Sr. Splunk engineer SME
New Today
The candidate should be familiar with recognizing and onboarding new data sources into Splunk, analyzing the data for anomalies and trends, and building dashboards highlighting the key trends of the data. The Splunk engineer should be familiar with a Linux environment, editing and maintaining Splunk configuration files and apps.
The Splunk engineer will work with other Cybersecurity Engineering team members and will be required to interact with end users to gather requirements, perform troubleshooting, and provide assistance with the creation of Splunk search queries and dashboards. The Splunk engineer will be required interact with senior management, as necessary.
Knowledge of Cloud Services such as AWS, Azure, Office365
Ability to script in one more of the following computer languages Python, Bash, Visual Basic or PowerShell
Basic Qualifications
Must be a US citizen, no clearance required and in addition, must have a current or be able to favorably pass a (BI) Background Investigation to join this program.
Minimum of a Bachelor’s degree coupled with 7+ years’ experience in the Information Technology arena.
·4+ years of experience in a senior Splunk role working in a Splunk clustered environment supporting SOC or NOC environments
·3+ Years experience in Linux and SQL/ODBC interfaces
·2+ Years experience in app interface development, using RESTAPI’s
·Previous project management experience.
·ITIL Change & Configuration Management
·Experience with Ansible and GIT
·Ability to follow Change & Configuration Management
·Strong problem solving abilities with an analytic and qualitative eye for reasoning under pressure
·Self-starter with the ability to independently prioritize and complete multiple tasks with little to no supervision
·Knowledge of Cloud Services such as AWS, Azure, Office365
·Ability to script in one more of the following computer languages Python, Bash, Visual Basic or Powershell
·Splunk Certified Architect Certification
·Splunk Certified Administrator Certification
·Experience in automating Splunk Deployments
Requirement Certifications (One of the followings)
CCIE Security
Cisco Certified Network Professional (CCNP)
CCNP Security
CCSP – Certified Cloud Security Professional
CEH – Certified Ethical Hacker
Certified Data Administrator Professional
Certified Implementation Engineer Specialist
Splunk Certified Architect
Certified Storage Associate
CISSP – Certified Information Systems Security
CompTIA Advanced Security Practitioner (CASP)
Converged Infrastructure Specialist
CSSLP – Certified Secure Software Lifecycle Professional
ECSP – EC-Council Certified Secure Programmer
GCIH – Incident Handler
GCWN – Windows Security Administrator
GICSP –Cyber Security Professional
GISF – Security Fundamentals
GISP – Security Professional
GSSP – Secure Software Programmer
MCSE – Microsoft Certified Solutions Expert (Server)
RHCA – Red Hat Certified Architect
RHCE – Red Hat Certified Engineer
SEI (Software Engineering Institute)
SSCP – Systems Security Certified Practitioner
VCA (Certified Associate)
VCAP (Certified Advanced Professional)
VCDX (Certified Design Expert)
VCIX (Implementation Expert)
VCP (Certified Professional)
MS 365 Certified: Security Administrator
Microsoft Certified Azure Security Engineer (Associate)
Splunk Enterprise Certified Architect
Splunk Enterprise Certified Administrator
Splunk Core Certified Consultant
Splunk SOAR Certified Automation Developer
Splunk Certified Developer
AWS Certified Solutions Architect - Associate
AWS Certified DevOps Engineer - Professional
Swimlane Certified SOAR Developer
Preferred Qualifications
oExperience in SQL
oExperience in other systems and network management products.
oCurrent or former completed Splunk training
oPrior experience a in Splunk professional services role
oAutomation/orchestration of Splunk with in a Cloud environment
- Location:
- Ashburn