to hiring the best of the best, and in return, we offer a world-class, truly unique employee experience that is rare within...

  • Systems Administrator

    24 hours ago


    Fort Meade, United States Constellation Technologies, Inc Full time

    About us: Mission Driven, Employee Focused At CTI, you'll be at the center of an award-winning corporate culture, breaking technological barriers and solving real-world problems for our federal government customers. We are committed to hiring the best of the best, and in return, we offer a world-class, truly unique employee experience that is rare within...


  • Fort Liberty, United States Jacobs Full time

    Your Impact: Challenging Today. Reinventing Tomorrow. We're invested in you and your success. Everything we do is more than just a project. It's our challenge as human beings, too. That's why we bring a thoughtful and collaborative approach to every one of our partnerships. At Jacobs, we challenge the status quo and redefine how to solve the world's greatest...


  • Fort Liberty, United States Jacobs Full time

    Your Impact: Challenging Today. Reinventing Tomorrow. We're invested in you and your success. Everything we do is more than just a project. It's our challenge as human beings, too. That's why we bring a thoughtful and collaborative approach to every one of our partnerships. At Jacobs, we challenge the status quo and redefine how to solve the world's greatest...


  • Fort Gregg-Adams, United States Core Government Services Full time

    This is a Key Person position at Fort Gregg-Adams, VA (previously known as Fort Lee) in support of the National Simulation Center (NSC) task order under MTCCS II IDIQ. CGS is seeking best qualified individuals for its upcoming bid in support of this task order. Expected award and start word date is March-April 2024. Essential Functions: Administering the...


  • Fort Gregg-Adams, United States Core Government Services Full time

    This is a Key Person position at Fort Gregg-Adams, VA (previously known as Fort Lee) in support of the National Simulation Center (NSC) task order under MTCCS II IDIQ. CGS is seeking best qualified individuals for its upcoming bid in support of this task order. Expected award and start word date is March-April 2024. Essential Functions: Administering the...


  • Fort Bragg, United States Jacobs Full time

    Your Impact:Challenging Today. Reinventing Tomorrow.We're invested in you and your success. Everything we do is more than just a project. It's our challenge as human beings, too. That's why we bring a thoughtful and collaborative approach to every one of our partnerships.At Jacobs, we challenge the status quo and redefine how to solve the world's greatest...


  • Fort Belvoir, United States SOFTACT Full time

    SPLUNK PROFESSIONAL SERVICES CONSULTANT TO SUPPORT CONTRACT WITH PLANNING, DEVELOPING, AND IMPLEMENTING TASK SPECIFIC CHALLENGES TO COMPLEX DEPLOYMENTS POSITION LOCATIONS:Multiple – Fayetteville, NC; Fort Belvoir, VA; Crystal City, VA; Annapolis Junction, MD DESCRIPTION:SOFtact Solutions (STS) is seeking a Splunk Professional Services Consultant to support...


  • Fort Belvoir, United States Gray Tier LLC Full time

    Gray Tier Technologies is looking for a Linux Engineer to support one of our Defense customers in Fort Belvoir Virginia. The position requires a Secret Clearance and is a hybrid role. Linux Engineer Basics: At least a Secret clearance (DoD would be best) Sec+ CE or equivalent Red Hat/Linux cert (Linux+, LPI, RHCSA) Skills: Experience with Red Hat Linux,...

  • Linux Engineer

    3 weeks ago


    Fort Belvoir, United States Gray Tier Technologies LLC Full time

    Gray Tier Technologies is looking for a Linux Engineer to support one of our Defense customers in Fort Belvoir Virginia. The position requires a Secret Clearance and is a hybrid role. Linux EngineerBasics: •At least a Secret clearance (DoD would be best) •Sec+ CE or equivalent •Red Hat/Linux cert (Linux+, LPI, RHCSA) Skills: •Experience with Red Hat...

  • Splunk Engineer

    1 week ago


    Fort Meade, United States True Zero Technologies, LLC Full time

    True Zero Technologies, a veteran-owned small business, was founded on the principle that the purposeful enablement of people and technology in an organization directly ties to the quality of its outcomes. True Zero recognizes that said outcomes begin and end with our people, and that is what we have built, a community of like-minded, driven, and passionate...

  • Splunk Engineer

    18 hours ago


    Fort Meade, United States True Zero Technologies, LLC Full time

    True Zero Technologies, a veteran-owned small business, was founded on the principle that the purposeful enablement of people and technology in an organization directly ties to the quality of its outcomes. True Zero recognizes that said outcomes begin and end with our people, and that is what we have built, a community of like-minded, driven, and passionate...


  • Fort Meade, United States Dhara Consulting Group Full time

    Today - Top Secret/SCI - Mid Level Career (5+ yrs experience) - $100,000 - $125,000 - No Traveling - IT - Security - Fort Meade, MD** (ON-SITE/OFFICE)** - Cybersecurity Specialist Note: This is an OVERNIGHT shift (10 hour shifts) M-Th **Job Description**: Primary Responsibilities - Leverage intelligence and operational data, information and processes to...


  • Fort Meade, United States August Schell Full time

    Who we are... August Schell offers 30 years of experience in providing our customers innovative solutions and engineering services to their most challenging needs. We thrive on navigating complex IT difficulties and are driven to find the best solutions for our customers. Our team delivers expert knowledge in cyber security, big data, endpoint security and...


  • Fort Meade, United States August Schell Full time

    Who we are... August Schell offers 30 years of experience in providing our customers innovative solutions and engineering services to their most challenging needs. We thrive on navigating complex IT difficulties and are driven to find the best solutions for our customers. Our team delivers expert knowledge in cyber security, big data, endpoint security and...


  • Fort Meade, United States August Schell Full time

    Job DescriptionJob DescriptionWho we are...  August Schell offers 30 years of experience in providing our customers innovative solutions and engineering services to their most challenging needs. We thrive on navigating complex IT difficulties and are driven to find the best solutions for our customers. Our team delivers expert knowledge in cyber...


  • Fort Meade, United States August Schell Full time

    Job DescriptionJob DescriptionWho we are...  August Schell offers 30 years of experience in providing our customers innovative solutions and engineering services to their most challenging needs. We thrive on navigating complex IT difficulties and are driven to find the best solutions for our customers. Our team delivers expert knowledge in cyber...

  • SIEM Architect

    1 week ago


    Fort Meade, United States August Schell Full time

    Job DescriptionJob DescriptionNOTE: A TS/SCI with FULL SCOPE POLYGRAPH IS REQUIRED FOR THIS ROLEWho we are... August Schell offers‚ 30 years of experience in providing our customers innovative solutions and engineering services to their most challenging needs. We thrive on navigating complex‚ IT difficulties and are driven to find the best solutions for...